Job Functions1. Risk Management Framework (RMF) authorization body of evidence2. System Security Plan (SSP)3. Security Control Traceability Matrix (SCTM)4. Continuous Monitoring Plan5. Incident Response Plan6. Access Control Plan7. Security Assessment Plan
Job Requirements1. 5+ years of experience monitoring and correlating data (e.g., logs, events, activity, etc.) from a variety of sources (e.g., Splunk, ELA, ePO, ESS, ACAS, etc.) to identify and mitigate threats, vulnerabilities, and noncompliance.2. Proven working knowledge of network security, application security, systems analysis procedures, and operating systems3. Experience performing system CONOP analysis and development4. Experience assisting system administrators with installation and configuration of network equipment, including routers, switches, firewalls, and VPNs, to meet security requirements5. Experience using vulnerability and compliance assessment tools such as Nessus, SCAP, or App Detective6. Conducting network architecture analysis to evaluate and mitigate risks7. Supporting the development and maintenance of cybersecurity related plans, procedures, and guidance8. Identifying potential vulnerabilities, responding to cyber events, and defending against events by using information collected from a variety of sources (e.g., intrusion detection systems, firewalls, network traffic logs, and host system logs)9. Expertise in networking protocols and architectures, cloud design, and advanced network security10. At least one (1) of the following cyber security certifications: Security+ CE, SSCP, CAP, CISM, CASP, CISSP, GSEC, GICSP, GSLC, CEH, CDNA, CSSLP
Skills1. Network security2. Application security3. Systems analysis procedures4. Operating systems5. Vulnerability and compliance assessment tools such as Nessus, SCAP, or App Detective6. Cloud design7. Advanced network security8. Cybersecurity related plans, procedures, and guidance1. Strong written communications2. Ability to provide written feedback on documents3. Ability to prepare briefings4. Clear, concise, nontechnical language
Dark Wolf Solutions is seeking an Information Systems Security Engineer (ISSE) with an emphasis on networking. The ISSE will work as part of a team reviewing and assessing Risk Management Framework (RMF) authorization body of evidence for classified information systems, to include: System Security Plan (SSP), Security Control Traceability Matrix (SCTM), Continuous Monitoring Plan, Incident Response Plan, Access Control Plan, Security Assessment Plan, etc. Review new and existing systems for technical compliance with IA directives and protection of data at all classification levels including SCI. Advise on in-depth security network architecture and threat/risk assessments. Provide inputs to technical artifacts, including Plans of Action and Milestones (POA&Ms), Security Control Traceability Matrices (SCTM), and Risk Assessment Reports (RARs).
Required Qualifications:
- 5+ years of experience monitoring and correlating data (e.g., logs, events, activity, etc.) from a variety of sources (e.g., Splunk, ELA, ePO, ESS, ACAS, etc.) to identify and mitigate threats, vulnerabilities and non-compliance. -Identify, implement, and enforce overall security requirements for the proper handling of Government data
- Proven working knowledge of network security, application security, systems analysis procedures, and operating systems
- Experience performing system CONOP analysis and development
- Experience assisting system administrators with installation and configuration of network equipment, including routers, switches, firewalls, and VPNs, to meet security requirements
- Experience using vulnerability and compliance assessment tools such as Nessus, SCAP, or App Detective
- Experience conducting network architecture analysis to evaluate and mitigate risks
- Experience supporting the development and maintenance of cybersecurity related plans, procedures and guidance
- Experience identify potential vulnerabilities, respond to cyber events and defend against events by using information collected from a variety sources (e.g., intrusion detection systems, firewalls, network traffic logs, and host system logs)
- Expertise in networking protocols and architectures, cloud design, and advanced network security
- At least one (1) of the following cyber security certifications: Security+ CE, SSCP, CAP, CISM, CASP, CISSP, GSEC, GICSP, GSLC, CEH, CDNA, CSSLP
- Ability to communicate on technical subjects using clear, concise, non-technical language to include strong written communications, ability to provide written feedback on documents, and ability to prepare briefings
- Bachelor's Degree in Computer Science or related field
- US Citizenship and an active Top Secret security clearance with SCI eligibility.
Desired Qualifications:
- Two (2) or more of the following certifications: Security+ CE, SSCP, CAP, CISM, CASP, CISSP, GSEC, GICSP, GSLC, CEH, CDNA, CSSLP
- Demonstrated experience giving technical guidance to system administrators
- Degree in Network Engineering, Systems Engineering, Information Technology or related field
- Experience authoring and maintaining systems security documentation
- Previous Special Access Program (SAP) access
This position is located in Ogden, UT. We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
Life at Dark Wolf Solutions
Dark Wolf Solutions provides DevSecOps agile software development, information operations, penetration testing and incident response, applied research and rapid prototyping, machine learning, and mission support and engineering services to the Intelligence Community, national security, and Fortune 500 customers. By combining the most innovative emerging technologies with deep federal domain expertise, Dark Wolf operates at the nexus of technical innovation and mission needs.
Thrive Here & What We Value1. EEO/AA Employer2. Minorities/Women/Veterans/Disabled and other protected categories3. Continuous Learning and Improvement Mindset4. Hybrid Work Environment Supported5. Strong Technical Skills and Analytic Ability Valued6. Excellent Communication and Collaboration Skills Emphasized7. Attention to Detail and Organizational Abilities Expected8. Continuous Monitoring Practices Familiarity Preferred