About this role
Sigma Defense is seeking a Senior Information Systems Security Engineer (ISSE) to join our team in Rome, NY.
Equal Opportunity Employer/Veterans/Disabled: Sigma Defense Systems is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Requirements
- 8+ years of experience in information systems security engineering, cybersecurity engineering, or a closely related technical discipline.
- Strong hands-on experience with ACAS, including vulnerability scanning, results analysis, remediation tracking, and validation.
- Demonstrated experience implementing cybersecurity requirements under the DoD Risk Management Framework (RMF).
- Strong understanding of Zero Trust architecture and security principles and their application within RMF environments.
- Hands-on experience with Microsoft Azure security technologies and cloud security architecture.
- Experience developing and administering Azure Policy for security, governance, and compliance enforcement.
- Experience with Microsoft Defender for Cloud, including security posture management, recommendations, regulatory compliance, and workload protection.
- Experience with Xacta, with an emphasis on automation, RMF workflow improvement, evidence management, or continuous authorization.
- Experience with infrastructure automation and Infrastructure as Code (IaC) concepts and technologies.
- Ability to translate cybersecurity requirements and security controls into technical configurations and automated enforcement mechanisms.
- Strong understanding of vulnerability management, system hardening, security-control implementation, and continuous monitoring.
- Must be a U.S. citizen.
Mandatory Certifications:
- Required:
- CompTIA Security+
- Certified Information Systems Security Professional (CISSP)
- ACAS Operator and Supervisor Course
- Desired :
- Microsoft AZ104
- Microsoft AZ500
Computer Programs/Software:
- ACAS
- Defender for Cloud
- Xacta
Personnel Clearance Level:
- Candidate must possess or have the ability to obtain an active TS/SCI security clearance or higher.
- Clearance may be sponsored for the right candidate.
Education Requirements:
- Bachelor's degree from an accredited college or university in a Cybersecurity or related field of study.
Essential Job Duties (not all-inclusive):
- Serve as a senior cybersecurity engineering resource supporting the implementation and maintenance of security controls throughout the system lifecycle.
- Apply RMF principles within Zero Trust architectures, translating security and compliance requirements into practical technical controls.
- Perform and support vulnerability assessment and continuous monitoring activities using Assured Compliance Assessment Solution (ACAS).
- Analyze ACAS scan results, identify vulnerabilities, configuration deficiencies, and work with engineering teams to develop and validate remediation strategies.
- Design, implement, and maintain security controls within Microsoft Azure environments.
- Develop and manage Microsoft Azure Policy initiatives, assignments, exemptions, and compliance controls to enforce security requirements at scale.
- Utilize Microsoft Defender for Cloud to assess security posture, identify vulnerabilities and misconfigurations, monitor compliance, and improve cloud workload protection.
- Support the implementation of Zero Trust security principles, including identity, device, network, application, workload, and data security controls.
- Develop and maintain Xacta automation capabilities to improve RMF documentation, evidence collection, control validation, and continuous authorization processes.
- Automate security and compliance processes through Infrastructure as Code (IaC) and other infrastructure automation technologies.
- Integrate security requirements and compliance validation into automated deployment and configuration-management workflows.
- Develop repeatable methods for collecting security-control evidence and reducing manual RMF and assessment activities.
- Collaborate with system architects, cloud engineers, DevSecOps teams, system administrators, ISSOs, and other cybersecurity personnel.
- Provide technical guidance on system security architecture, control implementation, vulnerability remediation, and cybersecurity risk.
- Support security assessments, authorization activities, continuous monitoring, and ongoing maintenance of the system's security posture.
Salary Range : $125,000 - $155,000 annually.
Benefits
- Dental and Vision Insurance
- Medical Insurance to Include HSA, FSA, and DFSA Plans
- Life and AD&D coverage
- Employee Assistance Program (EAP)
- 401(k) Plan with Company Matching Contributions
- 160 Hours of Paid Time Off (PTO)
- 12 (Floating) Holidays
- Educational Assistance
- Highly Competitive Salary