Job Closed
This listing is no longer active.
Delivering decision advantage to mission partners worldwide
Senior Information Systems Security Engineer
Location
United States
Posted
94 days ago
Salary
$59.7K - $89.5K / year
Seniority
Senior
Job Description
Senior Information Systems Security Engineer
Ultra Intelligence & Communications
• Lead implementation and sustainment of NIST SP 800-171 controls and CMMC Level 2 practices. • Develop and maintain compliance artifacts: SSPs, POA&Ms, Asset inventories, boundary definitions, Network and data flow diagrams. • Conduct internal gap assessments and readiness reviews for CMMC. • Support evidence collection and technical walkthroughs during audits. • Translate compliance requirements into actionable technical work items. • Design, implement, and harden on-premise systems supporting CUI environments (Windows/Linux servers, AD/Entra ID hybrid, virtualization, network segmentation). • Implement and tune technical security controls, including: Identity & access management (MFA, least privilege, RBAC), Endpoint security (EDR, device hardening, patching), Vulnerability scanning and remediation, Centralized logging and monitoring (SIEM), Secure configuration baselines (CIS/STIG-aligned). • Partner with IT infrastructure to implement network security controls (firewalls, VLANs, NAC, secure remote access). • Support secure system builds, change management, and incident response in CUI environments. • Help integrate security into on-prem and hybrid architectures (VMware/Hyper-V + cloud where applicable).
Job Requirements
- Demonstrated, hands-on experience implementing NIST SP 800-171 controls, preferably in manufacturing environments
- Experience supporting CMMC Level 2 readiness or assessments.
- Strong background in on-prem infrastructure security, including: Windows and/or Linux server hardening
- Active Directory or hybrid identity environments
- Virtualized infrastructure (VMware/Hyper-V)
- Network segmentation and firewall policy design
- Experience with security tooling: vulnerability scanners, EDR, SIEM, MFA/IAM, configuration management.
- Experience securing environments handling CUI (unclassified).
- Ability to move fluidly between documentation and technical implementation.
- Strong communication skills with engineers, IT staff, and leadership.
- Experience remediating findings from 800-171 assessments or pre-CMMC readiness reviews.
- Experience with hybrid environments (on-prem + cloud).
- Typically, a Bachelor Degree (or equivalent) in Computer Science, Information Technology, Cybersecurity, or a related field with 4+ years of experience.
- Familiarity with NIST SP 800-53 and other relevant security standards for classified systems.
- CompTIA Security+ certification or equivalent.
- Understanding of risk management frameworks used in government environments.
- May be required to maintain security clearance.
Benefits
- Climate controlled, well-lit and clean work environment!
- Work/life balance that includes up to 3 weeks PTO for first year
- 8 Paid Holidays, with 3 floating holidays
- 401k Plan with Company Match
- Educational Assistance Program (Tuition Reimbursement)
- Wellness Program and incentives
- Company HSA contributions
- Insurance Benefits that start 1st of the month following hire
- Eligibility in Company Performance-based bonuses annually
- Additional Employee Discounts and Perks
- Company-Paid Benefits: $75 monthly student loan repayment program
- Basic Life Insurance
- Basic Accidental Death and Dismemberment (AD&D) Insurance
- Short Term Disability
- Long Term Disability
- Employee Assistance Program (EAP)
- Voluntary Employee-Paid Benefits: Medical and Prescription insurance
- Dental insurance
- Vision insurance
- Supplemental Life Insurance Plans
- Supplemental AD&D insurance for Employee and Family
- Accident Plan
- Critical Illness Plan
- Hospital Indemnity Plan
- Pet Insurance
- Identity Theft
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Engineer – AI Calling
T-Systems International#rethinkthesystem #peoplemakeithappen #LetsPowerHigherPerformance #questiontodaycreatetomorrow
• At the Telco Hub in Madrid, we are pioneers in merging IT and Telco, building and scaling Telco as a Platform (TaaP) on our proprietary layered cloud. • Our teams operate in cross-country and cross-functional squads, delivering cutting-edge services to Europe's most valued Operator. • Our mission is to create the best customer experience based on three core principles: Cloud-based, Automated, and Sustainable. • We work as a DevOps team, taking full responsibility from design and engineering to deployment and operation. • One of our next major challenges is the development of a new AI Calling system, built on DT Technik’s CaaS Kubernetes platform, enabling real-time speech processing and translation within IMS call flows.
Firewall Engineer
CC Pace SystemsCC Pace is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, genetic information, or any other protected characteristic under federal, state, or local laws. CC Pace is committed to employing only candidates who are legally authorized to work in the United States. CC Pace values integrity throughout our hiring process.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are seeking a Firewall Engineer to manage and support our firewall infrastructure, with a focus on security policy optimization and incident response. Key Responsibilities - Manage Palo Alto and Checkpoint Firewalls - Remediate overly permissive firewall rules - Manage firewalls in Azure environments - Support daily operations of firewall security policies - Participate in incident response and troubleshooting - Work independently on assigned firewall tasks Qualifications - Demonstrated experience managing Palo Alto and Checkpoint Firewalls - Experience with firewall rule remediation and optimization - Experience managing firewalls in Azure environments - Strong ability to work independently - Understanding of Splunk Requirements - Incident response and troubleshooting experience - Proactive approach to firewall security policy management Company Description CC Pace is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, genetic information, or any other protected characteristic under federal, state, or local laws. CC Pace is committed to employing only candidates who are legally authorized to work in the United States. For us to comply with the Immigration Reform and Control Act of 1986, all new employees, as a condition of employment, must complete the Employment Eligibility Verification Form I-9 and provide documentation that establishes identity and authorization to work. E-Verify will be used for employment verification as part of your onboarding process. CC Pace values integrity throughout our hiring process. As part of our standard verification procedures, candidates will be asked to provide documentation confirming employment history, education, and work authorization.
• Engineer Zero‑Trust access controls across workforce and service identities • Harden privileged access by migrating administrators to right‑size entitlements • Stand up SaaS security posture monitoring for various platforms • Instrument identity metrics collection and tracking • Contribute and drive architecture & standards
• Participating in the on-call roster for security incident response. • Maintaining incident response documentation, participating in post-incident reviews, and contributing to incident reports. • Acting as an escalation point and incident coordinator for security incidents across Canva's systems. • Actively responding to security events from detection through to resolution, including the rollout of solutions and mitigations to prevent a recurrence. • Monitoring Canva's internal and production systems for possible attacks and intrusions. • Contributing to the knowledge and experience of your peers on the security team. • Proactively run threat detection exercises and search for anomalous behavior. • Building out and developing the tools and foundations for security incident alerting, management, communication, and response.



