Updated: 5/17/2012
Information Security OfficerInformation Security Officer
Job ID: 2011-23122 # of Openings Remaining: 1
Location: US-MD-Columbia Category: Information Technology
Residency Status: U.S. Citizenship Required Clearance: Top Secret/SCI w/Lifestyle Polygraph
Desired Experience: .. Employee Type: Full Time More information about this job: Overview:
QinetiQ North America’s Services & Solutions Group delivers aerospace operations and systems, engineering and life-cycle management, IT solutions and services, software and systems engineering, and missions solutions. Our core offerings include: space engineering, software solutions and enterprise IT, cyber intelligence, systems integration and engineering, training, modeling and simulation, logistics and life-cycle management.
QinetiQ North America is an AA/EEO Employer.
Qinetiq-NA is currently seeking an Information Systems Security Officer to provide security engineering support for certification and accreditation of systems throughout complete life cycle. Functions include gathering evidence on systems, using security scripts, port scan tools, and checklists; provide analysis, and evaluation of threats and vulnerabilities. Responsibilities:
- Identifies security risks, threats and vulnerabilities of networks, systems, applications and new technology initiatives. Develops, tests and operates firewalls, intrusion detection systems, enterprise anti-virus systems and software deployment tools. - Provides complex engineering analysis and support for firewalls, routers, networks and operating systems. Performs and evaluates vulnerability scans within a multi-platform, large enterprise environment. Reacts to and initiates corrective action regarding security violations, attempts to gain unauthorized access, virus infections that may affect the network or other event affecting security. - Oversees user access process to ensure operational integrity of the system. Enforces the information security configuration and maintains system for issuing, protecting, changing and revoking passwords. - Develops technical and programmatic assessments, evaluates engineering and integration initiatives and provides technical support to assess security policies, standards and guidelines. Develops, implements, enforces and communicates security policies and/or plans for data, software applications, hardware and telecommunications. - Performs complex product evaluations, recommends and implements products/services for network security. Validates and tests complex security architecture and design solutions to produce detailed engineering specifications with recommended vendor technologies. - Reviews, recommends and oversees the installation, modification or replacement of hardware or software components and any configuration change(s) that affects security. - Provides complex technical oversight and enforcement of security directives, orders, standards, plans and procedures at server sites. Ensures system support personnel receive/maintain security awareness and training. - Assesses the impact on the business unit/customer caused by theft, destruction, alteration or denial of access to information and reports to senior management. - Provides leadership and work guidance to less experienced personnel. - Candidate must be familiar with the directives and requirements outlined in the DCID 6/3, NIST, and NISCAP policies that govern the deployment of secure information systems. Qualifications:
Must have experience developing and authoring system documentation (System Security Plans, Security Requirements Traceability Matrices, Security Test and evaluation Plans, etc.) that supports the Certification and Accreditation process.
Must have some experience with Linux, Solaris, or Microsoft Operating Systems.
Basic Qualifications - Bachelor's degree or equivalent combination of education and experience - Bachelor's degree in computer science or related field preferred - Seven or more years of experience in network, host, data and/or application security in multiple operating system environments - Experience working with IP networking, networking protocols and understanding of security related technologies including encryption, IPsec, PKI, VPNs, firewalls, proxy services, DNS, electronic mail and access-lists - Experience working with internet, web, application and network security techniques - Experience working with relevant operating system security (Windows, Solaris, Linux, etc.) - Experience working with leading firewall, network scanning and intrusion detection products and authentication technologies - Experience working with federal regulations related to information security (FISMA, Computer security Act, etc.) - Experience working with NIST Special Publications and C & A process methodology - Possess security certifications (CISSP, CCNA, etc) and/or top secret security clearance - US Citizenship required
Clearance Required - TS/SCI with Full-Scope Polygraph
Other Qualifications - Good communication skills - Strong analytical and problem solving skills to troubleshoot and resolve network/operating system security issues - Ability to perform and interpret vulnerability assessments - Ability to administer the operations of a security infrastructure - Ability to balance and prioritize work Apply for this job:
* Apply for this job online * Email this opportunity to a friend Share
QinetiQ North America,Inc is anEqual Opportunity/Affirmative Action Employer
|