• Annapolis Junction
    30+ days ago

    Job Description

    Job Summary

    • Seeking an experienced Information Systems Security Engineer (ISSE) to support mission-critical Department of Defense (DoD) and Intelligence Community (IC) programs
    • The successful candidate will provide cybersecurity engineering, security architecture, vulnerability management, risk assessment, and security compliance support for complex enterprise and cloud-based information systems
    • This position is responsible for ensuring systems are designed, implemented, and maintained in accordance with federal cybersecurity policies, Risk Management Framework (RMF) requirements, and DoD Information Assurance (IA) standards while protecting sensitive and classified information
    • The ideal candidate possesses extensive experience performing security engineering, vulnerability assessments, system security design, and security compliance activities within highly secure environments

    Primary Responsibilities

    • Perform Information Systems Security Engineering (ISSE) activities supporting the design, implementation, accreditation, and sustainment of secure information systems
    • Conduct vulnerability management utilizing enterprise security tools including Tenable Security Center, Nessus, and related vulnerability assessment platforms
    • Perform and review technical security assessments of enterprise and cloud-based computing environments to identify vulnerabilities, security weaknesses, and non-compliance with applicable cybersecurity policies and standards
    • Analyze security findings and recommend mitigation strategies to reduce operational risk and improve overall security posture
    • Perform security planning, security assessments, risk analysis, risk management, and cybersecurity engineering activities throughout the system lifecycle
    • Design secure system and network architectures supporting multiple security enclaves with varying classification levels and data protection requirements
    • Develop system-level security solutions that satisfy mission, operational, and cybersecurity requirements.
    • Support implementation of trusted relationships among interconnected systems, external networks, and enterprise architectures
    • Evaluate security controls and recommend technical solutions that align with Risk Management Framework (RMF), NIST, Committee on National Security Systems (CNSS), and DoD cybersecurity requirements
    • Support system authorization activities by developing and maintaining cybersecurity documentation, security artifacts, and accreditation packages
    • Collaborate with systems engineers, software developers, network engineers, and program management to integrate security throughout the system development lifecycle
    • Assist with security testing, validation, continuous monitoring, vulnerability remediation, and compliance reporting
    • Maintain technical documentation, security assessments, engineering analyses, and risk management documentation
    • Stay current on emerging cybersecurity threats, vulnerabilities, technologies, and federal security guidance to improve organizational security posture

    Required Qualifications

    • Must have active Top Secret/SCI clearance with NSA Full Scope Polygraph
    • Minimum of fourteen (14) years of experience as an Information Systems Security Engineer (ISSE) supporting programs of similar scope, complexity, and technical environment
    • Bachelor's degree in Computer Science, Information Assurance, Information Systems Security Engineering, Cybersecurity, or a related technical discipline
      • Four (4) additional years of directly related ISSE experience may be substituted in lieu of the degree requirement
    • DoD 8570.01-M IASAE Level II certification compliance is required
    • Certified Information Systems Security Professional (CISSP) certification is required
    • Experience conducting vulnerability management using Tenable Security Center, Nessus, and enterprise vulnerability assessment tools
    • Experience performing technical security assessments of cloud, enterprise, and distributed computing environments
    • Strong understanding of the Risk Management Framework (RMF), NIST Special Publications, CNSS policies, and DoD cybersecurity requirements
    • Experience performing security planning, risk assessments, security control implementation, and risk management
    • Experience designing secure enterprise architectures supporting multiple security domains and classification levels
    • Knowledge of network security, system hardening, access control, identity management, encryption, and secure communications
    • Experience developing security recommendations and mitigation strategies for complex information systems
    • Strong analytical, troubleshooting, documentation, and communication skills
    • Ability to collaborate effectively with multidisciplinary engineering and cybersecurity teams

    Desired Qualifications

    • Experience supporting Authorization to Operate (ATO) packages and security authorization activities
    • Experience with Security Technical Implementation Guides (STIGs), Security Requirements Guides (SRGs), and vulnerability remediation
    • Familiarity with cloud security architectures supporting AWS, Azure, or hybrid cloud environments
    • Experience supporting continuous monitoring programs and enterprise cybersecurity operations
    • Knowledge of Zero Trust Architecture (ZTA), Identity and Access Management (IAM), and secure cloud technologies
    • Experience working within Agile, DevSecOps, or secure software development environments
    • Familiarity with Security Information and Event Management (SIEM) platforms such as Splunk or Microsoft Sentinel
    • Experience supporting Department of Defense or Intelligence Community cybersecurity programs

    Exempt hourly position. 11 paid holidays, minimum of 3 weeks PTO, company sponsored group medical plan, company paid dental, vision, life insurance, and STD/LTD plans. Salary is dependent upon the candidate’s experience and qualifications.

    Numbers & Facts

    LocationAnnapolis Junction

    Skills

    • Access Authorizationunmatched
    • Access Controlunmatched
    • Agile Programming Methodologiesunmatched
    • Amazon Web Services (AWS)unmatched
    • Analysis Skillsunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Cloud Architectureunmatched
    • Cloud Computingunmatched
    • Communication Skillsunmatched
    • Community Programsunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Computer Systemsunmatched
    • Cryptographyunmatched
    • Defense Intelligenceunmatched
    • Distributed Computingunmatched
    • DoD Information Assurance - IAunmatched
    • Documentationunmatched
    • Enterprise Architectureunmatched
    • Enterprise Computingunmatched
    • Enterprise Protectionunmatched
    • Full Scope Polygraphunmatched
    • Health Planunmatched
    • Hybrid Cloudunmatched
    • Identify Issuesunmatched
    • Identity Data Managementunmatched
    • Information Systems Security Engineering (ISSE)unmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Integrated Circuits (ICs)unmatched
    • Intelligence Communityunmatched
    • Internet Securityunmatched
    • Life Insuranceunmatched
    • Microsoft Product Familyunmatched
    • Microsoft Windows Azureunmatched
    • National Security Agency (NSA)unmatched
    • Nessusunmatched
    • Network Architecture/Engineeringunmatched
    • Network Securityunmatched
    • Operational Improvementunmatched
    • Operational Strategyunmatched
    • Problem Solving Skillsunmatched
    • Project/Program Managementunmatched
    • Publicationsunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Risk Management Framework (RMF)unmatched
    • Security Analysisunmatched
    • Security Architectureunmatched
    • Security Complianceunmatched
    • Security Designunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Sensitive Compartmented Information (SCI)unmatched
    • Software Developmentunmatched
    • Software Development Lifecycle (SDLC)unmatched
    • Splunkunmatched
    • System Architectureunmatched
    • System Lifecycleunmatched
    • Systems Engineeringunmatched
    • Team Playerunmatched
    • Technical Writingunmatched
    • Top Secret Clearanceunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • United States Department of Defense (DoD)unmatched
    • Validation Testingunmatched
    • Vision Planunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder