About the Role
This role involves overseeing system security, ensuring continuous compliance with federal and DoD standards, and serving as a technical leader across networking, Linux-based environments, and security operations. The position is both hands-on and strategic, with a strong emphasis on network security, compliance monitoring, and risk management.
Responsibilities
- Lead and manage the security of information systems, including network, server, and application environments.
- Oversee and continuously monitor compliance with DoD, NIST, RMF, FISMA, and related federal security frameworks.
- Serve as the primary point of contact for security audits, assessments, and authorization activities (A&A).
- Implement and maintain technical security controls, including STIGs, vulnerability management, and security monitoring.
- Monitor and assess system security posture through log analysis, vulnerability scans, and compliance reporting.
- Partner with infrastructure and networking teams to ensure secure network architecture and operations.
- Manage and support Linux and Red Hat–based systems, including hardening, patching, and access control.
- Provide guidance and leadership on incident response, risk mitigation, and remediation efforts.
- Develop, maintain, and review security documentation, including SSPs, POA&Ms, SARs, and SOPs.
- Act as a trusted security advisor to technical teams and leadership, recommending best practices and improvements.
- Support Information System environments with a strong focus on secure networking and access control.
Requirements
- High School diploma or equivalent
- 10+ years of experience related to the understanding of the job description
- Background in Information Systems Security compliance
- Experience working in DoD or federal government–regulated environments
- Ability to obtain and maintain a Secret level of security clearance through the Department of Defense
- Networking-focused certifications such as CCNA / CCNP
- Red Hat or Linux certifications
- DoD background supporting mission-critical or regulated systems
- Security certifications such as CISSP or CISM
- Familiarity with security automation, vulnerability scanning tools, and SIEM/log monitoring platforms
- Experience working with EMASS and federal accreditation
- Deep understanding of network security concepts and architectures
- Proven experience with compliance monitoring and continuous authorization
- Hands-on experience supporting Linux-based systems, including Red Hat environments
- Solid knowledge of NIST 800-series controls, RMF, FIPS, and DoD security requirements
- Experience coordinating and responding to security audits and assessments
Skills
- Strong communication skills with the ability to translate security requirements to technical and non-technical stakeholders
- Strong interpersonal, organizational, communication, and writing skills, including the ability to write documentation
- Strong technical understanding of networking systems
- Ability to work in a collaborative environment
- Mentoring and developing others
- Customer focus and presentation skills
- Highly motivated, with ability to perform independently, as well as interact with other groups and organizations in an engineering environment
Experience Level
- 10+ years of experience
Education Level
- High School diploma or equivalent
About the Company
- Department 448 Network Engineering Team works to design, implement, and maintain network infrastructures to support the design, development, testing and integration of system software for US Navy Nuclear Submarines.
- These network infrastructures, that are served by the System and Network Engineering team, support a variety of engineering teams that develop and maintain a variety of submarine platforms and control systems such as: Ship Control, Combat Weapons Systems, Weapons Stowage and Handling, as well as other specialized embedded safety critical shipboard and database systems, simulators, and land-based trainers.
- The Network Engineering team works to assure that these network infrastructures and the engineering development platforms are up to date and follow the latest cybersecurity standards.
