-
Security Engineer
- BAE Systems (Washington, DC)
-
Job Description
What You'll Get to Do as a Security Engineer:
+ Design and specify the security architecture of a portfolio of services to support a broad range of customer needs, performance profiles, and data ranges.
+ Design and specify the security implementation for a multi-tenant development platform and automated delivery pipeline using a combination of AWS services, Serverless frameworks, Kubernetes and containerization approaches, and microservice design patterns.
+ Collaborate with customers and team members as part of an Agile lifecycle to gather, understand, and refine platform and application security requirements in accordance with DHS 4300a, RMF, and security best practices.
+ Oversee and design the hardening, security, and accreditation of a multitenant development platform and service portfolio.
You ll Bring These Qualifications:
+ BS degree with 5 years of experience.
+ Must be a U.S. Citizen for a Public Trust clearance.
+ Independent with a mindset toward continuous learning, a drive for self-study and enrichment, and resourcefulness.
+ Strong communication skills and customer-facing level of polish.
+ Able to coordinate across multiple sets of enterprise- and C-level stakeholders to communicate solution design, security controls, and control implementations.
+ Coordinate RMF lifecycle activities and artifacts including PIA, PTA, ATO, and tabletop exercises
+ Able to mentor team members and set direction for security practices, technical scanning and assessments, and required technical expertise.
+ Able to collaborate with federal and contractor security staff to produce system security plan documentation, including specification and documentation of FISMA control implementations
+ Active CISSP, CEH, CCSP, or CISM certification
Required Education, Experience, & Skills
5 Years of experience across the following:
+ Federal application security practices including OWASP, Zero-trust principles, encryption at rest and in transit
+ Bachelor's Degree
+ Certifications
+ Automated software delivery in a CI/CD environment using Jenkins, Gitlab CI, or similar
+ FISMA High security system controls and constraints
+ Full system accreditation using FISMA, RMF, NIST controls, DHS 4300a, and FedRAMP frameworks
+ Security considerations related to web application security, including CSRF, XSS, injection, and other attack mechanisms
+ Experience with the following technology domains in a production system environment:
+ One or more of: Kubernetes, AWS EKS, AWS Fargate, Red Hat OpenShift
+ One or more of: Serverless Framework deployed on AWS, AWS Lambda with AWS API Gateway
+ One or more of: Terraform, AWS CloudFormation
+ All of: Nessus, Fortify, AppDetective, Splunk
Preferred Education, Experience, & Skills
+ AWS certified architect professional, AWS certified DevOps professional
+ Experience with OpenSCAP, DISA STIGs
Pay Information
Full-Time Salary Range: $136620 - $232210
Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20 hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.
Security Engineer
113565BR
EEO Career Site Equal Opportunity Employer. Minorities . females . veterans . individuals with disabilities . sexual orientation . gender identity . gender expression
-