The Information Security System Engineer plays a pivotal role in safeguarding the organization’s information systems by designing, testing, and implementing secure software solutions and infrastructure. This engineer is involved in every phase of the cybersecurity lifecycle, from identifying and documenting software application requirements to executing software application designs in compliance with the DISA Application Security and Development STIG APP210.
The engineer implements, configures, and maintains critical system components such as Windows and Linux servers, virtual environments, and network security measures, ensuring all systems adhere to the latest security patches and updates mandated by the DoD and DoN.
Develop and maintain software testing plans, including both manual and automated test cases, and perform rigorous cybersecurity assessments, including risk assessments and vulnerability analysis to support accreditation requirements for RDT&E Labs to achieve an Authority to Operate (ATO).
The role also requires the validation of security packages and the evaluation of system requirements against Security Technical Implementation Guidelines (STIG).