What are the responsibilities and job description for the Information System Security Engineer position at Pinnacle Government Solutions?
Pinnacle Government Solutions is a minority-owned small business that provides Software, AI/ML, and Cloud Engineering Solutions for our Department of Defense, Intelligence Community, and Federal Civilian agencies. We bring SME-level expertise and over five decades of combined industry knowledge and Talent Acquisition experience. We believe in getting it right for our customers and our country.
We are looking for an Information Systems Security Engineer to support our client in defining security requirements, and advise on, execute, and oversee cybersecurity, information assurance (IA) programs, authority to operate (ATO), accreditation and authorization (A&A), User Activity Monitoring (UAM), and system security plans.
Responsibilities:
· Lead automated security testing efforts leveraging Sponsor's enterprise scanning tools
· Create and deliver monthly Vulnerability Scans
· Create and deliver monthly Privileged Users and Admin report
· Ensuring systems are secure by protecting data and ensuring need to know
· Work with Tech team on creating any necessary POAM's
· Helps PM with the Contract Security Plan
· Work with PM and Sponsor's Information System Security Manager and INFOSEC Program Council as necessary
· Author and maintain the program's System Security Plan (SSP) for A&A
· Provide the required security education and plan to sponsor for the program
· Author and maintain the program's Automated Information Systems (AIS) Plan
Required Skills:
Applicants must have active TS/SCI w/ polygraph and minimum of 4 years' experience with:
· Application security standards and processes
· Accreditation and Authorization (A&A), including documentation, POAMs, and remediation
· Application and data security requirements for authorities to develop and operation systems (ATD, ATO) such as encryption, role-based security, information assurance, and monitoring/auditing/reporting
· Coordination with engineering team to implement security requirements
· Agile / Scrum experience