Lead, Information Security Systems Engineering
Salt Lake, UT - USA
Job Summary
Job Title: Lead Info Security Systems Engineering
Job Code: 44526
Job Location: Salt Lake City UT
Job Schedule: 9/80 (employees work 9 out of every 14 days - totaling 80 hours worked - and have every other Friday off)
Job Description:
As a Lead Information Security Systems Engineering at L3Harris Technologies you will support the systems engineering team by providing security architecture and requirements oversight as well verifying security requirements are met using a mix of manual and automated techniques.
You will work closely with software networking FPGA and hardware engineers to integrate security requirements verify requirements have been met and build the body of evidence to showcase how the system you helped design meets the customers needs. This position is ideal for engineers with a strong foundation in cybersecurity governance risk and compliance (GRC) and who have experience as an engineer who are interested in contributing to high-assurance defense systems.
Essential Functions:
- Interpret and apply security controls from NIST SP 800-53 CNSSI 1253 and related guidance into requirements that functional engineers can design to meet
- Support implementation and validation of Security Technical Implementation Guides (STIGs) and other configuration baselines
- Execute and support RMF lifecycle activities (categorization control selection implementation assessment authorization and continuous monitoring) as needed
- Develop maintain and review RMF documentation (e.g. SSPs SARs POA&Ms Security Plans)
- Review high-level system design to ensure it meets security requirements within software networking and hardware
- Interface with internal stakeholders Authorizing Officials (AOs) and external assessors to support authorization efforts
- Track and report compliance status risks and remediation activities to program leadership
- Travel up to 10% as needed
- Must have a minimum of a DoW Secret Clearance
Required Qualifications (one of the following):
Bachelors degree in any engineering discipline including cybersecurity computer science information systems etc. with minimum 9 years of relevant experience
Graduate degree in a related field with 7 years of relevant experience
In lieu of a degree 13 years of relevant experience
Required Certifications:
One DoD 8140 / 8570-compliant certification (e.g. Security CISSP SSCP GSEC) or ability to obtain within 6 months of hire
Preferred Additional Skills:
- Experience with the systems engineering lifecycle as it relates to security objectives; particularly requirements analysis design and testing
- Exposure to cryptographic systems FIPS 140-3 or NSA certification processes
- Experience with high-assurance or classified systems
- Hands-on experience executing RMF within DoD environments
- Experience applying NIST SP 800-53 security controls and STIGs
- Experience supporting Authority to Operate (ATO) processes
- Strong technical writing and documentation skills
- Familiarity with TEMPEST Anti-Tamper or related system security disciplines
- Experience supporting government customers in a SETA/A&AS role
- Additional certifications (CISM CISSP-ISSEP CISA CEH GIAC etc.)
- Active TS/SCI clearance or ability to obtain
Systems & Technical Context
- Understanding of networking concepts (TCP/IP network architecture boundary defense)
- Experience working with embedded systems and/or communications systems
- Familiarity with DevSecOps environments
- Experience working in cross-functional engineering teams
Required Experience:
IC
About Company
At L3Harris, we anticipate and mitigate risk with agile end-to-end solutions that meet our customers' mission-critical needs across all domains.