SAIC
Posted 2mo ago

Security Engineer

SAIC
Kittery, Maine, United States
OnsiteFull Time
Responsibilities
  • monitoring threats
  • conducting scans
  • supporting rmf
Requirements
  • Active Secret clearance and CompTIA Security+ required
  • 4+ years experience or bachelor’s degree
  • Experience with Navy RMF
  • ATO processes
  • Vulnerability scanning, HBSS, SIEM
  • Incident response, and vulnerability management
Technical tools mentioned
Host-Based Security System (HBSS)Security Information Event Management (SIEM)

Job description

SAIC is seeking a Security Engineer to support the Portsmouth Naval Shipyard (PNSY) Information Technology Programs for the Dept of the Navy. This initiative leverages advanced technologies and integrates critical defense systems to optimize ship maintenance through IT applications, systems, and training, ensuring sustained mission success in naval ship maintenance operations.

Work is performed on site in Kittery, ME.

ROLE: Actively monitor, detect, and respond to cybersecurity threats and incidents within an organization. Utilize advanced security tools and technologies, such as Host-Based Security System (HBSS) and Security Information Event Management (SIEM) platforms, to continuously monitor network traffic, identify vulnerabilities, and detect suspicious activities. Conduct thorough investigations of security incidents, implement incident response protocols, and coordinate remediation efforts to mitigate potential risks. Collaborate with IT teams to enforce security policies, deploy updates, and ensure the overall integrity and confidentiality of information systems. Provide expert analysis on emerging threats, recommend proactive security measures, and contribute to the development of robust cybersecurity strategies. Play a critical role in maintaining a secure operational environment by ensuring rapid identification and response to cybersecurity threats. Utilize DoD standard software tools to conduct vulnerability scans and assist local Systems Administrators in maintaining positive Vulnerability Management (VM) control of systems. Additionally, demonstrate expertise in supporting Navy Risk Management Framework (RMF) compliance and the process of obtaining and maintaining Authorization to Operate (ATO) for Navy systems.

RESPONSIBILITIES:    

  • Scan: Utilize DoD standard software tools to conduct vulnerability scans of all equipment on the PSNS and IMF network for vulnerabilities.
  • Vulnerability Management (VM): Assist local Systems Administrators in maintaining positive VM control of systems under their control.
  • Incident Response: Assist with the identification, protection, detection, response, and recovery of cybersecurity incidents, and coordinate incident response and reporting processes.
  • Host-Based Security System (HBSS): Assist with configuring, operating, troubleshooting, and maintaining endpoint security protection technologies inclusive of HBSS; and ensuring compliance with established policies and procedures and higher headquarters guidance.
  • Security Information Event Management (SIEM): Assist with configuring, operating, troubleshooting, and maintaining sensor platforms.
  • Risk Management Framework (RMF): Apply Navy RMF principles and processes to ensure that systems comply with DoD and Navy cybersecurity policies and guidelines.
  • Authorization to Operate (ATO): Support efforts related to obtaining and maintaining ATOs, including the preparation and submission of required documentation.
  • NNPP: Assist with maintaining VM and endpoint compliance.
  • Provide on-site support, including basic network administration, basic network server administration and customer support for ship cable maintenance and repair activities at the PNSY [to] include Communication Security (COMSEC) and a majority of End Device Support items. 

Qualifications

EDUCATION: Bachelor’s degree at four (4) years of experience, or additional years of experience considered in lieu of degree.  

REQUIRED EXPERTISE:    

  • Demonstrated experience with the Navy Risk Management Framework (RMF) process and the ability to support the RMF lifecycle to ensure adherence to cybersecurity standards and best practices.
  • Experience in obtaining and maintaining Authorization to Operate (ATO) for Navy systems.
  • Proficiency in utilizing DoD standard software tools to conduct thorough vulnerability scans on network equipment.  
  • Experience assisting in the maintenance of positive Vulnerability Management (VM) control and configuring, operating, troubleshooting, and maintaining endpoint security technologies, including Host-Based Security System (HBSS).  
  • Skills in supporting the identification, protection, detection, response, and recovery of cybersecurity incidents, and coordinating incident response and reporting processes.  
  • Familiarity with configuring and maintaining Security Information Event Management (SIEM) sensor platforms.  
  • Capable of working under the direction and supervision of senior personnel, contributing to maintaining VM and endpoint compliance.

 

REQUIRED CERTIFICATION: CompTIA Security+

REQUIRED CLEARANCE: Active Secret clearance

DESIRED CERTIFICATION: Certified Ethical Hacker (CEH), Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP)

Company

SAIC® is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.


We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

About SAIC

Premier technology integrator for defense, space, and civilian markets.

Similar jobs

Security Engineer roles near Kittery, Maine
1w
Save
Mark Applied
Hide
Confluent - Staff Security Engineer I - Detection & Response
Poughkeepsie or Lowell or Rochester or Tucson or Research Triangle Park or Armonk or Boston or Bellevue or Atlanta or San Jose or Dallas or Austin or San Francisco or Seattle
$161k-$299k/yr RemoteFull Time
Confluent
ConfluentNASDAQ: CFLT: A data streaming platform designed to be the intelligent connective tissue enabling real-time data to stream across organizations.
8+ YOERequires a bachelor's degree and 8+ years in detection and response or security engineering, with expertise in cloud security, detection engineering, incident response, Python or Golang, and SIEM solutions.
Python, Golang, Kubernetes, AWS, GCP, Azure, SIEM, SOAR, ETL, IBM Cloud
2mo
Save
Mark Applied
Hide
Principal Security Engineer -DLP AI Security Automation
Johnston or Boston or Iselin or Pittsburgh or Manchester
$145k-$180k/yr HybridFull Time
Citizens Financial Group
Citizens Financial GroupNYSE: CFG: US regional bank holding providing diverse financial services.
8+ YOEBachelor's in CS/Cybersecurity or equivalent, 8+ years info security (4+ years DLP/CASB/cloud protection), hands-on DLP platform expertise, SIEM/SOAR integrations, AI/automation workflows, knowledge of GLBA/PCI/SOX/GDPR, scripting experience.
DLP, CASB, DSPM, SSE, SIEM, SOAR, Python, PowerShell, KQL, AWS, Azure, GCP
4d
Save
Mark Applied
Hide
Senior Security & Infrastructure Engineer
New York City or San Francisco or Portland
$195k-$220k/yr HybridFull Time
Forerunner
Forerunner: AI-powered geospatial platform helping governments and regulated industries manage built-environment data, workflows, and field operations.
Prior FedRAMP authorization experience at Moderate or above, deep AWS expertise, infrastructure-as-code skills, Terraform proficiency, compliance documentation experience, and familiarity with SOC 2, StateRAMP, TX-RAMP, monitoring, and threat modeling.
Amazon Web Services (AWS), Terraform, Datadog, Vanta, CI/CD, Node, TypeScript, PostGIS
1w
Save
Mark Applied
Hide
Security Infrastructure Engineer
Salem, Massachusetts, United States
$79k-$110k/yr OnsiteFull Time
Salem Five Bank
Salem Five Bank: Mutually owned Massachusetts community bank providing banking, mortgage, insurance, and investment services to families and businesses.
3+ YOEBachelor's degree or equivalent experience; 3+ years of IT experience; expertise in network security, vulnerability management, patch deployment, scripting, enterprise security tools, asset management, and compliance frameworks.
Infrastructure as Code (IaC), CI/CD, NIST, ISO
3w
Save
Mark Applied
Hide
Network Security Engineer - Palo Alto
Salem or Palo Alto
OnsiteFull Time
WEI (Worldcom Exchange, Inc.)
WEI (Worldcom Exchange, Inc.): Minority-owned IT solutions provider delivering consulting, cloud, cybersecurity, infrastructure, and custom technology solutions to businesses.
5+ YOE5+ years Palo Alto NGFW and Panorama experience, strong routing (BGP/OSPF), SSL inspection, packet analysis; PCNSE preferred; bachelor's in computer related field required.
Panorama, PAN-OS, Expedition, Strata Cloud Manager, Prisma Access, Prisma SD-WAN, Global Protect, VM-Series, PA400, PA7500, BGP, OSPF, IPSec
1mo
Save
Mark Applied
Hide
Senior Security Automation Engineer
Wilmington, Massachusetts, United States
$120k-$165k/yr HybridFull Time
Symbotic
SymboticNASDAQ: SYM: AI-powered robotics and software for warehouse automation.
5+ YOEBachelor's degree in a technical field,5+ years professional software engineering experience,experience with AI/LLM systems and full-stack development,Python and API integration skills,security-aware design and strong communication.
Docker, CI/CD, LLM APIs, RAG pipelines, Python, TypeScript, Go, Rust, PostgreSQL, SQLite, BigQuery, REST APIs, webhooks, message queues, SIEM, SOAR, ITSM, IAM, GRC
1mo
Save
Mark Applied
Hide
Senior Application Security Engineer
Boston or Lawrence
$105k-$156k/yr HybridFull Time
New Balance
New Balance: Empowering people through sport and craftsmanship.
5+ YOE5+ years in application/security engineering with SDLC and DevSecOps integration, security automation/SOAR, Azure/cloud security, threat modeling, and PCI DSS experience.
Python, JavaScript, .NET/C#, Azure, CI/CD, Akamai, Salesforce Commerce Cloud, Atlassian Stack, PKI, SOAR, SAST, SCA, DAST, API Security, Container Security, CNAPP/CSPM/CWPP, WAF
1mo
Save
Mark Applied
Hide
Information Security Engineer
Andover, Massachusetts, United States
$150k-$180k/yr HybridFull Time
ALKU
ALKU: Specialized staffing and consulting firm serving enterprise clients in technology, healthcare IT, life sciences, and government.
7+ YOE7+ years information security experience with 2–3+ years in senior/lead role; strong networking, SIEM/EDR, MSSP/MSP management, Microsoft 365/Entra security experience; ability to develop security strategy and communicate risk.
SIEM, EDR, MDR, MSSP, Microsoft 365, Microsoft Defender, Microsoft Entra ID, Conditional Access, Microsoft Sentinel, Azure, AWS, SASE, SD-WAN