| Description PE Systems, Inc. has a great opportunity for a Information Systems Security Engineer II working on site in Philadelphia, PA.
 At PE Systems, Inc., we truly value our employees. We unite exceptional talent with rewarding careers. Our dedicated team enjoys generous PTO, holidays, competitive pay, and outstanding benefits!
 Voted Best Places to Work in Dayton since 2022! General Function: 
  
 Assist with the developing, maintaining, and tracking Risk Management Framework (RMF) system security plans, which include System Categorization Forms, Platform Information Technology (PIT) Determination Checklists, Assess Only (AO) Determination Checklists, Implementation Plans, System Level Continuous Monitoring (SLCM) Strategies, System Level Policies, Hardware Lists, Software List, System Diagrams, Privacy Impact Assessments (PIA), and Plans of Action and Milestones (POA&M).Execute the RMF process in support of obtaining and maintaining Interim Authority to Test (IATT), AO approval, Authorization to Operate (ATO), and Denial of Authorization to Operate (DATO).Identify and tailor IT and Cyber Security(CS) control baselines based on RMF guidelines and categorization of the RMF boundary.Perform Ports, Protocols, and Services Management (PPSM).Perform IT and CS vulnerability-level risk assessments.Execute security control testing as required by a risk assessment or annual security review (ASR).Mitigate and remediate IT and CS system level vulnerabilities for all assets within the boundary per STIG requirements.Develop and maintain Plans of Actions and Milestones (POA&M) in Enterprise Mission Assurance Support Service (eMASS).Develop and maintain system level IT and CS policies and procedures for respective RMF boundaries in accordance with guidance provided by the command ISSMs.Implement and assess STIG and SRGs.Perform and develop vulnerability assessments with automated tools such as Assured Compliance Assessment Solution (ACAS), Security Content Automation Protocol (SCAP) Compliance Check (SCC) and Evaluate STIG.Deploy security updates to Information System components.Perform routine audits of IT system hardware and software components.Maintain inventory of Information System components.Participate in IT change control and configuration management processes.Upload vulnerability data in Vulnerability Remediation Asset Manager (VRAM).Image or re-image assets that are part of the assigned RMF boundary.Install software and troubleshoot software issues as necessary to support compliance of the RMF boundaries' assets.Assist with removal of Solid-State Drive (SSD), Hard Disk Drive (HDD) or other critical components of assets before destruction and removal from the RMF boundary.Provide cybersecurity patching of assets in response to DoD and DoN TASKORDs, FRAGORDs, or as required by Command ISSM, ACIO, and/or Code 104 management.Support configuration change documentation and control processes and maintaining DOD STIG Compliance.Support cyber compliance of assets that are part of an enterprise IT network to include Windows server and CISCO networking hardware. This includes assessing vulnerabilities, patching and meeting requirements of the STIG for the hardware.Report compliance issues of network hardware to management to avoid operational loss of the network.
 Qualifications: Education/Certifications/Experience/Skills: 
  
 Bachelor's degree in Computer Science, Information Technology, or an equivalent STEM degree from an accredited college or university.3+ years professional experience capturing and refining information security operational and security requirements, and ensuring those requirements are properly addressed through purposeful development, and configuration; and implementing security controls, configuration changes, software/hardware updates/patches, vulnerability scanning, and securing configurations.IAT-II Certification: CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP.
 OR IAM-II Certification: CAP, CASP, CISM, CISSP (or Associate), GSLC. 
Must possess and maintain government security clearance at the Secret Level.Superior teamwork skills and working within cross-functional teams.Strong interpersonal and communication skills.Strong dedication to quality customer service.Strong multi-tasking skills are essential.Excellent analytical and problem-solving skills.Willingness to learn new technologies.Must be able to perform all functional duties independently.Must be able to transport self to various facility sites, as required. If using own motor vehicle, must possess a valid driver's license and proof of insurance.
 Preferred:  
  
 Experience with Navy cybersecurity support efforts.
 PE Systems, Inc. is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for Employment without regard to race/ethnicity, color, religion, sex, nation origin, ancestry, age, sexual orientation, gender identity, genetic information, marital status and disability (including physical or mental disability as well as pregnancy) veteran status or any other status protected by the Federal, State or local law.  #cjEqual Opportunity Employer
 This employer is required to notify all applicants of their rights pursuant to federal employment laws.
 For further information, please review the Know Your Rights notice from the Department of Labor.
 
 |