Get more replies from employers
Send a job-specific resume in minutes.
Information Systems Solutions, Inc. is seeking a Cybersecurity Engineer II to join our growing team. You will provide cyber services, support RMF processes, and maintain security documentation across programs. You will work with system owners, ISSOs, and assessors to close findings and ensure compliance.
The role emphasizes risk-based decision making, remediation tracking, and communication of risk posture to stakeholders. A strong background in RMF and A&A artifacts is essential.
Information Systems Solutions, Inc, has an immediate opening for a Cybersecurity Engineer II to join our rapidly growing team. The Cybersecurity Engineer II will provide cyber services and solutions, technical support, and management support for ATC Division Programs (NPP).
Traveling to onsite locations in Antarctica is possible.
Specific duties include, but are not limited to the following:
At ISS we pride ourselves on providing an employee-focused and family first environment. Being a small business, we take the time to get to know our employees and have a vested interest in helping them achieve their career goals. We work to schedule regular social gatherings within the company to foster camaraderie. ISS values their employees by providing a comprehensive benefits package that includes a fully vested 401(k) matching program, coverage of family medical deductibles, spot bonuses, and educational assistance to further your career.
Clearance Level Secret
Five (5) years or more of experience, to include:
A strong working knowledge of the Risk Management Framework (RMF), including relevant NIST requirements, and demonstrated experience developing and maintaining Assessment and Authorization (A&A) documentation. This includes System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), Security Impact Analyses, and control traceability artifacts.
The role requires solid familiarity with continuous monitoring, security assessment processes, authorization lifecycle activities, Governance Risk and Compliance (GRC) platforms, vulnerability management, security scanning tools (such as ACAS), regulatory requirements, secure configuration baselines, Security Technical Implementation Guides (STIGs), and remediation tracking.
Candidates must also be able to evaluate technical implementations and effectively align security controls with operational, technical, and management requirements.