Information System Security Engineer – Hybrid

Jobtailor

Washington (District of Columbia)

On-site

USD 110,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor in Washington DC seeks an experienced ISSE to enhance and consolidate cybersecurity information assurance. You will support security impact assessments, testing, and remediation with operations and development teams.

You will design and implement security controls, verify architectures per security principles, and conduct risk analyses across the SDLC of new systems in a federal or regulated environment.

Qualifications

  • 5 years of professional ISSE experience or similar in cybersecurity/IT.
  • Experience performing IT product security specification reviews.
  • Experience creating security baselines and performing security impact analyses.
  • Understanding of the NIST RMF and related SPs (800-37, 800-53).
  • Understanding of cloud solutions (IaaS, PaaS, SaaS).
  • Cloud-related experience or certifications.
  • Strong written and verbal communication; JCAM experience preferred.

Responsibilities

  • Provide services to enhance, expand, or consolidate cybersecurity information assurance support.
  • Support security impact assessments, security testing, remediation with teams.
  • Plan, design and implement security controls to safeguard and monitor systems.
  • Provide ISSE support to verify architectures and implementations per security principles.
  • Identify security requirements and input to system design for built-in controls.
  • Participate in planning and execution during SDLC of new systems.
  • Conduct risk analysis and update risk assessments for changes to FISMA systems.

Skills

ISSE experience
Security impact analyses
Security testing
Risk analysis
NIST RMF knowledge

Tools

Cloud platforms (IaaS, PaaS, SaaS)
Security baselines
Security engineering

Job description

Responsibilities
  • Provide services related to the enhancement, expansion, or consolidation of cybersecurity information assurance support
  • Support in performing security impact assessments, security testing, and working with operations and development teams on remediation and mitigation of findings
  • Provide support to planning, designing and implementing security controls which safeguard and monitor events for information systems, enterprise applications and data
  • Provide information system security engineering support to verify and validate proposed architectures and implementations based on sound security engineering principles and practices
  • Identify security requirements and provide input to the system design to ensure the proper controls are built-in
  • Participate in planning and executing in the system development life cycle of new system cycles
  • Conduct risk analysis and update the risk assessment report for all changes to the FISMA systems; and provide a security impact analysis to include but not limited to the change to the overall system risk rating and posture and documentation that is impacted requiring updates
Requirements
  • 5 years of professional ISSE experience or similar roles in the cybersecurity / IT space
  • Experience performing IT product security specification reviews
  • Prior experience in creating Security baselines for Information systems and must perform a Security Impact analysis for all exceptions or deviations
  • Understanding of the NIST Risk Management Framework and associated special publications (800-37, 800-53, etc)
  • Understanding of cloud solutions e.g. IaaS, PaaS, and SaaS
  • Cloud related experience and or certifications
  • Communication, written, verbal JCAM experience preferred
Core Competencies

Demonstrates expertise in cybersecurity information assurance, including security impact assessments, risk analysis, and the implementation of security controls. Proficient in the NIST Risk Management Framework and cloud solutions, with a strong focus on system security engineering and compliance.

Certifications & Qualifications
  • Cloud Certifications
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Engineer
Information System Security Engineer

Navstar Inc. • Columbia (MD)

On-site
USD 140,000 - 190,000
Information Systems Security Engineer
Information Systems Security Engineer

VT Group (VTG) • Chantilly (VA)

On-site
USD 90,000 - 120,000
Information Systems Security Engineer
Information Systems Security Engineer

Koitecc Solutions • Tampa (FL)

On-site
USD 110,000 - 140,000
Information Systems Security Engineer
Information Systems Security Engineer

Vets Hired • Tampa (FL)

On-site
USD 110,000 - 170,000
Information System Security Engineer (ISSE)
Information System Security Engineer (ISSE)

NR Labs LLC • Washington

Hybrid
USD 100,000 - 130,000
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

Vosper Thornycroft Group • Chantilly (VA)

On-site
USD 90,000 - 130,000
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

VTG Defense • Chantilly (VA)

On-site
USD 100,000 - 130,000
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

VT Group (VTG) • Chantilly (VA)

On-site
USD 100,000 - 130,000
Information Systems Security Engineer (INFOSEC Engineer, ISSE)
Information Systems Security Engineer (INFOSEC Engineer, ISSE)

M2 Solutions Inc. • Herndon (VA)

On-site
USD 120,000 - 150,000
Information System Security Engineer (ISSE) II - Hybrid
Information System Security Engineer (ISSE) II - Hybrid

Ishpi Information Technologies, Inc. (ISHPI) • Philadelphia

On-site
USD 70,000 - 100,000