Us
Aretec is a leading technology company that provides innovative solutions to federal agencies. We are committed to delivering exceptional results by leveraging our AI, machine learning, data analysis, cybersecurity, and business optimization expertise. Our team of highly skilled professionals thrives in a collaborative and dynamic work environment, fostering growth, creativity, and excellence. As an Equal Opportunity Employer, Aretec strongly believes in diversity, equity, and inclusion in our workforce.
You
Are a skilled and experienced User Activity Monitoring (UAM) Policy Engineer passionate about developing and implementing effective Insider Threat trigger policies. You have a proven track record of collaborating with stakeholders, analyzing policy effectiveness, and streamlining alert trigger policies to enhance threat detection capabilities. Your strong technical expertise in UAM endpoint policy development and your excellent communication and problem-solving skills enable you to contribute to the success of our client's security objectives.
As a UAM Policy Engineer, you will play a crucial role in supporting a federal agency in the Washington, D.C. area, by developing, implementing, and administering Insider Threat trigger policies. You will work closely with Insider Threat analysts and various stakeholders to ensure optimal performance of threat detection capabilities while conducting efficiency assessments and supporting ongoing investigations.
We're looking for a Policy Engineer with at least 3+ years of experience in endpoint policy development for classified and unclassified networks and expertise in Forcepoint UAM.
The ideal candidate must possess a current DoD 8570 IAT Level II certification (e.g., Security+CE, CCNA Security, CySA+, GICSP, GSEC, CND, or SSCP) and have an active DoD Top Secret/SCI clearance. U.S. citizenship is required, and dual citizenship is not permitted.
The successful candidate will have strong scripting skills to create effective trigger policies, the ability to translate written requirements into configurations for deployment, and excellent analytical and problem-solving skills to assess the impact of trigger policies on enterprise infrastructure and services.
The Skills
- Minimum of 3 years of demonstrated experience in UAM endpoint policy development for classified and unclassified networks or deployment, configuration, support, and maintenance of classified and unclassified endpoints and operating systems
- Extensive experience with Forcepoint UAM and expertise in developing Insider Threat trigger policies
- Proven ability to translate written requirements into configurations for deployment to Host-based UAM capabilities and/or security client software
- Strong scripting skills to create effective trigger policies
- Strong analytical and problem-solving skills with the ability to assess the impact of trigger policies on enterprise infrastructure and services
- Excellent communication and collaboration skills to work effectively with stakeholders and team members
- Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent work experience
The Expectations
30 Days
- Familiarize yourself with the client's existing UAM infrastructure, trigger policies, and security objectives
- Collaborate with Insider Threat analysts and stakeholders to understand their requirements and operational needs
- Begin developing and implementing Insider Threat trigger policies using Forcepoint UAM expertise
60 Days
- Analyze the effectiveness of existing UAM trigger policies and perform trend analysis to identify areas of improvement
- Conduct efficiency and gap assessments of trigger policy inventory, eliminating redundancy and streamlining alert trigger policies
- Develop and test new trigger policies within tight timelines to meet emerging security challenges
90 Days
- Become a key contributor to the client's Insider Threat detection and mitigation efforts
- Continuously collaborate with USG personnel and stakeholders from multi-disciplinary offices to enhance the trigger policy process
- Support ongoing investigations on persons of interest by identifying data sources and unique methods for evidence gathering related to Insider Threats
This position requires the candidate to work on-site in Landover, MD, and possess an active DoD Top Secret/SCI clearance. U.S. citizenship is mandatory, and dual citizenship is not permitted. The candidate must also have a current DoD 8570 IAT Level II certification, such as Security+CE or equivalent.
Upon joining the team, Aretec will sponsor the selected candidate for Forcepoint policy writing training and any additional required certifications.
To apply, please submit your resume outlining your relevant experience and qualifications for the UAM Policy Engineer role. We are excited to review your application and welcome you to the Aretec team.