Information System Security Engineer (ISSE)

KBR Careers

Bethesda (MD)

On-site

USD 110,000 - 140,000

Full time

31 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Bonuses
Relocation benefits
Discretionary payments

Job summary

KBR is seeking an Information System Security Engineer (ISSE) to design, implement, and sustain secure architectures across Windows, Linux, cloud, and container platforms in support of national security missions. You will work with Tenable Nessus, CyberArk, Splunk, and Trellix to strengthen defenses and enable continuous monitoring.

The role requires TS clearance with SCI and hands-on expertise in DoD security frameworks, scripting, and incident response.

Qualifications

  • Top Secret clearance with SCI
  • IAT Level III certification (SecurityX/CASP, etc.)
  • Strong background in networking, cloud security, Kubernetes, and DevSecOps
  • Hands-on with Nessus, CyberArk, Trellix, Splunk, VMware, Linux/Windows systems
  • Automation scripting in PowerShell, Python, Bash, Ansible

Responsibilities

  • Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks and policies
  • Perform security engineering across SDLC including requirements analysis, design reviews, security testing, and accreditation support
  • Implement vulnerability management with Nessus, ACAS, and Qualys to identify and remediate vulnerabilities
  • Integrate cybersecurity requirements into Windows/Linux servers, cloud, virtualization, and containerized apps
  • Support incident response and forensics using Splunk Enterprise, SIEM alerts and telemetry
  • Develop automation scripts using PowerShell, Bash, and Python to streamline remediation and monitoring tasks
  • Collaborate with admins, ISSOs, and teams to remediate findings and establish secure baselines
  • Prepare security documentation, diagrams, SOPs, and risk assessment reports
  • Experience with CyberArk EPV/PVWA/CPM/PSM configurations in DoD environments
  • Lead projects and mentor junior ISSEs; present to leadership

Skills

Networking
Cloud security
Kubernetes
DevSecOps
Scripting
Team leadership
Technical briefings

Education

IAT Level III certification
DoD 8570.1-M compliant

Tools

Tenable Nessus
CyberArk
Trellix
Splunk Enterprise
VMware vSphere
GitLab
Windows Server
RHEL
Ubuntu
Ansible

Job description

Information System Security Engineer (ISSE)

Belong. Connect. Grow. with KBR!

KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country’s most critical role - protecting our national security.

Why Join Us
  • Innovative Projects: KBR’s work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.
  • Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.
  • Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.
Responsibilities
  • Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies
  • Perform security engineering activities across system development lifecycle (SDLC), including requirements analysis, system design reviews, security testing, and accreditation support
  • Implement vulnerability management processes utilizing Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate system vulnerabilities
  • Integrate cybersecurity requirements into Windows and Linux server environments, cloud infrastructure, virtualization platforms, and containerized applications
  • Support incident response and forensic investigations by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise
  • Develop automation scripts using PowerShell, Bash, and Python to streamline vulnerability remediation, account auditing, compliance reporting, and security monitoring tasks
  • Collaborate with system administrators, network engineers, ISSOs, and application teams to remediate security findings and implement secure configuration baselines
  • Perform security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure continued compliance and operational security
  • Engineer endpoint protection and hardening solutions utilizing Trellix ePO - On-prem, host-based firewalls, and application whitelisting technologies
  • Evaluate and implement cybersecurity tools and technologies to improve system security posture, continuous monitoring, and threat detection capabilities
  • Produce technical security documentation, architecture diagrams, standard operating procedures (SOPs), and executive-level risk assessment reports
  • Experience administrating, configuring, and troubleshooting core modules such as Enterprise Password Vault (EPV), Password Vault Web Access (PVWA), Central Policy Manager (CPM), and Privileged Session Manager (PSM) in CyberArk
  • Monitor, analyze, and detect cyber events and incidents within information systems and networks under general supervision
  • Assist with integrated, dynamic cyber defense, coordinate and maintain security toolsets to support organizations' continuous monitoring and ongoing authorization programs
  • Establish a framework by which cyber risk can be measured and quantified in the marketplace
  • Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates
  • Implement security systems by specifying intrusion detection methodologies and equipment; directing equipment and software installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation. Verify security systems by developing and implementing test scripts
  • Maintain security by monitoring and ensuring compliance to standards, policies, and procedures; conducting incident response analyses; developing and conducting training programs
  • Responsible for the design, development, implementation, and integration of a DoD IA architectures, systems, or system components for use within computing, network, and enclave environments
  • Ensure that the architecture and design of development and operational systems are functional and secure
  • This includes designs for program of record systems and special purpose processing nodes with platform IT interconnectivity
Work Environment
  • Location: On-Site - 540 National Business Parkway, Annapolis Junction, MD
  • Travel Requirements: Minimal
  • Working Hours: Standard
Minimum Qualifications
  • Requires Top Secret clearance with SCI
  • Must have a DoD 8570.1-M/8140 IAT Level III certification (SecurityX (CASP), GCIH, CISA, CISSP) compliant
  • Strong background in networking (TCP/IP, firewalls, VPNs), cloud security (AWS/Azure), Kubernetes, and DevSecOps
  • Deep understanding of NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria, ATO package development, and cybersecurity compliance (STIGs)
  • Hands-on experience managing and deploying Tenable Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, GitLab, Microsoft Windows Server, Red Hat Enterprise Linux and Ubuntu Linux
  • Experience with scripting and automation with Powershell, Python, Bash and Ansible
  • Proven experience in leading projects and mentoring junior ISSE's
  • Present technical briefings to leadership
Basic Compensation

$110,000-$140,000 (This range is for Washington, DC only)

The offered rate will be based on the selected candidate’s knowledge, skills, abilities and/or experience and in consideration of internal parity.

Additional Compensation
  • KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation.
  • Additional compensation may be in the form of sign on bonus, relocation benefits, short-term incentives, long-term incentives, or discretionary payments for exceptional performance.

Belong, Connect and Grow at KBR

At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team's philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver - Together.

KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.

R2127412

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Engineer (ISSE)
Information System Security Engineer (ISSE)

KBR • Bethesda (MD)

On-site
USD 110,000 - 140,000
Sign-on bonus
Relocation benefits
Incentive programs
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

KBR Careers • Chantilly (VA)

On-site
USD 168,000 - 205,000
401K with company match
Medical insurance
Dental insurance
+6
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

KBR Careers • Colorado Springs (CO)

On-site
USD 104,000 - 120,000
401K with company match
Medical coverage
Dental coverage
+7
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

KBR Careers • Washington

On-site
USD 108,000 - 164,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

KBR Careers • Alexandria (VA)

Remote
USD 125,000 - 155,000
401K with company match
Medical, dental, vision coverage
Paid time off
+2
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

KBR, Inc • Chantilly (VA), Northern (KY)

Hybrid
USD 168,000 - 205,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

KBR, Inc • Beavercreek (OH)

On-site
USD 120,000 - 180,000
Information System Security Engineer (ISSE)
Information System Security Engineer (ISSE)

KBR, Inc • Annapolis (MD)

On-site
USD 108,000 - 164,000
Cybersecurity Analyst / Information Systems Security Officer (ISSO)
Cybersecurity Analyst / Information Systems Security Officer (ISSO)

KBR Careers • Colorado Springs (CO)

On-site
USD 90,000 - 105,000
ISSE: Secure Hybrid Cloud & Air-Gapped Systems
ISSE: Secure Hybrid Cloud & Air-Gapped Systems

KBR Careers • Colorado Springs (CO)

On-site
USD 130,000 - 170,000