National Security Agency logo

Information Systems Security Engineer - Entry to Mid Level Maryland

National Security Agency
  • MD
  • $87,362–$153,082 Per Year
2 days ago

Job Description

Information System Security Professionals at NSA play a vital role in in the architecting, designing, operating, defending, and maintaining secure state of the art Information Technology (IT) systems executing NSA's SIGINT and Cybersecurity missions. NSA is advancing technology to deliver mission outcomes. As such, Cybersecurity Professionals have the opportunity to work across a broad set of technologies including commercial cloud fabrics, artificial intelligence, high performance computing, and advanced cryptographic systems. These personnel are involved in the full life cycle of systems: designing, maintaining and monitoring the systems so they can be protected from the most sophisticated nation-state adversaries. Some examples of tasks include:

  • Design system/network architectures to enforce levels of confidentiality, integrity and availability
  • Ability to implement systems engineering principles/methodology
  • Define and manage remediation plans across applications, infrastructure, and cloud
  • Ensure compliance with cybersecurity standards and regulatory requirements (e.g. NIST)
  • Assess and mitigate risks in legacy systems, misconfigurations, and vulnerabilities
  • Analyze and prioritize vulnerabilities with cross functional teams
  • Lead and provide oversight to activities to patch and harden infrastructure systems
  • Define information system security requirements and functionality
  • Review security configuration options of cloud services and recommend security configurations
  • Understand cryptography and the ability to program (Python, Java, etc.)
  • Assess effectiveness of security solutions against cybersecurity frameworks (e.g. MITRE ATT&CK)
  • Monitor the cybersecurity hygiene for a family of IT systems directing remediation of configuration and vulnerability findings to reduce the adversary risks to systems
  • Understand concepts, principles, structure and standards used to design, implement, monitor and secure operating systems, equipment, networks, applications and controls
  • Operate within teams focused on implementing and evolving procedures and security settings designed to protect data and applications in cloud environments
  • Conduct security engineering/hardening of the latest operating systems, tailoring them for use in the specific mission area
  • Ability to implement automation and artificial intelligence across the RMF authorization life cycle and into continuous monitoring- Understanding of security frameworks (e.g. NIST 800-53, ISO 27001, CIS)
  • Understanding and experience prioritizing and remediating vulnerabilities across hybrid network environments
  • Cloud Security Knowledge for commercial cloud environments such as Amazon Web Services, Microsoft Azure, Oracle or Google cloud environments
  • Familiarity with secure coding, DevSecOps, and CI/CD pipelines
  • Ability to translate complex security issues into actionable guidance
  • Understanding of vulnerability scanning tools
  • Understanding of container security with knowledge of Kubernetes, Docker, and container hardening practices
  • Understanding of threat modeling and how to design mitigation strategies
  • Critical thinking and ability to break large complex problems into manageable partsThe qualifications listed are the minimum acceptable to be considered for the position.

Degree must be in Computer Science or a related field (for example Engineering, Mathematics, Data Science, Artificial Intelligence, Computer Forensics, Cybersecurity, Information Technology, Information Assurance, Information Security, Information Systems, Informatics, Cyber Operations, and Cyber Defense).

Relevant experience must be in one or more of the following areas: computer or information systems design/development; programming; information/ cyber/network security; system or network administration; vulnerability analysis; penetration testing; computer forensics; systems engineering; computer systems research; reverse engineering; or updating information assurance documentation (for example System Security Plans, Risk Assessment Reports, Certification and Accreditation packages, and System Requirements Traceability Matrices).

Completion of military training in a relevant area such as JCAC (Joint Cyber Analysis course), Undergraduate Cyber Training (UCT), Network Warfare Bridge Course (NWBC)/Intermediate Network Warfare Training (INWT), or Cyber Defense Operations will be considered towards the relevant experience requirement (i.e., 20-24 weeks course will count as 6 months of experience, 10-14 weeks will count as 3 months of experience). Cybersecurity Certifications (e.g., NET+, Security+, Certified Information System Security Professional (CISSP), and Certification Accreditation Professional (CAP)) may count as a total of 1 year of experience.

ENTRY/DEVELOPMENTAL Entry is with an Associate's degree plus 2 years of relevant experience, or a Bachelor's degree and no experience.

FULL PERFORMANCE Entry is with an Associate's degree plus 5 years of relevant experience, or a Bachelor's degree plus 3 years of relevant experience, or a Master's degree plus 1 year of relevant experience, or a Doctoral degree and no experience.Pay: Salary offers are based on candidates' education level and years of experience relevant to the position and also take into account information provided by the hiring manager/organization regarding the work level for the position.

Salary Range: $87,362 - $153,082 (Entry/Developmental, Full Performance) Salary range varies by location, work level, and relevant experience to the position.

Training will be provided based on the selectee's needs and experience.

Benefits: NSA offers a comprehensive benefits package.

Work Schedule: This is a full-time position, Monday - Friday, with basic 8hr/day work requirement between 6:00 a.m. and 6:00 p.m. (flexible).

DCIPS Trial Period: If selected for this position, you will be required to serve a two-year DCIPS trial period, unless you are a veterans' preference-eligible employee, in which case you are required to serve a one-year trial period. This trial period runs concurrently with your commitment to the position, if applicable. Before finalizing your appointment at the conclusion of your trial period, NSA will determine whether your continued employment advances the public interest. This decision will be based on factors such as your performance and conduct; the Agency's needs and interests; whether your continued employment would advance the Agency's organizational goals; and whether your continued employment would advance the efficiency of the Federal service.

Upon completion of your trial period, your employment will be terminated unless you receive certification, in writing, that your continued employment advances the public interest.

If you do not receive certification for continued employment, you should receive written notice prior to the end of your trial period that your employment will be terminated and the effective date of such termination.

Numbers & Facts

LocationMD
IndustryGovernment and Military
Salary$87,362–$153,082 Per Year
Company Size10,000 employees or more
Year Founded1952
Websitehttps://www.intelligencecareers.gov/NSA/

About Company

NSA is at the forefront of U.S. government cryptology, integrating signals intelligence (SIGINT) and cybersecurity to enhance national and allied advantages. Our mission encompasses computer network operations aimed at securing critical insights and services, ensuring decisive advantages for the nation and our allies.

NSA's cybersecurity initiatives are pivotal in safeguarding U.S. national security systems, particularly within the Defense Industrial Base and enhancing the security of U.S.  weaponry. We are committed to advancing cybersecurity through education, research, and career development.

 Through foreign signals intelligence (SIGINT), NSA delivers crucial intelligence to U.S. policymakers and military forces. This intelligence, derived from electronic signals and systems used by foreign entities, provides essential insights into the capabilities, actions, and intentions of adversaries worldwide. It supports our efforts to defend the nation, save lives, and advance U.S. objectives and alliances globally.

Visit IntelligenceCareers.gov/NSA to learn about our mission and how you can have a rewarding career that safeguards the country’s future ­– and your own.

Skills

  • Amazon Web Services (AWS)unmatched
  • Analysis Skillsunmatched
  • Architectural Designunmatched
  • Artificial Intelligence (AI)unmatched
  • Automationunmatched
  • Certification & Accreditation Process (C&A)unmatched
  • Cloud Applicationsunmatched
  • Cloud Computingunmatched
  • Computer Forensicsunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Computer Systems Designunmatched
  • Continuous Deployment/Deliveryunmatched
  • Continuous Integrationunmatched
  • Cross-Functionalunmatched
  • Cryptographyunmatched
  • Data Scienceunmatched
  • Dockerunmatched
  • Establish Prioritiesunmatched
  • ISO (International Organization for Standardization)unmatched
  • IT Requirementsunmatched
  • Informaticsunmatched
  • Information Systems Security Engineering (ISSE)unmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • Insurance Documentationunmatched
  • Internet Securityunmatched
  • Javaunmatched
  • Leading Edge Technologyunmatched
  • Maintain Complianceunmatched
  • Mathematicsunmatched
  • Microsoft Windows Azureunmatched
  • National Security Agency (NSA)unmatched
  • Network Administration/Managementunmatched
  • Network Architecture/Engineeringunmatched
  • Network Designunmatched
  • Operating Systemsunmatched
  • Oracleunmatched
  • Procedure Implementationunmatched
  • Python Programming/Scripting Languageunmatched
  • Regulatory Complianceunmatched
  • Regulatory Requirementsunmatched
  • Risk Analysisunmatched
  • Risk Managementunmatched
  • Secure Codingunmatched
  • Security Analysisunmatched
  • Signal Intelligence (SIGINT)unmatched
  • Software Patchesunmatched
  • System Architectureunmatched
  • System Lifecycleunmatched
  • Systems Administration/Managementunmatched
  • Systems Engineeringunmatched
  • Technical Deliveryunmatched
  • Threat Modelingunmatched
  • Traceabilityunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • Vulnerability Scannersunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder