Cross-Domain System Engineer (TS/SCI Req.)
Paragone Solutions is seeking seeking an experienced Cross Domain System Engineer. This person will be a critical thinker with deep technical skills and a demonstrated track record of fostering, promoting, and implementing innovative ideas and solutions across both on-premise and cloud environments. This position will support the design, update, and management of a Cross Domain Solution (CDS) to enable multiple Commercial Solutions for Classified (CSfC) connections—both on-site and in secure cloud infrastructures—to support mission-critical efforts and objectives.
Former or current Reserve/Guard 35T (Enlisted) or 353T (Warrant Officer) Military Intelligence Systems Maintainer/Integrator are highly encouraged to apply.
This is a full-time, on-site position located at Aberdeen Proving Ground, MD. This position requires an Active DOD Top Secret (TS) Clearance with SCI and Poly. If a candidate does not have a polygraph, they must be willing to undergo a polygraph investigation.
Responsibilities:
- Designs enterprise and systems security throughout the development lifecycle; translates technology and environmental conditions (e.g., law and regulation) into secure designs and processes across on-premise and cloud-based architectures.
- Serves as an SME across all aspects of CDS design, including Data Owner Guides, rule sets, dataflows, and filter development, incorporating cloud-native capabilities where applicable.
- Provides Subject Matter Expertise for cross-domain policy analysis, design, and implementation support to configure and validate CDS access and transfer capabilities integrated within the PM Family of Systems (FoS), including hybrid cloud environments.
- Implements NCDSMO, TSABI, and SABI information assurance/cybersecurity requirements to meet Raise-the-Bar, with added consideration for cloud compliance frameworks such as FedRAMP, DoD SRG, and CMMC.
- Demonstrated experience working hands-on in Linux-based environments, including troubleshooting cloud-hosted CDS deployments and configuring solutions to meet critical customer requirements.
- Knowledge of GOTS and COTS CDS technologies listed on the NCDSMO approved products list, with experience in deploying and managing CDS in cloud platforms such as AWS GovCloud, Azure Government, or other secure cloud environments.
- Responsible for development, configuration control, deployment, and testing of CDS Configurations (including Rules), with an emphasis on cloud orchestration and automation (e.g., Terraform, Ansible, CloudFormation).
- Engineers and deploys capabilities to provide new functionality, improve system performance/availability, and increase operational efficiencies in both traditional data centers and cloud ecosystems.
- Experience designing secure web service-based technologies such as XML, XSLTs, Schema Validation, SOAP, REST, and related messaging protocols across distributed and cloud environments.
- Collaborates with multiple technical teams including hardware/software engineers, cloud architects, operations personnel, and test engineers to drive mission-aligned solutions while communicating potential security risks and mitigations.
- Clearly presents technical approaches and findings to stakeholders, leadership, and customer teams.
- Publish and executes engineering plans to support evolving CDS technologies and cloud security best practices.
- Performs system design and architecture work to modernize CDS solutions for cloud-first or hybrid deployments as new mission requirements emerge.
- Works with the Assessment and Authorization (A&A) team to maintain RMF BOE and support ATOs as required by ICD 503, NIST 800-53, CNSSI 1254, and other applicable frameworks, including cloud-specific security control overlays.
- Supports A&A activities related to CDS technologies, such as Site-Based Security Assessments (SBSA), with added experience in evaluating cloud infrastructure and services.
- Provides Tier 3/4 support for deployed CDS technologies in both on-prem and cloud environments.
- Must be willing to travel, as needed, up to 25%.
Position Requirements:
- Masters degree plus 7 or more years directly related experience; or Bachelors degree plus 10 or more years of directly related experience.
- Bachelors Degree: Computer Science or a related field (e.g., General Engineering, Computer Engineering, Electrical Engineering, Systems Engineering, Cyber Security, Information Technology, Information Security, and Information Systems) degree required.
- Active TS/SCI (SI/TK) w/CI poly.
- Primary Certifications - one or more of the following required: CISSP-ISSAP, CISSP-ISSEP, CISSP, CSSLP, CCSP or CASP+ CE (must also have Linux Cert).
- Additional Certifications - one or more of the following is a plus: Linux+, RHEL, or other Linux type certification or training.
In accordance with the Maryland Wage Transparency Law, the expected salary range for this position is $167,300 - $180,000 annually. This range reflects the base pay for candidates with qualifications and experience relevant to the position requirements. The final offer within this range will be determined based on a candidate's experience, skills, and alignment with the job’s specific responsibilities. Additional factors such as internal equity and company budget may also be considered when determining the offer within this range.
Full time employees are eligible to participate in Paragone's comprehensive benefits package that includes individual and family medical, dental and vision coverage, paid time off (PTO), and participation in a 401(k)-retirement savings plan.
Paragone Solutions, Inc. is a boutique provider of services to the Department of Defense. We are a process-oriented (i.e. ISO 9001 certified) services company that provides cybersecurity, IT training, and industrial health/occupational safety support services. Founded in 2008, we are a certified woman-owned small business. Paragone offers competitive salaries and a relaxed, life-friendly work environment.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, status as a protected veteran or any other basis prohibited by law.
#ZR