Mercer Engineering Research Center logo
Mercer Engineering Research Center
Posted 139 days agoVerified live 4h ago

Cybersecurity Specialist

Brief overview

Warner Robins, GAIn-person
UndergradOr in progress
2+ yrsMinimum
Clearance requiredU.S. government
Software securitySystem administrationSecurity testingInformation assuranceDesignImplementationValidationComplianceOWASP testing methodologyDynamic and static application security testingRe-engineeringAutomationASP.NETJAVAIDS/IPS systemsBurp SuiteNmap

About the company

Mercer Engineering Research Center logo
Mercer Engineering Research Centermerc-mercer.org

Mercer Engineering Research Center is a non-profit engineering and technology services provider company.

Job description

Summary

Mercer Engineering Research Center is seeking a Cybersecurity Specialist to support cybersecurity operations for various information technology systems and software development activities. The role involves conducting evaluations, implementing security measures, and ensuring compliance with relevant laws and policies.

Responsibilities

  • Sustain network/information system security through testing, analysis, and application of policy and controls
  • Obtain certification and accreditation of systems, to include process support, analysis support, coordination support, security certification test support, security documentation support, investigations, software research, hardware introduction and release, emerging technology research inspections, and periodic audits
  • Conduct threat and risk analysis and analyze the business impact of new and existing systems and technologies to eliminate risk, performance, and capacity issues
  • Implement vulnerability assessments and configuration audits of operational systems, web servers, and databases to detect patterns, insecure features, and malicious activities in the infrastructure
  • Analyze, investigate, test, evaluate, and deploy security technology and procedures
  • Run diagnostics on any changes to data to verify any undetected breaches
  • Develop custom systems for specialized security features and procedures for software systems, networks, data centers, and hardware
  • Develop and implement information security standards, guidelines, and procedures
  • Observe, evaluate, and document security certification testing
  • Develop, review, and evaluate system security plans, system security authorization agreements, systems and networks diagrams, security requirements traceability matrices, risk assessments, and associated information system authorization and accreditation documents
  • Perform security incident evidence gathering and evaluations
  • Perform incident remediation, review and analysis
  • Apply Security Technical Implementation Guides (STIGs)
  • Implement government policy (i.e., NISPOM, DCID 6/3) and make process tailoring recommendations
  • Review static/dynamic analysis results and remediate
  • Conduct counteractive protocols and report incidents
  • Customize risk ratings for vulnerabilities based on company policies and maintain IT security controls documentation
  • Use OWASP testing methodology, dynamic and static application security Testing, re-engineering, automation, ASP.NET/JAVA, IDS/IPS systems, Burp Suite, Nmap, and Metasploit
  • Develop software-based remediation using Python, C#, Java, JavaScript, J-Query

Skills

  • US Citizenship
  • Ability to obtain and maintain a DoD Security Clearance
  • An undergraduate degree in Cybersecurity, Computer Engineering, Computer Science, Computer Forensics, Information Assurance, or related information security focused degree from an ABET-accredited institution and 2 years of relevant experience; or a Master's degree in same and 1 year of relevant experience; or a PhD
  • Proficient/expert in one of the following areas, competent in two areas, and novice/beginner in the remaining areas: software security, system administration, security testing, information assurance, design, implementation, validation, and compliance
  • Certifications: CompTIA Security+ CE
  • Certified Information Security Professional
  • Top Secret Clearance

Qualifications

Must Haves

  • US Citizenship
  • Ability to obtain and maintain a DoD Security Clearance
  • An undergraduate degree in Cybersecurity, Computer Engineering, Computer Science, Computer Forensics, Information Assurance, or related information security focused degree from an ABET-accredited institution and 2 years of relevant experience; or a Master's degree in same and 1 year of relevant experience; or a PhD
  • Proficient/expert in one of the following areas, competent in two areas, and novice/beginner in the remaining areas: software security, system administration, security testing, information assurance, design, implementation, validation, and compliance
  • Certifications: CompTIA Security+ CE

Nice to Haves

  • Certified Information Security Professional
  • Top Secret Clearance

More jobs like this