Cybersecurity- Network & Systems with Airlines Domain
Job Details:
Job Title: Cybersecurity- Network & Systems with Airlines Experience
Location: Fort Worth, TX (3 Days Hybrid)
Duration: Long Term Contract
Job Description:
Secure aircraft and ground systems by implementing and maintaining the ANSP, including PKI, VPN, and zero-trust solutions.
- Manage and maintain server infrastructure (Windows and Linux) supporting cybersecurity systems.
- Configure and manage network devices, including firewalls, VPN gateways, and intrusion detection systems.
- Manage cryptographic keys and digital certificates, ensuring compliance with industry standards.
- Respond to and manage security incidents, including forensic analysis and remediation.
- Collaborate with stakeholders to ensure secure and efficient operations.
- Stay updated on the latest developments in aircraft IT and network security.
- Support the development of security training programs.
- Monitor aviation systems for suspicious activities and analyze logs to identify threats.
- Perform risk assessments and ensure compliance with aviation-specific cybersecurity frameworks.
- Collect and analyze threat intelligence data, staying informed about emerging threats.
- Secure cloud environments for security log analysis and reporting. Includes designing the secure cloud architecture, configuring security groups, implementing IAM policies, ensuring data encryption (at rest and in transit).
- Conduct comprehensive security posture assessments of our ANSP ground systems.
SKILLS
- Deep Cybersecurity Expertise: Requires 3-5+ years of progressive cybersecurity engineering experience with deep understanding of network, systems (including Windows and Linux server administration), cloud, and PKI security principles and technologies.
- Hands-on Technical Skills: Proficiency in managing firewalls, VPNs, IDPS, ZTNA, EDR, vulnerability scanning, configuration management tools, and CSPM solutions. Also includes demonstrated experience in Windows and Linux server configuration, hardening, maintenance, and security patching.
- Cloud & PKI Focus: Expertise in cloud security (AWS or Azure) and extensive experience with PKI infrastructure, certificate lifecycle management, and key management are essential.
- Secure Architecture & Vulnerability Management: Ability to design secure network architectures and conduct security assessments to identify and mitigate vulnerabilities, including system-level vulnerabilities on Windows and Linux servers.
- Aviation Security Contribution: Will contribute to critical FAA aircraft network security program duties, including securing communication between aircraft and ground systems, collaborating with OEMs, and ensuring the security and integrity of underlying Windows and Linux server infrastructure.
PREFERRED CERTIFICATIONS
- CISSP (Certified Information Systems Security Professional)
- CCSP (Certified Cloud Security Professional)
- CompTIA Security+
- Cisco CCNA (Cisco Certified Network Associate)
- GIAC Security Essentials (GSEC)
TOOLS AND TECHNOLOGIES
Network Security
- Enterprise-grade Firewalls: (e.g., Cisco Firepower, Palo Alto Networks, Fortinet)
- VPN & ZTNA Technologies: (e.g., RRAS, Tempered Airwall, Cisco AnyConnect, Zscaler, OpenVPN)
- Intrusion Detection/Prevention Systems (IDPS): (e.g., Snort, Suricata, Zeek)
- Monitoring Tools: (e.g., Wireshark)
- Experience with multiple vendors within these categories is beneficial.
System Security (Server & Endpoint)
- Windows & Linux Server Security: Configuration, Hardening, Patching, Microsoft Active Directory and Group Policy
- Endpoint Detection and Response (EDR): (e.g., CrowdStrike Falcon, Microsoft Defender for Endpoint)
- Vulnerability Scanning: (e.g., Tenable Nessus, Tanium Comply)
- Configuration Management (for Security Automation): (e.g., Ansible, Puppet, Chef)
Cloud Security (AWS or Azure Focus)
- Cloud Security Posture Management (CSPM): (e.g., AWS Security Hub, Azure Security Center)
- Cloud IAM & Access Control (AWS IAM, Azure AD)
- Cloud Security Services: (AWS & Azure native security offerings)
Public Key Infrastructure (PKI)
- Certificate Authorities (CA): (e.g., Microsoft AD CS, OpenSSL)
- Key Management Systems (KMS): (e.g., Hardware HSMs, AWS KMS, Azure Key Vault, HashiCorp Vault)
SURROUNDING TEAM/KEY PROJECTS
- Lead the implementation of a new network security architecture for ground-based aviation systems, including use of firewalls, VPNs, and intrusion detection/prevention systems.
- Design and implement a secure hybrid cloud environment for aviation applications, ensuring compliance with industry standards and regulations.
- Develop and implement a comprehensive PKI solution for securing communication between aircraft and ground systems, including certificate lifecycle management and key management.
- Conduct security assessments of network infrastructure and systems, identifying vulnerabilities and recommending mitigation strategies.
- Collaborate with OEMs to evaluate the security of their products and services, ensuring they meet the requirements of aviation systems.
Job Details:
Job Title: Cybersecurity- Network & Systems with Airlines Experience
Location: Fort Worth, TX (3 Days Hybrid)
Duration: Long Term Contract
Job Description:
Secure aircraft and ground systems by implementing and maintaining the ANSP, including PKI, VPN, and zero-trust solutions.
- Manage and maintain server infrastructure (Windows and Linux) supporting cybersecurity systems.
- Configure and manage network devices, including firewalls, VPN gateways, and intrusion detection systems.
- Manage cryptographic keys and digital certificates, ensuring compliance with industry standards.
- Respond to and manage security incidents, including forensic analysis and remediation.
- Collaborate with stakeholders to ensure secure and efficient operations.
- Stay updated on the latest developments in aircraft IT and network security.
- Support the development of security training programs.
- Monitor aviation systems for suspicious activities and analyze logs to identify threats.
- Perform risk assessments and ensure compliance with aviation-specific cybersecurity frameworks.
- Collect and analyze threat intelligence data, staying informed about emerging threats.
- Secure cloud environments for security log analysis and reporting. Includes designing the secure cloud architecture, configuring security groups, implementing IAM policies, ensuring data encryption (at rest and in transit).
- Conduct comprehensive security posture assessments of our ANSP ground systems.
SKILLS
- Deep Cybersecurity Expertise: Requires 3-5+ years of progressive cybersecurity engineering experience with deep understanding of network, systems (including Windows and Linux server administration), cloud, and PKI security principles and technologies.
- Hands-on Technical Skills: Proficiency in managing firewalls, VPNs, IDPS, ZTNA, EDR, vulnerability scanning, configuration management tools, and CSPM solutions. Also includes demonstrated experience in Windows and Linux server configuration, hardening, maintenance, and security patching.
- Cloud & PKI Focus: Expertise in cloud security (AWS or Azure) and extensive experience with PKI infrastructure, certificate lifecycle management, and key management are essential.
- Secure Architecture & Vulnerability Management: Ability to design secure network architectures and conduct security assessments to identify and mitigate vulnerabilities, including system-level vulnerabilities on Windows and Linux servers.
- Aviation Security Contribution: Will contribute to critical FAA aircraft network security program duties, including securing communication between aircraft and ground systems, collaborating with OEMs, and ensuring the security and integrity of underlying Windows and Linux server infrastructure.
PREFERRED CERTIFICATIONS
- CISSP (Certified Information Systems Security Professional)
- CCSP (Certified Cloud Security Professional)
- CompTIA Security+
- Cisco CCNA (Cisco Certified Network Associate)
- GIAC Security Essentials (GSEC)
TOOLS AND TECHNOLOGIES
Network Security
- Enterprise-grade Firewalls: (e.g., Cisco Firepower, Palo Alto Networks, Fortinet)
- VPN & ZTNA Technologies: (e.g., RRAS, Tempered Airwall, Cisco AnyConnect, Zscaler, OpenVPN)
- Intrusion Detection/Prevention Systems (IDPS): (e.g., Snort, Suricata, Zeek)
- Monitoring Tools: (e.g., Wireshark)
- Experience with multiple vendors within these categories is beneficial.
System Security (Server & Endpoint)
- Windows & Linux Server Security: Configuration, Hardening, Patching, Microsoft Active Directory and Group Policy
- Endpoint Detection and Response (EDR): (e.g., CrowdStrike Falcon, Microsoft Defender for Endpoint)
- Vulnerability Scanning: (e.g., Tenable Nessus, Tanium Comply)
- Configuration Management (for Security Automation): (e.g., Ansible, Puppet, Chef)
Cloud Security (AWS or Azure Focus)
- Cloud Security Posture Management (CSPM): (e.g., AWS Security Hub, Azure Security Center)
- Cloud IAM & Access Control (AWS IAM, Azure AD)
- Cloud Security Services: (AWS & Azure native security offerings)
Public Key Infrastructure (PKI)
- Certificate Authorities (CA): (e.g., Microsoft AD CS, OpenSSL)
- Key Management Systems (KMS): (e.g., Hardware HSMs, AWS KMS, Azure Key Vault, HashiCorp Vault)
SURROUNDING TEAM/KEY PROJECTS
- Lead the implementation of a new network security architecture for ground-based aviation systems, including use of firewalls, VPNs, and intrusion detection/prevention systems.
- Design and implement a secure hybrid cloud environment for aviation applications, ensuring compliance with industry standards and regulations.
- Develop and implement a comprehensive PKI solution for securing communication between aircraft and ground systems, including certificate lifecycle management and key management.
- Conduct security assessments of network infrastructure and systems, identifying vulnerabilities and recommending mitigation strategies.
- Collaborate with OEMs to evaluate the security of their products and services, ensuring they meet the requirements of aviation systems.