- Praveen at [Phone number shown when applying]
- Harman at [Phone number shown when applying]
Scope:
To enhance, upgrade, or develop operational tools for the cyber office. To build out integrations between cyber tools, infrastructure equipment, and service management tools. To revamp vulnerability detection, including Security Center, and firewall management tools and assist in the transitioning and developing Intrusion Detection System (IDS) analysis tools to feed active response actions into the Consolidated Active Response System (CARS) that will manage and respond to those actions. The project will provide central services for IDS and cyber tools to interact with active response services and authoritative resources. Cyber, networking, and infrastructure administrators will have an interactive user interface to configure appropriate configurations per reporting system via a web portal. This engagement will backfill and free up other resources to work on other critical client projects. The candidate will
- Work with others within the Enterprise Software Solutions (ESS) group, the Cyber Security Program Office (CSPO), Networking Operations Center (NOC), Infrastructure Department. Business Information Services (BIS) division, Mission Support and lab-wide to develop the requirements and specifications.
- Work with a small team to develop the services.
- Provide the experience for web services and integrations and mentor others in developing web services and integrations.
- Develop tools and functionality for cyber-based tools, including active response, intrusion detection, vulnerability detection, firewall management, and related cyber tools.
- Transfer knowledge of service operations to appropriate staff.
Reporting and Work Direction
Report to the Cyber Security Software Development Lead within Business and Information Services
Task and Time Reporting
The project managers measure work performed by the contractor on a task basis. The tasks typically represent 20 to 80 hours of effort with performance being measured at the completion of each of the assigned tasks. Hours will be recorded on a weekly time sheet; progress against planned tasks will be reported weekly.
Computer Protection Program
The contractor shall adhere to all policies and procedures of the ANL Computer Protection Program, must not bypass any procedures established to protect data, applications, hardware, or communications at ANL, must maintain a work environment that will satisfy audit, privacy, and protection requirements, and must report any findings of inadequacies to the technical contact and the CIS Computer Protection Program Representative.
Qualifications:
- Considerable knowledge of Python scripting.
- Considerable knowledge of web services.
- Considerable knowledge of database design in MySQL and/or SQL Server.
- Basic knowledge of cyber security concepts.
- Basic knowledge of ServiceNow Orchestration and Mid Servers a plus.
- Working knowledge of networking administration.
- Working knowledge of system administration.
- Excellent communication and technical skills.
- Considerable skills in user-interface design.
- User skills on Red Hat Enterprise Linux (RHEL) operating system.
- Able to work both independently and as a contributing member of a small technical team.
- Able to effectively interact with user organizations to derive system requirements and design solutions.
- Able to disseminate knowledge to current staff.
DivIHN is an equal opportunity employer. DivIHN does not and shall not discriminate against any employee or qualified applicant on the basis of race, color, religion (creed), gender, gender expression, age, national origin (ancestry), disability, marital status, sexual orientation, or military status.