We are seeking an Information Assurance & Cybersecurity Engineer specializing in network infrastructure hardening to support the security, compliance, and risk management of critical network and telecommunications systems. The engineer will be responsible for applying Security Technical Implementation Guides (STIGs), implementing baseline security configurations, conducting vulnerability assessments, and maintaining compliance across enterprise and service-provider network equipment. The ideal candidate has hands‑on experience configuring and securing network devices, a deep understanding of DoD cybersecurity requirements, and expertise in translating security guidelines into practical, operational network configurations.
Key Responsibilities
Apply, validate, and document DISA STIGs and Security Requirements Guides (SRGs) across routers, switches, firewalls, optical transport, and telecommunications equipment.
Establish, maintain, and audit secure baseline configurations for multi‑vendor network devices.
Perform automated and manual vulnerability scans using tools like ACAS (Nessus) and SCAP Compliance Checker (SCC).
Identify, analyze, and remediate cybersecurity vulnerabilities and configuration drift across network hardware and firmware.
Develop Plan of Action and Milestones (POA&Ms) for non‑compliant controls and track vulnerability remediation through completion.
Support Risk Management Framework (RMF) Authorization and Assessment (A&A) processes, compiling body of evidence (BoE) artifacts for network controls.
Configure secure administrative protocols and access controls, including TACACS+, RADIUS, SSHv2, SNMPv3, 802.1X, and Role‑Based Access Control (RBAC).
Implement network‑level security controls, including control plane policing, banner settings, logging (Syslog/SIEM integration), disabling unnecessary services, and port
#J-18808-LjbffrInformation Assurance & Cybersecurity Engineer (Network Hardening & STIGs) in fort meade at Unknown Company
This position is listed as full time and onsite.