Metrostar Systems logo

Information Systems Security Engineer 6836

Metrostar Systems
  • Washington, DC
  • $180,000 Per Year
6 days ago

Job Description

We are seeking a skilled and motivated Sr. Information Systems Security Engineer (ISSE) II to join our dynamic team and play a pivotal role in safeguarding our organization''s digital assets and sensitive information. The ideal candidate is a dedicated professional with a strong background in cybersecurity, a deep understanding of current threats and vulnerabilities, and the ability to implement robust security measures. As a Cybersecurity Engineer, you will contribute to the design, implementation, and maintenance of our cybersecurity infrastructure while staying abreast of emerging trends in the field.

We know that you can't have great technology services without amazing people. At MetroStar, we are obsessed with our people and have led a two-decade legacy of building the best and brightest teams. Because we know our future relies on our deep understanding and relentless focus on our people, we live by our mission: A passion for our people. Value for our customers.

If you think you can see yourself delivering our mission and pursuing our goals with us, then check out the job description below!

What you'll do:

  • Serve as a security engineering SME for containerized environments, service mesh technologies and microservices.
  • Design, implement, and manage security controls for containerized workloads solutions, including image scanning firewalls, intrusion detection/prevention systems, endpoint protection, and encryption mechanisms, runtime protection, role-based access control (RBAC), and network segmentation to ensure the organization''s networks and systems remain secure.
  • Integrate security into CI/CD pipelines and DevSecOps workflows, ensuring compliance with RMF, NIST SP 800-53, ICD 503, and FedRAMP requirements.
  • Configure and optimize security monitoring and logging solutions and work with container security tools such as Prisma Cloud or similar.
  • Monitor network traffic, system logs, and security alerts to detect and respond to potential security incidents. Analyze and investigate anomalies and security breaches, taking appropriate actions to mitigate risks.
  • Monitor and assess threat intelligence feeds, conduct threat analysis, and perform risk assessments to proactively identify emerging threats and vulnerabilities.
  • Collaborate with platform engineers, ISSOs, and developers, among other cross-functional teams, to establish, embed, and enforce security policies, standards, and procedures throughout the system lifecycle.
  • Conduct regular security assessments of container orchestration platforms, microservices, and APIs to identify vulnerabilities and weaknesses in systems, networks, and applications and recommend mitigations.
  • Develop and implement incident response plans to effectively address security breaches, incidents, and other security concerns.
  • Work closely with cross-functional teams, including IT, software development, and compliance, to integrate security into all phases of the development lifecycle and ensure a comprehensive approach to cybersecurity.
  • Maintain thorough and accurate documentation of security architecture processes, control implementation procedures, configurations, and continuous monitoring strategies. Prepare detailed reports on security findings, incidents, and actions taken.

What you'll need to succeed:

  • Bachelor''s degree in Computer Science, Information Security, or a related field.
  • 7+ years of experience as a cybersecurity engineer with a specialization in designing and building implementations of required security controls; and implementing continuous monitoring and auditing of solutions for compliance with security controls.
  • Hands-on experience securing containerized/Kubernetes environments (OpenShift preferred).
  • Strong skills in specifying and implementing log collection into tools such as Splunk, and performing querying and analysis of aggregated logs to identify security-relevant anomalies or risks
  • Strong experience with designing and building implementations of required security controls (e.g., NIST SP 800-53, RMF, ICD 503, FISMA, FedRAMP); and implementing continuous monitoring and auditing of solutions for compliance with security controls.
  • Experience with implementing controls for cloud, container, and DevSecOps services and solutions within IL5 to IL6+ environments.
  • Strong understanding of network protocols, operating systems, and infrastructure components.
  • Experience performing periodic (Daily, Weekly, Monthly) security checks to support continuous monitoring aligned with the NIST Risk Management Framework.
  • Proficiency in incident response, security incident handling, and forensic analysis techniques.
  • Experience with security tools such as Fortify, Acunetix, and Prisma Cloud
  • Effective communication skills, with the ability to convey complex technical concepts to both technical and non-technical stakeholders.
  • CISSP or equivalent certification to support DoD 8140 requirements
  • Active TS//SCI clearance with CI poly

SALARY RANGE: $180,000 - $200,00

The salary range for this position is determined based on qualifications, skills, and relevant experience. The final salary offered will be determined based on several factors including:

  • The candidate''s professional background and relevant work experience
  • The specific responsibilities of the role and organizational needs
  • Internal equity and alignment with current team compensation
  • This role is also eligible for additional compensation, subject to the terms and policies of MetroStar, which may include:
  • Performance-based bonuses
  • Company-paid training and/or certifications
  • Referral bonuses

To apply for this position, please submit your resume via the form below or through our careers page: https://www.metrostar.com/jobs/

Application Deadline: Applications will be accepted on a rolling basis until the position is filled; candidates are encouraged to apply as early as possible for full consideration.

Additional Compensation: This role may also be eligible for bonuses and/or additional incentives based on individual and company performance.

Benefits: All full-time employees are eligible to participate in our benefits programs:

  • Health, dental, and vision insurance
  • 401(k) retirement plan with company match
  • Paid time off (PTO) and holidays
  • Parental Leave and dependent care
  • Flexible work arrangements
  • Professional development opportunities
  • Employee assistance and wellness programs

Like we said, we are big fans of our people. That's why we offer a generous benefits package, professional growth, and valuable time to recharge. Learn more about our company culture code and benefits. Plus, check out our accolades.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment based on merit and without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, status as a protected veteran, or any other status protected by applicable federal, state, local, or international law.

What we want you to know:

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.

Not ready to apply now?

Sign up to join our newsletter here.

Numbers & Facts

LocationWashington, DC
IndustryComputer/IT Services
Company Size100 to 499 employees
Year Founded1999

About Company

MetroStar Systems has delivered world-class IT consulting, strategic solutions, and professional services since 1999. Our mission is defined by a commitment to our clients, and is enhanced by extensive experience working across multiple industries to provide a vast array of services and solutions. Our teams are customized with experts across our seven practice areas and offer specialized services and solutions that facilitate our clients’ missions, and solve their technical challenges.

Skills

  • Access Controlunmatched
  • Application Programming Interface (API)unmatched
  • Auditingunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Communication Skillsunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Continuous Deployment/Deliveryunmatched
  • Continuous Integrationunmatched
  • Cross-Functionalunmatched
  • Cryptographyunmatched
  • DoD Directive 8140unmatched
  • DoD Directive 8570unmatched
  • Documentationunmatched
  • Employee Assistance Planunmatched
  • Endpoint Securityunmatched
  • FISMA - Federal Information Security Management Actunmatched
  • Firewallsunmatched
  • Forensic Scienceunmatched
  • Incident Responseunmatched
  • Information Assetsunmatched
  • Information Systems Security Engineering (ISSE)unmatched
  • Information Technology Softwareunmatched
  • Information/Data Security (InfoSec)unmatched
  • Intelligence Analysisunmatched
  • International Classification of Diseases (ICD)unmatched
  • Internet Securityunmatched
  • Intrusion Detection Systemsunmatched
  • Intrusion Detection and Prevention (IDP)unmatched
  • Maintain Complianceunmatched
  • Microservicesunmatched
  • Network Monitoringunmatched
  • Network Protocolsunmatched
  • Network Systemsunmatched
  • Operating Systemsunmatched
  • Procedure Implementationunmatched
  • Product Lifecycleunmatched
  • Query Analysisunmatched
  • Reporting Skillsunmatched
  • Risk Managementunmatched
  • Risk Management Framework (RMF)unmatched
  • Security Analysisunmatched
  • Security Architectureunmatched
  • Security Attacksunmatched
  • Security Complianceunmatched
  • Security Monitoringunmatched
  • Sensitive Compartmented Information (SCI)unmatched
  • Software Developmentunmatched
  • Splunkunmatched
  • System Lifecycleunmatched
  • Threat and risk analysis (TRA)unmatched
  • Trend Analysisunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder