Now hiring

Lead, Info Security Systems Engineer (Clifton, NJ, US, 07014) @ L3Harris Technologies, Inc.

Clifton, New Jersey, USOnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

<p style="text-indent:0.5pt"><span style=""><span style=""><strong>Job Title: Information Security Systems Engineer </strong></span></span></p> <p style="text-indent:0.5pt"><span style=""><span style=""><strong>Job Code: 37214</strong></span></span></p> <p style="text-indent:0.5pt"><span style=""><span style=""><strong>Job Location: Clifton, NJ</strong></span></span></p> <p style="text-indent:0.5pt"><span style=""><span style=""><strong>Job Schedule: 9/80- employees work 9 out of every 14 days- totaling 80 hours worked- and have every other Friday off</strong></span></span></p> <p style="text-indent:0.5pt"> </p> <p style="text-indent:0.5pt"><span style=""><span style=""><strong>Job Description: </strong> </span></span></p> <p style="text-indent:0.5pt"><span style=""><span style="">Applies current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration of systems and networks to maintain system security. Throughout the lifecycle of system, works closely with customers to ensure that the security protection needs, concerns and requirements are defined and implemented with appropriate fidelity and rigor, early, and in a sustainable manner that will allow for the security authorization of the system of interest. Works with systems developers or commercial product vendors in the design and evaluation of state-of-the-art secure systems, networks, and database products using methods such as encryption technology, vulnerability analysis and security management. Responsible for integration of multiple methods into a cohesive system security perimeter and environment while implementing the policies and procedures necessary to monitor and maintain such an environment. Prepares Certification and Accreditation documentation, using multiple industry standards such as DITSCAP, DIACAP, DCID 6/3, Common Criteria, and NIST 800-37, to achieve security authorization of supported systems. Represents program security needs, concerns and requirements at customer meetings.</span></span></p> <p style="text-indent:0.5pt"> </p> <p style="text-indent:0.5pt"><span style=""><span style=""><strong>Essential Functions: </strong></span></span></p> <ul style="margin-bottom:16.0px"> <li style=""><span style=""><span style="">Lead assessment activities for security and privacy controls in embedded systems using NIST 800-53.</span></span></li> <li style=""><span style=""><span style="">Experience leading programs through the Risk Management Framework (RMF) accreditation and authorization (A&amp;A) processes to include RMF steps 1-4 (categorization, controls selection, control implementation, security assessment) and standard Body of Evidence (BoE) package development. </span></span></li> <li style=""><span style=""><span style="">Experience with A&amp;A package processing</span></span></li> <li style=""><span style=""><span style="">Experience in RMF accreditation of Platform IT (PIT) systems.</span></span></li> <li style=""><span style=""><span style="">Experience in configuration and use of cyber defense and vulnerability assessment tools such as ACAS and SCC. </span></span></li> <li style=""><span style=""><span style="">Experience in DoD software selection and approval processes for COTS, GOTS and FOSS </span></span></li> <li style=""><span style=""><span style="">Support security engineering activities, including basis of estimate development, requirements development, design, test, configuration management and maintenance of information systems and data</span></span></li> <li style=""><span style=""><span style="">Assist program security in the development of policies and procedures for emerging security technologies </span></span></li> <li style=""><span style=""><span style="">Support the evaluation, qualification, testing and delivery of security architecture improvement, obsolescence replacement and vulnerability response projects </span></span></li> <li style=""><span style=""><span style="">Experience with Security Testing and Verification </span></span></li> <li style=""><span style=""><span style="">Experience as Control Account Manager (CAM) with Earned Value Management System (EVMS tools</span></span></li> <li style=""><span style=""><span style="">Experience as Intergrated Product Team Lead (IPTL) </span></span></li> <li style=""><span style=""><span style="">Work is to be accomplished 100% onsite, in a lab environment, no options for remote support</span></span></li> </ul> <p style="text-indent:0.5pt"> </p> <p style="text-indent:0.5pt"><span style=""><span style=""><strong>Qualifications: </strong></span></span></p> <ul style="margin-bottom:3.0px"> <li style=""><span style=""><span style="">Education requirements:</span></span> <ul style="list-style-type:circle"> <li style=""><span style=""><span style="">Bachelor’s Degree and minimum 9 years of prior relevant experience. </span></span></li> <li style=""><span style=""><span style="">Graduate Degree and a minimum of 7 years of prior related experience. </span></span></li> <li style=""><span style=""><span style="">In lieu of a degree, minimum of 13 years of prior related experience.</span></span></li> </ul> </li> <li style=""><span style=""><span style="">TS/SCI Security Clearance </span></span></li> <li style=""><span style=""><span style="">Must be able to obtain and maintain a DOD 8140 certification (or NIST 800-181), appropriate for the position within 6-months of start</span></span></li> </ul> <p style="text-indent:0.5pt"> </p> <p style="text-indent:0.5pt"><span style=""><span style=""><strong>Preferred Additional Skills: </strong></span></span></p> <ul style="margin-bottom:16.0px"> <li style=""><span style=""><span style="">NSA Type 1 Certification of cryptographic high assurance devices </span></span></li> <li style=""><span style=""><span style="">Experience with NSA High Assurance products and IASRD and SERD requirements</span></span></li> <li style=""><span style=""><span style="">Lead the development and implementation of Anti-Tamper (AT) throughout the System Development Lifecycle. Key tasks include </span></span> <ul style="list-style-type:circle"> <li style=""><span style=""><span style="">Assessing systems for Critical Program Information </span></span></li> <li style=""><span style=""><span style="">Conducting trade studies </span></span></li> <li style=""><span style=""><span style="">Developing AT requirements </span></span></li> <li style=""><span style=""><span style="">Implementing security architectures </span></span></li> <li style=""><span style=""><span style="">Assessing threats via attack/countermeasure analysis </span></span></li> <li style=""><span style=""><span style="">Conducting Verification and Validation activities. </span></span></li> </ul> </li> <li style=""><span style=""><span style="">Serve as a SME in the area of AT.</span></span></li> <li style=""><span style=""><span style="">Experience using DoD 5200.39 in identifying and protecting critical program information (CPI).</span></span></li> <li style=""><span style=""><span style="">Experience in Engineering trustworthy and secure systems IAW NIST 800-160.</span></span></li> <li style=""><span style=""><span style="">Draft Program Protection Plans (PPPs), Cybersecurity Strategies, Security Classification Guides (SCGs), and AT Plans </span></span></li> <li style=""><span style=""><span style="">Interact with customer to define AT requirements, solutions, trades, costs, implementation, system impacts, and effectiveness</span></span></li> <li style=""><span style=""><span style="">Active TS/SCI Clearance is highly desired </span></span></li> </ul> <p><span style="">In compliance with pay transparency requirements, the salary range for this role is $125,000 - $232,000. This is not a guarantee of compensation or salary, as final offer amount may vary based on factors including but not limited to experience and geographic location. L3Harris also offers a variety of benefits, including health and disability insurance, 401(k) match, flexible spending accounts, EAP, education assistance, parental leave, paid time off, and company-paid holidays. The specific programs and options available to an employee may vary depending on date of hire, schedule type, and the applicability of collective bargaining agreements.</span></p> <p> </p> <p><span style="">#LI-JD3 </span></p> <p> </p>

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores