Summary
The Building People, LLC is seeking a full-time Security System Engineer for the Department of Defense. This role involves designing, implementing, and integrating cybersecurity solutions for facility and operational technology environments while collaborating with senior cybersecurity engineers and project managers to deliver secure systems.
Responsibilities
- Designs, implements, and integrates cybersecurity solutions for facility and operational technology environments
- Supports RMF activities, assists with secure configurations and segmentation, validates ports, protocols, and services, executes vulnerability management tasks, and supports testing and accreditation
- Collaborates with senior cybersecurity engineers, project managers, and field teams to deliver secure, reliable systems
Skills
- Experience designing and integrating IA solutions for CE, NE, and enclave environments that support facility-related control systems
- Hands-on support executing the DoD Risk Management Framework to achieve IATT, IATO, or ATO for FRCS or similar systems
- Working knowledge of DISA STIGs and SRGs, secure baseline configuration, system hardening, PPS allowlisting, logging, and auditing
- Experience with vulnerability scanning and remediation workflows using tools such as ACAS and SCAP, and coordination with endpoint security tools
- Network security fundamentals for ICS, including segmentation, firewall rule development, and managed remote access
- Familiarity with ICS protocols and security considerations, such as BACnet and Modbus
- Ability to contribute to RMF artifacts and package content including SSP, POA&M, SAR inputs, diagrams, and inventories
- Strong written and verbal communication skills for stakeholder coordination and documentation
- Ability to travel to active project sites, including secure facilities
- Must meet DoDD 8570.01 and DoD 8570-M requirements for IAM Level 1 or 2 and IAT Level 1 or 2, or IASAE Level 1 or 2
- Bachelor's degree in engineering, computer science, information systems, cybersecurity, or related discipline, or equivalent experience
- Ability to obtain a Secret Clearance
- Minimum 25% to job sites CONUS and OCONUS as required by task orders
- Certifications such as Security+, CySA+, CEH, GICSP, GRID, or ISA/IEC 62443 credentials
- Experience securing ESS and FAS platforms and their interfaces to other control systems
- Experience integrating OT event data with enterprise monitoring or SIEM tools
- Prior work on federal task order contracts for facility modernization or ICS programs
- Advanced degree in a related field or additional graduate certificate work in cybersecurity engineering
Qualifications
Must Haves
- Experience designing and integrating IA solutions for CE, NE, and enclave environments that support facility-related control systems
- Hands-on support executing the DoD Risk Management Framework to achieve IATT, IATO, or ATO for FRCS or similar systems
- Working knowledge of DISA STIGs and SRGs, secure baseline configuration, system hardening, PPS allowlisting, logging, and auditing
- Experience with vulnerability scanning and remediation workflows using tools such as ACAS and SCAP, and coordination with endpoint security tools
- Network security fundamentals for ICS, including segmentation, firewall rule development, and managed remote access
- Familiarity with ICS protocols and security considerations, such as BACnet and Modbus
- Ability to contribute to RMF artifacts and package content including SSP, POA&M, SAR inputs, diagrams, and inventories
- Strong written and verbal communication skills for stakeholder coordination and documentation
- Ability to travel to active project sites, including secure facilities
- Must meet DoDD 8570.01 and DoD 8570-M requirements for IAM Level 1 or 2 and IAT Level 1 or 2, or IASAE Level 1 or 2
- Bachelor's degree in engineering, computer science, information systems, cybersecurity, or related discipline, or equivalent experience
- Ability to obtain a Secret Clearance
- Minimum 25% to job sites CONUS and OCONUS as required by task orders
Nice to Haves
- Certifications such as Security+, CySA+, CEH, GICSP, GRID, or ISA/IEC 62443 credentials
- Experience securing ESS and FAS platforms and their interfaces to other control systems
- Experience integrating OT event data with enterprise monitoring or SIEM tools
- Prior work on federal task order contracts for facility modernization or ICS programs
- Advanced degree in a related field or additional graduate certificate work in cybersecurity engineering