Search

Information System Security Engineer

PublishedPublished: 6/14/2022
Technology

Job Description

Job Title: Information System Security Engineer (ISSE)

\n

Clearance: Top Secret or TS/SCI

\n

Location: Ft. Meade, MD (onsite)

\n

Position Type: Full-time, Direct Hire

\n

Salary Range: $130-160,000 (negotiable based on experience)

\n


\n

Summary:

\n

The Information System Security Engineer (ISSE) serves as a dedicated, customer-facing cybersecurity engineering consultant supporting organizational ISSMs, ISSOs, Mission Partners, system owners, architects, and development teams. The ISSE provides expert security architecture and Risk Management Framework (RMF) guidance for on-premises, cloud-hosted, legacy, and modernizing systems throughout the System Development Lifecycle (SDLC).

\n


\n

Responsibilities:

\n

    \n
  • Serve as the embedded security engineering expert for Mission Partners, ISSMs, ISSOs, system owners, architects, and development teams.
  • \n

  • Provide security engineering support throughout the SDLC, including requirements gathering, design reviews, sprint planning, modernization, implementation, and production.
  • \n

  • Translate RMF, NIST SP 800-53, DoD cybersecurity policy, and other governance requirements into actionable, threat-informed engineering solutions.
  • \n

  • Conduct in-depth security architecture and design reviews for new and existing systems.
  • \n

  • Analyze network architectures, cloud-native architectures, applications, APIs, microservices, containers, serverless functions, interfaces, and data flows to identify security weaknesses.
  • \n

  • Collaborate with architects and developers to identify achievable security controls and reduce compliance friction before formal assessment.
  • \n

  • Engineer and document vulnerability mitigation strategies and provide technical consultation supporting POA&M corrective actions.
  • \n

  • Develop solutions that reduce system attack surface and improve resiliency without unnecessarily compromising mission capability.
  • \n

  • Translate security requirements into specific technical implementation activities such as MFA, database encryption, secure network zoning, and related controls.
  • \n

  • Apply DoD STIGs, SRGs, and PPSM guidance to system engineering activities.
  • \n

  • Use security telemetry and findings from SIEM, vulnerability scanning, and EDR technologies to recommend architectural and engineering improvements.
  • \n

  • Provide technical mentorship and guidance to ISSMs, ISSOs, developers, and system owners.
  • \n

  • Present cybersecurity risks, architectural findings, mitigation strategies, and recommendations to technical personnel and Government leadership.
  • \n

  • Document customer interactions, systems supported, issues addressed, and technical recommendations as required.
  • \n

\n


\n

Qualifications:

\n

    \n
  • 10+ years of related experience.
  • \n

  • Security Architect Certification requirement (must have at least one of the following): Security X/CASP+CE, CCSP, Cloud+, CISSP, CSSLP, CISM, CISSP-ISSAP, CISSP-ISSIP, CSSLP, and GSEC.
  • \n

  • Must have and maintain a current DoD Top Secret clearance.
  • \n

  • Expert-level knowledge of RMF, NIST SP 800-37, NIST SP 800-53 security, and privacy controls.
  • \n

  • Practical experience applying DoD STIGs, SRGs, and PPSM requirements.
  • \n

Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...