Information System Security Engineer (ISSE)

KBR Careers

Lanham (MD)

On-site

USD 110,000 - 140,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

KBR is seeking an Information System Security Engineer (ISSE) to design, implement, and sustain enterprise security across Windows, Linux, cloud, and virtualization platforms. You will lead vulnerability management and security tooling, while collaborating with admins, ISSOs, and development teams to deliver secure, compliant systems.

The role requires Top Secret with SCI, DoD 8570 IAT-III certs, and hands-on experience with Nessus, CyberArk, Splunk, and Trellix.

Qualifications

  • Top Secret clearance with SCI required.
  • DoD 8570.1-M/8140 IAT Level III certs (SecurityX/CASP, GCIH, CISA, CISSP) compliant.
  • Strong background in networking, cloud security, Kubernetes, and DevSecOps.
  • Hands-on experience with Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, Linux distros.
  • Scripting and automation with PowerShell, Python, Bash and Ansible.
  • Proven leadership and mentoring of ISSEs, plus ability to present technical briefings.

Responsibilities

  • Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks and policies.
  • Perform security engineering across the SDLC including requirements analysis and accreditation support.
  • Implement vulnerability management processes using Nessus, ACAS, and Qualys.
  • Integrate cybersecurity requirements into Windows and Linux servers, cloud, virtualization, and containers.
  • Support incident response and forensics with Splunk Enterprise.
  • Develop automation scripts using PowerShell, Bash, and Python to streamline remediation and monitoring.
  • Collaborate with admins, ISSOs, and development teams to remediate findings and harden configurations.
  • Perform security impact analyses for changes, deployments, and upgrades.
  • Engineer endpoint protection and hardening with Trellix ePO, host-based firewalls, and whitelisting.
  • Evaluate tools to improve security posture and continuous monitoring capabilities.
  • Produce security documentation, SOPs, and executive risk reports.
  • Administer CyberArk EPV, PVWA, CPM, PSM; monitor cyber events and maintain secure operation.
  • Assist with integrated cyber defense and continuous monitoring programs.
  • Establish a framework to measure cyber risk in the marketplace.
  • Determine security requirements by business strategy and standards; conduct risk analyses.
  • Implement intrusion detection methodologies and key management; verify via test scripts; train staff.
  • Maintain compliance, respond to incidents, and ensure ongoing security awareness.

Skills

Networking
Cloud security
Kubernetes
DevSecOps
Powershell
Python
Ansible
Splunk
Tenable Nessus

Tools

Tenable Nessus
CyberArk
Trellix
Splunk Enterprise
VMware vSphere
GitLab
Windows Server
Red Hat Enterprise Linux
Ubuntu Linux
Ansible

Job description

Information System Security Engineer (ISSE)

KBR’s National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country’s most critical role - protecting our national security.

Why Join Us?
  • Innovative Projects: KBR’s work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.
  • Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.
  • Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.
Responsibilities
  • Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies
  • Perform security engineering activities across system development lifecycle (SDLC), including requirements analysis, system design reviews, security testing, and accreditation support
  • Implement vulnerability management processes utilizing Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate system vulnerabilities
  • Integrate cybersecurity requirements into Windows and Linux server environments, cloud infrastructure, virtualization platforms, and containerized applications
  • Support incident response and forensic investigations by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise
  • Develop automation scripts using PowerShell, Bash, and Python to streamline vulnerability remediation, account auditing, compliance reporting, and security monitoring tasks
  • Collaborate with system administrators, network engineers, ISSOs, and application teams to remediate security findings and implement secure configuration baselines
  • Perform security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure continued compliance and operational security
  • Engineer endpoint protection and hardening solutions utilizing Trellix ePO - On-prem, host-based firewalls, and application whitelisting technologies
  • Evaluate and implement cybersecurity tools and technologies to improve system security posture, continuous monitoring, and threat detection capabilities
  • Produce technical security documentation, architecture diagrams, standard operating procedures (SOPs), and executive-level risk assessment reports
  • Experience administrating, configuring, and troubleshooting core modules such as Enterprise Password Vault (EPV), Password Vault Web Access (PVWA), Central Policy Manager (CPM), and Privileged Session Manager (PSM) in CyberArk
  • Monitor, analyze, and detect cyber events and incidents within information systems and networks under general supervision
  • Assist with integrated, dynamic cyber defense, coordinate and maintain security toolsets to support organizations’ continuous monitoring and ongoing authorization programs
  • Establish a framework by which cyber risk can be measured and quantified in the marketplace
  • Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates
  • Implement security systems by specifying intrusion detection methodologies and equipment; directing equipment and software installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation
  • Verify security systems by developing and implementing test scripts
  • Maintain security by monitoring and ensuring compliance to standards, policies, and procedures; conducting incident response analyses; developing and conducting training programs
  • Responsible for the design, development, implementation, and integration of a DoD IA architectures, systems, or system components for use within computing, network, and enclave environments
  • Ensure that the architecture and design of development and operational systems are functional and secure
  • This includes designs for program of record systems and special purpose processing nodes with platform IT interconnectivity
Work Environment

Location: On-Site - 540 National Business Parkway, Annapolis Junction, MD

Travel Requirements: Minimal

Working Hours: Standard

Minimum Qualifications
  • Requires Top Secret clearance with SCI
  • Must have a DoD 8570.1-M/8140 IAT Level III certification (SecurityX (CASP), GCIH, CISA, CISSP) compliant
  • Strong background in networking (TCP/IP, firewalls, VPNs), cloud security (AWS/Azure), Kubernetes, and DevSecOps
  • Deep understanding of NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria, ATO package development, and cybersecurity compliance (STIGs)
  • Hands-on experience managing and deploying Tenable Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, GitLab, Microsoft Windows Server, Red Hat Enterprise Linux and Ubuntu Linux
  • Experience with scripting and automation with Powershell, Python, Bash and Ansible
  • Proven experience in leading projects and mentoring junior ISSE's
  • Present technical briefings to leadership
Basic Compensation

$110,000-$140,000 (This range is for Washington, DC only) The offered rate will be based on the selected candidate’s knowledge, skills, abilities and/or experience and in consideration of internal parity.

Additional Compensation

KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short-term incentives, long-term incentives, or discretionary payments for exceptional performance.

Belong, Connect and Grow at KBR

At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver - Together.

KBR - Delivering Solutions, Changing the World.

KBR brings together the best and brightest to deliver science, technology and engineering solutions that help governments and companies around the world accomplish their most critical missions and objectives. In everything we do, we are guided by our ONE KBR Values:

We Value Our People - We create diverse, inclusive environments in which each person can feel safe, respected and valued, and where everyone has opportunities to grow and reach their full potential.

We Deliver - We are uncompromising in our commitment to deliver innovative, high-quality, technology-led solutions for our customers and exceptional, sustainable value for all our stakeholders.

We Are People of Integrity - We value honesty, trust, courage, fairness, prudence and tenacity. We believe doing what’s right for the planet, the communities where we work, and our people is good for business.

We Empower - We empower our people with a shared purpose, the right tools and the supportive culture they need to be proactive decision-makers, to be adaptive to change, and to succeed.

We Are a Team of Teams - We have a will to succeed, but we value the achievements of our team of teams over individual accomplishments. Our collective focus makes us a better, stronger, more effective company.

We have also embedded environmental, social and governance (ESG) principles in every business operation and corporate function. Not only are we committed to operating safely, sustainably and equitably, but we are also committed to using our capabilities and expertise to help our customers accomplish their sustainability goals.

Worldwide, KBR employs a diverse workforce approximately 29,000 people strong, with customers in more than 80 countries and operations in 40 countries. At KBR, We Deliver.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information System Security Engineer (ISSE)
Information System Security Engineer (ISSE)

KBR Careers • Bethesda (MD)

On-site
USD 110,000 - 140,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

KBR Careers • Colorado Springs (CO)

On-site
USD 104,000 - 157,000
Sign-on bonus
Relocation benefits
Bonuses and incentives
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

KBR Careers • Town of Vienna (WI)

On-site
USD 142,000 - 174,000
401K match
Medical insurance
Dental insurance
+7
Cybersecurity Analyst / Information Systems Security Officer (ISSO)
Cybersecurity Analyst / Information Systems Security Officer (ISSO)

KBR Careers • Colorado Springs (CO)

On-site
USD 90,000 - 105,000
401K with company match
Medical, dental, vision
Paid time off
+1
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

KBR Careers • Washington

On-site
USD 110,000 - 140,000
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

KBR Careers • Town of Vienna (WI)

On-site
USD 160,000 - 196,000
401K
Medical insurance
Dental plan
+6
Sr Systems Engineer
Sr Systems Engineer

KBR Careers • Chantilly (VA)

On-site
USD 150,000 - 225,000
Bonuses
Relocation benefits
Sign-on bonus
Cybersecurity SME
Cybersecurity SME

KBR Careers • Town of Vienna (WI)

On-site
USD 176,000 - 215,000
401K plan with company match
medical
dental
+3
Cyber System Security Engineer (CSSE)
Cyber System Security Engineer (CSSE)

KBR Careers • El Segundo (CA)

On-site
USD 150,000 - 185,000
Network Engineer
Network Engineer

KBR Careers • Town of Vienna (WI)

On-site
USD 173,000 - 211,000