Title: Senior Specialist, Information Security Systems Engineering
Nashville, TN, US, 37203
Job Title: Senior Specialist, Information Security Systems Engineering
Job Code: 44809
Job Location: Nashville, TN
Job Schedule: 9/80 : Employees work 9 out of every 14 days- totaling 80 hours worked- and have every other Friday off
Role is contingent upon program award
Job Description:
The Information Systems Security Engineer, Senior Specialist, serves as the accountable owner for cybersecurity implementation and validation across the program. This role contributes to the development, documentation, and implementation of system security requirements. This role collaborates with systems engineering, software, hardware, network engineering, integration and test, and program stakeholders to ensure security requirements are clearly defined, properly documented, and implemented in alignment with mission, contractual, and regulatory expectations.
Essential Functions:
- Contribute to cybersecurity implementation activities by supporting requirement definition, documentation, and tracing across systems, software, hardware, and network components.
- Assist with secure network support activities including segmentation, routing and switching considerations, access control, logging, encryption, and secure communications.
- Support development and continuous updates of accreditation documentation including System Security Plans (SSPs), Security Assessment Reports (SARs), Continuous Monitoring Plans, Privileged User Guides, POA&Ms, network diagrams, and data flow documentation.
- Participate in execution of vulnerability management tasks including STIG implementation, compliance scanning, remediation tracking, and closure of cybersecurity findings.
- Assist engineering teams in assessing security risks, identifying mitigations, and documenting supporting evidence for authorization.
- Contribute to verification and validation activities by supporting test planning, requirements verification, evidence collection, and preparation for customer cybersecurity reviews.
- Communicate security status, identified risks, and compliance progress to senior engineers and program stakeholders.
- Develop security documentation supporting accreditation efforts and help ensure compliance with NIST SP 800-53, NIST SP 800-171, and RMF processes.
- Ability to obtain and maintain a US DoW Secret clearance and, if required by the program, obtain a US Top Secret clearance.
Qualifications:
- Bachelor’s Degree and minimum 6 years of prior relevant experience. Graduate Degree and a minimum of 4 years of prior related experience. In lieu of a degree, minimum of 10 years of prior related experience.
- Ability to obtain a US Secret security clearance
Preferred Additional Skills:
- Security+ or CISSP certification required.
- Working knowledge of NIST SP 800-53 and NIST SP 800-171 principles and their application in system design, validation, and continuous monitoring activities.
- Experience with Windows and/or Linux security administration and networking fundamentals including TCP/IP, DNS, routing, switching, firewalls, and secure communications.
- Familiarity with DoW STIGs, ACAS, Nessus, SCAP, CIS Benchmarks, or similar compliance and hardening tools.
- Ability to contribute to cybersecurity documentation development supporting accreditation efforts.
- Strong analytical, organizational, and communication skills and cross-functional communication skills with the ability to influence technical and program decisions.
- Experience supporting cybersecurity efforts in DoW or national security environments.
- Experience assisting with system assessments, continuous monitoring activities, and sustainment of authorized systems.
- Exposure to secure system design, network defense concepts, or vulnerability remediation workflows.
Nearest Major Market: Nashville