Millennium Corporation is hiring a Cybersecurity Engineer to work a hybrid work schedule in Hampton, VA (Langley Air Force Base). Qualified candidates must hold an active Top Secret clearance.
The Cybersecurity Engineer will:
- Provide technical guidance in areas that include Authentication, Non-Repudiation, Least Privilege, Defense in Depth, Risk Management, and Network Security
- Complete security assessments on the AOC WS development suites, and prepare final security assessment reports
- Provide technical recommendations as it pertains to cybersecurity methods and solutions
- Ensure information systems assets are compliant with Air Force regulations and company policies
- Assess proposed changes to information systems, especially ones that could affect system authorization.
- Provide purposeful security architecting, design, development, and configuration of information systems
- Provide inputs to the AOC WS ISSM for designing and developing organizational information systems and upgrading legacy systems.
- Employ best practices when implementing security requirements for information systems including software engineering methodologies, system/security engineering principles, secure design, secure architecture, and secure coding techniques.
- Work with AOC WS group members to ensure drawings, databases, and spreadsheets are accurate
- Create and maintain LAN/WAN security standards
- Develop and implement network security policies and conduct regular system audits to identify and mitigate vulnerabilities.
- Investigate, monitor, and troubleshoot firewall-related issues
- Maintain detailed and accurate documentation of firewall configurations, changes, and network diagrams.
- Review Information Assurance Vulnerability Alerts/Bulletins (IAVA/B) related to Palo Alto products and develop and implement remediation plans.
Qualifications:
- A current Top-Secret clearance.
- Current Sec+ certification
- A minimum of seven (7) years of practical experience and a Bachelor's degree within a relevant discipline.
- Strong understanding of cybersecurity principles, practices, and technologies.
- Demonstrated experience with Vulnerability Management, Tenable Nessus (ACAS-DoD version of Nessus), and STIGs.
- Knowledge of the Risk Management Framework (RMF), with emphasis on taking projects from Step 1-5