Full-Time

Sr. Systems Security Engineer

Posted on 4/25/2024

Effectual

Effectual

201-500 employees

Cloud migration and managed IT services

Consulting

Compensation Overview

$121,000 - $148,000Annually

+ 401k with Company match + paid time off (PTO) + paid time off for major holidays

Senior

Washington, DC, USA

Required Skills
Communications
Management
Customer Service
Linux/Unix
PowerPoint/Keynote/Slides
Requirements
  • Bachelor's degree in related discipline
  • 4 years' networking experience preferably specialized cloud technologies
  • Security Certifications - CISSP or equivalent
  • Must be a US Citizen
  • Be able to pass a federal government background investigation
  • Must be able to obtain Public Trust Level 5
  • Deep hands-on experience in Security Assessment & Authorization (SA&A) and Continuous Diagnostics and Mitigation (CDM) initiatives
  • Experience in security advisory including security trends, tools, and best practices
  • Knowledge of and experience with Tenable Nessus
  • Experience with Microsoft Office (Excel, Word, PowerPoint)
  • Experience documenting technical requirements
  • Proficient at multi-tasking and proactive in work responsibilities
  • Superior attention to detail
  • Must have strong written and verbal communication skills
  • Have IT Management skills
  • Work with multiple clients, in parallel
  • Work Eastern Standard Time Zone schedule
  • Passion for providing great customer service
  • Passion for upskilling, certifications, keeping abreast of latest security trends and best practices
Responsibilities
  • Works with the ISSO to respond to agency’s Information Security data calls, inquiries, and surveys
  • Participate in and provide notes (if needed) regarding agency OCIO and Security meetings, workgroups, or training events as applicable
  • Collaborate with the agency ISSO to provide progress and update reports (weekly, monthly, data calls) includes managing all activities performed or lead by the contractor
  • Experience working in IT operations, system administration, applications development, change, and configuration management including asset tracking, backup technologies, and other maintenance procedures
  • Has strong analytical, task management, time management, and communication skills necessary for handling SA&A initiatives, tasks and deadlines affecting the agency environment
  • Use and build upon existing agency ATO data stored in the agency specific tool to accommodate evolution observing the latest guidance provided by NIST and the agency’s Information Security Program
  • Work with the agency’s ISSO to perform and help accomplish scheduled SA&A activities or the development of associated documentation
  • Work, collaborates, supports, and assists other agency staff (internal system owners, developers, administrators, and engineers) or external contractor staff (contractor-hosted systems) with the development of their SA&A package documentation and review and revise said documentation for accuracy and quality. Conducting interviews, site walk-throughs, and assessment of security
  • Ensure all packages are uploaded to the agency system within the deadlines and timeframes set by the agency. Work and collaborate with the agency’s Information Security Program as they review the agency SA&A packages. Work with the agency staff or external contractor staff to revise documentation
  • Review monthly vulnerability reports provided by external contractor staff for the agency contractor-hosted systems. Work with the contractor staff by monitoring the remediation of critical, high, and medium findings within the agreed-upon timeframe
  • Has strong analytical, task management, time management, and communication skills necessary for handling Vulnerability Management initiatives, tasks and deadlines affecting the agency’s environment. Analyze, correlate, and present agency vulnerability data from a variety of agency-hosted tools including the analysis of multilevel security risks and problems and compensating controls to the agency’s IT management and staff
  • Work and collaborate with developers, engineers, administrators, and Service Desk technicians to implement security controls necessary to ensure confidentiality, integrity, and availability of information and compliance with agency’s configuration management standards across Linux, Macintosh, and Windows systems
  • Collaborate with developers, system owners, system administrators and IT management (both internal and external) in researching vulnerabilities, communicating the details to these partners and IT management, developing action plans, following up and closing out all vulnerabilities by the required agency target or mandated deadlines
  • Demonstrate the ability to design, engineer, integrate, configure, and implement system security solutions to provide configuration management for multiple operating systems and varied applications. Work with IT staff to be creative when it becomes necessary to tailor configurations and create/document baseline or custom configurations
  • Technical writing skills experience writing SOPs, POA&Ms, policy, mandates, guidance, change management request, business cases, security incident reports, risk waivers, remediation action plans and other SA&A-required documentation

Effectual specializes in cloud migration and managed services, leveraging Amazon Web Services and VMware Cloud on AWS for IT modernization. Their expertise includes modernizing infrastructure, cost optimization, and providing end-to-end modernization services.

Company Stage

Private

Total Funding

N/A

Headquarters

Jersey City, New Jersey

Founded

2018

Growth & Insights
Headcount

6 month growth

-7%

1 year growth

9%

2 year growth

25%
INACTIVE