Information Systems Security Engineer

Spear AI

Washington (District of Columbia)

On-site

USD 130,000 - 190,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Unlimited PTO
Health benefits
11 paid holidays
Relocation assistance
Professional development

Job summary

Spear AI seeks an Information Systems Security Engineer (ISSE) to design, build, and integrate security into all information systems supporting our program. You will translate IC security requirements into engineered, implemented, and validated solutions, working with a small, versatile team across hardware, software, and services divisions.

You will Harden systems to IC baselines, develop ATO packages, and advise engineers on secure design and DevSecOps practices from early in the lifecycle.

Qualifications

  • Active TS/SCI clearance with ability to obtain a polygraph.
  • Proven experience implementing RMF, ICD 503, CNSSI 1253, and NIST SP 800-53 in classified environments.
  • Experience engineering systems through ATO and building the technical body of evidence.
  • Strong background in system hardening and vulnerability management with STIGs/SCAP/ACAS/Nessus on JWICS or similar networks.
  • Experience with secure architecture design across cloud, on‑prem, and cross‑domain environments.
  • DoW 8570/8140 IASAE Level II compliance (Level III preferred).

Responsibilities

  • Design and engineer security architectures for program information systems, ensuring security is built in from the ground up rather than bolted on
  • Translate RMF, ICD 503, CNSSI 1253, and NIST SP 800-53 requirements into implemented, testable technical controls across multiple classified systems
  • Develop and maintain the body of evidence supporting ATO packages -- system security plans, control implementation details, test results, and supporting artifacts -- in partnership with the ISSM and ISSOs
  • Harden systems to DISA STIG and IC baselines; run and remediate vulnerability scans (ACAS/Nessus, SCAP) across the environment
  • Integrate security into the development pipeline (DevSecOps), advising engineers on secure design, secure coding, and control implementation early in the lifecycle
  • Engineer and tune continuous monitoring, auditing, and logging capabilities for classified systems
  • Assess security impacts of proposed system changes and support configuration management boards
  • Engineer security for AI/ML pipelines and data platforms, addressing emerging threats unique to model training, data ingestion, and edge deployment
  • Support incident response with technical analysis, containment engineering, and remediation
  • Coordinate with ISSM/ISSO staff, system owners, and government security stakeholders to keep engineering decisions aligned with mission requirements and applicable directives

Skills

Active TS/SCI
Polygraph eligibility
RMF/ICD 503/NIST 800-53
System hardening & vulnerability mgmt
Security tooling (STIGs/SCAP/ACAS/Ness
Secure architecture across cloud/on‑p​

Job description

We are seeking an Information Systems Security Engineer (ISSE) to design, build, and integrate security into all information systems supporting the program, serving as the hands-on technical expert who translates Intelligence Community security requirements into engineered, implemented, and validated solutions.

Spear AI is a growing defense contracting company dedicated to delivering cutting-edge solutions that support our nation's security. As we expand, we’re building a culture where innovation meets mission-critical work. We operate with a flat organizational structure that empowers every team member to make an impact, collaborate directly with leadership, and contribute to projects that matter. Whether you’re joining our Hardware, Software, or Services division, you’ll work alongside talented professionals who are committed to excellence and advancing the capabilities that keep our nation safe and secure.

Spear AI builds sonobuoy sensors that are deployed into the water and collect edge data. We also work with the U.S. Navy to collect and process their SONAR data. You’ll have an opportunity to work on real-world projects that directly impact warfighter capabilities and mission success.

What you’ll do

We’re a small team wearing many hats, and you’d have a wide variety of responsibilities that include:

  • Design and engineer security architectures for program information systems, ensuring security is built in from the ground up rather than bolted on
  • Translate RMF, ICD 503, CNSSI 1253, and NIST SP 800-53 requirements into implemented, testable technical controls across multiple classified systems
  • Develop and maintain the body of evidence supporting ATO packages -- system security plans, control implementation details, test results, and supporting artifacts -- in partnership with the ISSM and ISSOs
  • Harden systems to DISA STIG and IC baselines; run and remediate vulnerability scans (ACAS/Nessus, SCAP) across the environment
  • Integrate security into the development pipeline (DevSecOps), advising engineers on secure design, secure coding, and control implementation early in the lifecycle
  • Engineer and tune continuous monitoring, auditing, and logging capabilities for classified systems
  • Assess security impacts of proposed system changes and support configuration management boards
  • Engineer security for AI/ML pipelines and data platforms, addressing emerging threats unique to model training, data ingestion, and edge deployment
  • Support incident response with technical analysis, containment engineering, and remediation
  • Coordinate with ISSM/ISSO staff, system owners, and government security stakeholders to keep engineering decisions aligned with mission requirements and applicable directives
Important Skills
  • Active TS/SCI required; must be able to obtain a Polygraph.
  • Hands-on expertise implementing NIST RMF, ICD 503, CNSSI 1253, and NIST SP 800-53 controls in classified environments
  • Demonstrated experience engineering systems through ATO -- building the technical body of evidence, not just documenting it
  • Strong background in system hardening, vulnerability management, and security tooling (STIGs, SCAP, ACAS/Nessus) on JWICS or similar classified networks
  • Experience with secure architecture design across cloud, on-prem, and cross-domain environments
  • DoW 8570/8140 IASAE Level II compliance required (Level III preferred)
Nice to have
  • Experience securing AI/ML systems and data pipelines
  • AWS GovCloud or Azure Government security engineering experience
  • DevSecOps tooling experience (container security, pipeline scanning, IaC security)
  • Cross Domain Solution (CDS) integration experience
  • Military Intelligence or IC experience
Why work with us
  • We ship - We don't work on 18-month projects that are irrelevant before they're even finished.
  • Our work has impact - We build products that are deployed to U.S. submarines and integrate with the sonobuoys we manufacture.
  • We’re growing responsibly - We have the resources to hire a lot more people, but we don't want to build a massive team of people who don't share our values.
  • We’re profitable - We aren't burning through cash trying to make the business work. But we also have investors who believe in us and are committed to our success.
  • We care about doing great work - You don't need permission to sweat the details here.
  • We don't take ourselves too seriously - We're building products that make the world safer. But we don't let that get to our heads.
What we offer
  • Unlimited PTO -- Take the time you need to recharge and maintain work-life balance.
  • Dedicated Sick Time -- Your health and well-being come first.
  • Comprehensive Health & Benefits -- Medical, dental, and vision coverage to keep you and your family protected.
  • 11 Paid Holidays -- Enjoy time off throughout the year to celebrate and spend time with loved ones.
  • Professional Development -- Educational opportunities and resources to help you grow your skills and advance your career.
  • Collaborative Environment -- Work directly with leadership in our flat organizational structure, where your ideas and contributions matter.
  • Mission-Driven Work -- Contribute to projects that directly support national security and make a real-world impact.
  • Growth Opportunities -- Join us during an exciting expansion phase where you can help shape our future.
Additional benefit opportunities when you choose Spear AI
  • 401(k) with company match.
  • Onsite / Remote / Flexible work arrangements or hybrid options (position dependent).
  • Relocation assistance (position dependent).
  • Referral bonuses.
  • Performance bonuses.
  • Life insurance and disability coverage.
  • Technology home office setup stipend.
  • Professional certification reimbursement (position dependent).
Compensation

We offer competitive compensation tailored to your experience, location, and the impact you’ll make. We’re committed to equitable pay and will share a range aligned to your level and geography during the hiring process. In accordance with state law, candidates in jurisdictions such as CA, CO, WA, NY, and others, where applicable, will be provided a good-faith salary range upon request and throughout the hiring process. This is a full-time, exempt position under the Fair Labor Standards Act (FLSA) and is not eligible for overtime pay. Compensation for this position is provided on a salaried basis and is not subject to reduction based on hours worked. At Spear AI, you’ll find more than just a job; you’ll join a mission-driven team where your work directly contributes to national security. Our flat organizational structure means your voice matters, your ideas reach leadership, and your impact is visible. As we grow, we’re committed to building robust processes and infrastructure that support both our mission and our people. We value collaboration, continuous improvement, and the expertise each team member brings to the table. If you’re looking for a place to grow professionally while working on projects that truly matter, we’d love to hear from you.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Systems Security Engineer
Information Systems Security Engineer

Doist • Washington

Hybrid
USD 150,000 - 180,000
Unlimited PTO
Dedicated Sick Time
Health & Benefits – medical, dental, &
Infrastructure Engineer (Senior) [TS/SCI]
Infrastructure Engineer (Senior) [TS/SCI]

Spear AI • Washington

On-site
Unlimited PTO
Comprehensive health coverage
401(k) with company match
+2
Infrastructure Engineer (Mid-level) [TS/SCI]
Infrastructure Engineer (Mid-level) [TS/SCI]

Spear AI • Washington

On-site
Unlimited PTO
Comprehensive health and benefits
Professional development opportunities
+2
Software Engineer - Mid
Software Engineer - Mid

Spear AI • Washington

On-site
USD 120,000 - 150,000
Unlimited PTO
Comprehensive health and benefits
Professional development opportunities
+2
Cybersecurity Engineer - Senior
Cybersecurity Engineer - Senior

Spear AI • United States

On-site
Unlimited PTO
Comprehensive Health & Benefits
Professional Development
+3
Forward Deployed Infrastructure Engineer (Mid-Level)
Forward Deployed Infrastructure Engineer (Mid-Level)

Spear AI • Manassas (VA)

On-site
USD 120,000 - 160,000
Unlimited PTO
Healthcare benefits
11 Paid Holidays
+4
Forward Deployed Infrastructure Engineer (Mid-Level)
Forward Deployed Infrastructure Engineer (Mid-Level)

Spear AI, Inc. • Manassas (VA)

On-site
USD 140,000 - 210,000
All Source Intelligence SME
All Source Intelligence SME

Doist • Washington

On-site
USD 120,000 - 190,000
Unlimited PTO
Comprehensive health benefits
11 paid holidays
+4
Information Systems Security Officer
Information Systems Security Officer

Spear AI • Washington

Hybrid
USD 120,000 - 160,000
Unlimited PTO
Comprehensive Health & Benefits
Professional Development
+2
Mission Engineer
Mission Engineer

Spear AI, Inc. • United States

On-site
USD 90,000 - 130,000
Unlimited PTO
Comprehensive health benefits
Professional development opportunities