Sr Cyber Security Engineer
Scientific Research CorporationAbout the role
Salary Statement
Estimated Starting Salary Range: USD $115,000.00/Yr. - USD $191,650.00/Yr.. Salary to be determined by the education, experience, knowledge, skills, and abilities of the applicant, internal equity, and alignment with market data.About Us
Scientific Research Corporation is an advanced information technology and engineering company that provides innovative products and services to government and private industry, as well as independent institutions. At the core of our capabilities is a seasoned team of highly skilled engineers and scientists with multidisciplinary backgrounds. This team is challenged daily to provide cutting edge technology solutions to our clients.
SRC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with a company match, life insurance, vacation and sick paid time off accruals starting at 10 days of vacation and 5 days of sick leave annually, 11 paid holidays, tuition reimbursement, and a work environment that encourages excellence and more. For positions requiring a security clearance, selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
Requirements
- 5+ years combined cybersecurity experience holding one or more of the following roles: ISSE, ISSO, ISSM, Validator (e.g. NQV), and/or Security Control Assessor (SCA)
- Minimum of 5 years of IT-related experience demonstrating competency with (1) attention to detail, (2) customer service, (3) oral communication, and (4) problem solving
- Bachelors Degree (e.g. Cybersecurity, Engineering, Computer Science, or related IT fields) and Active DoD 8570 Level II Certification (e.g. Security+ CE, CCNA Security, etc.)
Desired Skills
- Knowledgeable with demonstrated cybersecurity experience in Risk Management Framework (RMF)including the following DoDI, NIST SP 800 series, CNSSI, and FIPS series
- Experience with ACAS, SCAP, and DISA STIGs/SRGs
- Assessment & Authorization (A&A)
- Policy Development
- Knowledgeable with Facility Related Control Systems (FRCS)/Industrial Control System (ICS) Compliance
- Skilled in the use of Enterprise Mission Assurance Support Service (eMASS) and/or XACTA
- Knowledgeable with Supply Chain Cyber Risk Management (SCRM)
- Skilled in compliance reporting with known vulnerabilities from alerts, advisories, errata, and bulletins
- Skilled in network security architecture concepts including topology, protocols, components, and principles with focus on producing deliverables in accordance with PPSM registration requirements and RMF processes
- Skilled in discerning the protection needs of information systems and networks with focus on identifying, tailoring, implementing, and testing RMF security controls, with practical mitigation statements
- Knowledge of current industry methods for evaluating, implementing, and disseminating in IT security assessment, monitoring, detection, and remediation tools and procedures
- Knowledge of cybersecurity principles and DoD requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation)
- Knowledge of IT security principles and methods (e.g., firewalls, demilitarized zones, encryption, zero trust)
- Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code)
Description
Scientific Research Corporation (SRC) is an advanced information technology engineering company that provides innovative products and services to government and private industry, as well as independent institutions. At the core of our capabilities is a seasoned team of highly skilled engineers and scientists with multidisciplinary backgrounds. This team is challenged daily to provide cutting edge technology solutions to our clients. SRC is searching for a wellrounded Mid-Level Cybersecurity Engineer test, analyze, evaluate, validate, and verify cybersecurity requirements for these systems to support the installation requirements for United States Space Command (USSPACECOM) command and control facilities. Work supporting USSPACECOM will be conducted at the government's facilities in Colorado Springs, CO.
- Providing risk management and IT security services--Information Assurance (IA) support, and RMF Assessment & Authorization (A&A)
- Serving as a technical liaison between senior management, technical experts/engineers, and other stakeholders for Cybersecurity to facilitate: Plans of Action and Milestones (POA&M) maintenance and milestone tracking (mitigation statemen
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s