Information System Security Engineer at CAE - New York City, New York Information System Security Engineer - CAE

Information System Security Engineer

CAE

Location: New York City, New York, USA

Category: Information Technology

Salary: 80,000 - 120,000 USD / yearly

Full-time


Job Description

CAE is seeking an Information System Security Engineer (ISSE) to provide technical expertise and support to CAE programs and Cybersecurity staff. The ISSE's priority is the management, implementation, and testing of our Program's Cybersecurity Requirements.

Responsibilities

  • Assist in preparing, maintaining, and implementing SSPs, under ISSM oversight, for government approval.
  • Participate in update/management of SCTM.
  • Assist in authoring and updating the Risk Assessment Report (RAR)
  • Assist in creating and maintaining System Diagrams, Data Flow Diagrams, Boundary diagrams.
  • Update of Ports Protocols and Services.
  • Assist in POA&M Management
  • Participate in Creating and executing the Security Assessment Plan/Procedures.
  • Assist in gathering COVs/LOVs and maintaining the sanitization plan.
  • Facilitate Software/Hardware Approvals.
  • Assist in Technical Security Management: Firewalls, Data Protection Controls, Patching, Encryption, Certificates, vulnerability scanning (ACAS/SCAP/E-STIG).
  • Continuous Monitoring - Patch/STIG - Annual ATO Package Review - Peer Reviewing program security documents.
  • Attending and presenting in Design reviews, Program Meetings, Technical Interchange Meetings and IPT meetings.
  • Assist in compliance monitoring. Reviewing, evaluating and updating STIG Checklists.
  • Participate in providing input to Proposal cost and technical volumes.
  • Assist in Cost Account Management.
  • High level system administrator skills under Windows or Linux (prefer both).
  • Experience with Software Development.
  • Experience with Configuration Management (version control).

Qualifications

  • B.S. degree in Computer Science, Computer Engineering, Information Technology, Electrical Engineering, or other technical equivalent.
  • Five years directly related experience in implementation of DOD security requirements and contractor/government information security.
  • At least one of DoD 8570.01-M Information Assurance Management (IAM) Level II Approved Baseline Certification (CAP, CASP+CE, CISM, CISSP (or Associate), GSLC, or CCISO.)
  • Experience with NIST Special Pamphlet (SP) 800-37 Guide for Applying the Risk Management Framework, NIST SP 800-53 Rev. 5 Security and Privacy Controls for Federal Information Systems and Organizations.
  • Experience documenting compliance/non-compliance of security controls in the Enterprise Mission Assurance Support Service (eMASS).
  • Incumbent must hold current or be eligible for DOD Personnel Security Clearance at Top Secret level.
  • Thorough knowledge and experience with the NISPOM, DOD security-related instructions and directives, specific services' security-related regulations required.
  • Extensive experience with hardware/software platforms to include MS Windows, Linux, UNIX.
  • Military service or military environment familiarity, customs/protocol experience preferred.
  • Ability to communicate, interact and collaborate with management, executive personnel and military personnel including senior officer levels required.
  • Detail-oriented; work with minimal supervision, analytical and problem-solving capability.
  • Direct experience with classified DoD networks.
  • Experience obtaining and maintaining ATO for classified network.
  • Must maintain IAM required Certification(s).

Perks & Benefits

  • Comprehensive and competitive benefits package and flexibility that promotes work-life balance
  • A work environment where all employees are valued, respected, and safe
  • Freedom to succeed by enabling team members to deliver, take initiatives and make decisions
  • Recognition, professional development, advancement, and having fun!

Why Join Us?

  • CAE Vision: Our vision is to be the worldwide partner of choice in defense and security, civil aviation, and healthcare by revolutionizing our customers' training and critical operations with digitally immersive solutions to elevate safety, efficiency, and readiness.
  • CAE Defense & Security Mission: CAE's Defense and Security business unit focuses on helping prepare military customers to develop and maintain the highest levels of mission readiness.
  • CAE Values: Empowerment, Innovation, Excellence, Integrity, and OneCAE make us who we are and we strive to make a difference in the world while helping each other succeed.