Riverside Research Institute - Beavercreek, OH

posted 5 months ago

Full-time
Beavercreek, OH
Professional, Scientific, and Technical Services

About the position

Riverside Research is seeking an Information Security/Cybersecurity Engineer functioning at the enterprise level. This position is crucial for supporting the identification, design, and execution of security projects aimed at enhancing the organization's prevention, detection, and response capabilities. The engineer will provide technical input, recommendations, and assistance with the implementation of various security approaches, methods, and solutions. This role involves performing system or network designs that encompass multiple enclaves, including those with differing data protection and classification requirements. The engineer will conduct assessments of existing IT architecture to ensure compliance with security requirements from applicable security frameworks, such as ICD 503. They will advocate for and recommend solutions to address security requirements and assess or develop proposed changes to capabilities, systems, and environments to mitigate attack vectors against the company. Additionally, the engineer will be responsible for testing new capabilities to ensure secure integration and alignment with security best practices, as well as participating in offensive security exercises. Other related duties may be assigned to help fulfill the organization's mission.

Responsibilities

  • Provide technical input, recommendations, and assistance with the implementation of security approaches, methods, and solutions.
  • Perform system or network designs that encompass multiple enclaves, including those with differing data protection/classification requirements.
  • Conduct assessments of existing IT architecture for compliance with security requirements from applicable security frameworks (such as ICD 503).
  • Advocate and recommend solutions to resolve security requirements.
  • Assess and/or develop proposed changes to capabilities, systems, and environments to reduce attack vectors against the company.
  • Test new capabilities to ensure secure integration and alignment with security best practices.
  • Participate in offensive security exercises.
  • Perform any other related duties needed to help fulfill our mission.

Requirements

  • Bachelor's degree in an information technology or cybersecurity-related field.
  • 8 years relevant experience.
  • DoD 8570 IAT Level II / IAM Level I certification (Sec+, SSCP, CCNA-Security, etc.).
  • Demonstrated understanding of the information security needs of systems at varied stages of the SDLC.
  • Competency with Windows and Linux operating systems in an enterprise environment.
  • Competency in one or more cloud technologies/providers (Azure, AWS, Google Cloud, etc.).
  • Hands-on experience with network security technologies.
  • Working knowledge of network design, including subnets, VPNs, VLANs, and network segmentation.
  • Experience with Firewalls, Web Application Firewalls, Network IDS/IPS Solutions.
  • Familiarity with Domain Name System (DNS) and enterprise authentication methods (AD, EntraID, ADFS, SAML).
  • Knowledge of IPSec and TLS based VPNs, TCP, UDP protocols and vulnerabilities.
  • Experience with data loss prevention technologies and logging/alerting with SIEMs.
  • Familiarity with industry security frameworks (ISO 27K, NIST CSF, NIST SDLC, FedRAMP, 800-53, 800-171).
  • Strong analytical, problem-solving, organization, and interpersonal skills.
  • Ability to troubleshoot and assess root cause of information security issues.
  • Self-motivated; able to work independently with minimal direction.
  • Active Secret clearance.

Nice-to-haves

  • Master's degree in an information technology or cybersecurity-related field.
  • Advanced knowledge of Cloud technologies/providers (Azure, AWS, Google Cloud, etc.).
  • 10-15 years of experience in information technology, information security, or systems engineering.
  • Advanced certifications in security or network engineering (CASP+CE, CCNP Sec, Azure Security Engineer, AWS Advanced Networking, CISSP, CCSP, etc.).
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service