- Vulnerability Management
-
- Implement patching procedures for multiple Operating Systems (Linux, Windows, VMware, Cisco)
- Run and review vulnerability scans and STIGs
- Prioritize vulnerability remediation efforts across endpoints, networks, and applications
- Automate patching process for multiple Operating Systems (Linux/Windows)
- Responsible for securing and hardening hardware and software systems.
-
- Governance, Risk & Compliance
-
- Support tracking resolution and milestones for program's Plan of Action and Milestones (POA&M) items
- Develop and maintain security policies, procedures, and standards
- Ensure compliance with relevant standards, directives and regulations
- Conduct risk assessments and support audit activities
- Remain abreast of emerging technologies, cyber threats and security tools
-
- Security Architecture & Engineering
-
- Design, implement, and manage security solutions (e.g., SIEM, EDR, firewalls, IDS/IPS, IAM, VPN)
- Evaluate and integrate new security technologies and tools
-
- Advise ISSO and ISSM on issues related to securing and monitoring classified DoD networks
- Creation and maintaining of data flow and system boundary diagrams
- Agile/Scrum process
- Active secret clearance
- Bachelor’s (BS) degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
- Strong understanding of network protocols, security architecture, and security practices
- Experience with Linux-based and Windows-based systems
- Proficient in scripting (e.g., Python, PowerShell, Bash)
- Experience with automation tools (e.g., Ansible, Terraform, Chef, Puppet)
- Understanding of CI/CD
- In-depth knowledge of modern threat landscapes, vulnerabilities, mitigation techniques, and security tools and processes
- Familiarity with NIST 800-53, NIST 800-171, SOC 2 and/or ISO 27001
- Ability to write clear and concise cybersecurity guidance, procedures and documentation
- Security+ Certified
Desired Skills
- DoD RMF security practices and regulations
- Virtualization (preferably VMware)
- Familiarity with open-source security tools
- Familiarity with ACAS, Tenable Security Center, and Tenable Nessus
SRC IS A CONTRACTOR FOR THE U.S. GOVERNMENT, THIS POSITION WILL REQUIRE U.S. CITIZENSHIP AS WELL AS, A U.S. GOVERNMENT SECURITY CLEARANCE AT THE SECRET LEVEL WITH TOP SECRET / SCI ELGILIBILTY
Travel Requirements- Minimal (<10%)
Scientific Research Corporation is an advanced information technology and engineering company that provides innovative products and services to government and private industry, as well as independent institutions. At the core of our capabilities is a seasoned team of highly skilled engineers and scientists with multidisciplinary backgrounds. This team is challenged daily to provide cutting edge technology solutions to our clients.
SRC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with a company match, life insurance, vacation and sick paid time off accruals with amounts increasing based on role and years of service, 11 paid holidays, tuition reimbursement, and a work environment that encourages excellence and more. For positions requiring a security clearance, selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
EEOScientific Research Corporation is an equal opportunity employer that does not discriminate in employment. All qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other protected characteristic under federal, state or local law.
Scientific Research Corporation endeavors to make www.scires.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact [email protected] for assistance. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.
Skills Required
- Bachelor’s degree in computer science, engineering, mathematics, management information systems, cybersecurity, or a related field
- Five years of related work experience
- Experience monitoring and managing networked computer infrastructure
- Experience developing or improving products, solutions, and processes
- Experience with system-level architectural design of software, hardware, and networked systems
- Experience working with government programs and controlled engineering baselines
- Intermediate knowledge of cybersecurity, IT risks, and enterprise IT concepts, architectures, and systems
- Knowledge of virtualization and containerization technologies
- Intermediate knowledge of computer networking and IT Service Management best practices
- Familiarity with cyber range tools, deployment automation, configuration automation, monitoring, and traffic generation
- Effective technical communication and program risk management skills
- U.S. citizenship
- U.S. government Secret security clearance with Top Secret/SCI eligibility
- Experience managing a DoD or Federal cyber network
- Advanced knowledge of IT Service Management best practices
- Knowledge of DevSecOps methodologies and tools
- Knowledge of network vulnerability and threat analysis tools and processes
What We Do
Sciolex Corporation is a CVE-certified Service-Disabled Veteran-Owned Small Business that provides systems and mission engineering, technical assistance, operations advisory, cloud computing, acquisition support, and executive and administrative services. The company supports federal civil, defense, and Intelligence Community agencies, helping them plan, integrate, test, deploy, and manage information, technology, and mission capabilities while improving information operations through research and innovative processes.


.png)






