So sorry, this position is no longer available.
Please go ahead and submit your application. We may have other positions that would be the perfect fit for you.
Alternatively, you may want to apply to one of the following related jobs:
The successful candidate will provide expert support to product/project teams to ensure security targets are met and compliance with policies, procedures, and standards. This includes defining security posture and requirements for projects and solutions, and offering insights into vulnerability management.
Responsibilities:
Consult on system architectures, operations, and enhancements from a security perspective.
Derive security requirements, designs, and solutions based on customer needs, standards, and internal policies.
Develop and maintain security-related system artifacts (e.G., specifications, test documents, vulnerability assessments, threat models) for projects.
Oversee security verification for products/systems.
Perform threat assessments and models, advising on risk mitigation.
Review vulnerability and compliance scan results, prioritizing remediation actions.
Support program delivery by developing security plans and budgets.
Coach and mentor junior team members.
Mandatory Experience and Skills:
Degree/diploma in Engineering, Computer Science, IT, or relevant Systems Security experience.
Certified Information Systems Security Professional (CISSP) certification.
5+ years in an engineering or information systems environment.
Understanding of DND project delivery and execution.
Familiarity with CSE ITS guidance (e.G., ITSG-11/22/33/38) for system accreditation.
Strong communication and customer interaction skills.
Exceptional leadership, problem-solving, and project execution abilities.
Preferred Experience and Skills:
Accreditation experience (risk assessment, governance) of Classified DND systems (information systems, cross-domain solutions, multi-domain interoperability).
Experience with NIST SP-800 suite, ISO/IEC, DISA STIGs, CIS, SANS standards.
Experience in designing, deploying, and working in Security Operation Centers (SOCs), including SIEM, IDS, IPS, and machine learning technologies.
Hands-on experience with Microsoft Enterprise network suite, SIEMs, vulnerability assessment tools, virtualization, continuous monitoring, and data loss prevention tools.
Familiarity with Business Continuity Plans, Disaster Recovery Programs, Open Source Security Testing Methodology Manual, OWASP References, SQL Vulnerabilities, and requirements management software (e.G., DOORS).
Certifications such as Certified Cloud Security Professional (CCSP) or Certified Information Security Manager (CISM).
Special Considerations: Successful candidates must obtain and maintain SECRET status level II security clearance and pass a security assessment for the Controlled Goods Program (CGP).