FORT MONMOUTH, NJ
201
FULLTIME
60
6 months RTH
RP_Security
10121845
none
no
Information Security Engineer
Information Security Engineer, CISSP, security, UNIX
11-20-2009
* Must be a U.S. Citizen
* Secret Clearance Preferred (will accept Interim)
* Bachelor of Science Degree in an engineering discipline is required.
* Minimum of ten (10) years of technical experience in systems/network design. Skills should include design and/or operation of engineering specific tasks and methodologies; system engineering; electrical design; software engineering; program design and implementation; configuration management; or maintenance.
* CISSP strongly preferred.
* Experience in heterogeneous computer networking technology and work in protocol and/or interface standards specification is preferred since the incumbent must analyze and resolve INFOSEC technical problems.
* Must have knowledge of TCP/IP, information security/authorization profiles, or security administration of UNIX or NT network/systems.
* Must have knowledge of Government security policies and familiarity with security-related technologies and auditing tools.
* Must be capable of providing security engineering analysis on a variety of information systems.
* Must be capable of developing security accreditation/certification documentation, and creating and maintaining security policy and procedures.
* Must be capable of performing security certification engineering analysis, vulnerability assessments, and risk assessments.
* Capable of designing and configuring security tools.
* Must be capable of developing test procedures, establishing test environments, executing security certification test/demonstrations/evaluations, documenting results, and developing reports, conclusions, and recommendations.
* Must be capable of conceptualizing and implementing security systems and architectures.

The Information Security Engineer will support the customer in the system security environment identifying the system/network security vulnerability and mitigating the risks

Areas of focus include overall system security environment such as system security capability, networks, protocols, interfaces, etc.

Typical activities of a Information Security Engineer will include some combination of the following, as appropriate to the assigned project:
* Identify the security requirements
* Prepare the Certification and Accreditation (C&A)/DIACAP documentation package
* Prepare the systems and networks for the DIACAP
* Review systems application.
* Perform security tests
* Analyzed the security tests results.
* Identify vulnerabilities
* Mitigate risks
* Write security test reports
* Participate in the security meetings.
* Act as liaison between specific systems and overall long-term security architecture.
Robert Corr
Elite Technical Services
Fax: (631) 234-0420