Enable job alerts via email!

Information Systems Security Engineer (COMSEC)

Northstrat Incorporated

Sterling (VA)

On-site

USD 80,000 - 110,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking an Information Systems Security Engineer to enhance its security posture. This role involves applying secure software engineering practices, managing NIST security controls, and conducting system vulnerability scans. The ideal candidate will have a strong background in COMSEC and experience with security tools. Join a dynamic team committed to maintaining high security standards while enjoying a balanced work-life environment. This position offers an exciting opportunity to contribute to critical projects supporting national defense and intelligence initiatives.

Benefits

Work-Life Balance Benefits
Wellness Programs
Retirement Investment Support
Lifetime Learning Opportunities

Qualifications

  • 6+ years of relevant experience in information systems security.
  • CompTIA Security+ certification and active Top-Secret clearance required.

Responsibilities

  • Plan and manage NIST security controls application.
  • Perform vulnerability scanning and document results.
  • Generate comprehensive system security documentation.

Skills

Secure Software Engineering Practices
NIST Special Publications 800 Security Controls
Risk Management Framework (RMF)
System Vulnerability Scanning
Communication Skills
Collaboration Skills
Knowledge of COMSEC
Experience with Security Tools

Education

Bachelor's Degree in STEM

Tools

Assured Compliance Assessment Solution (ACAS)
Security Technical Implementation Guide (STIG)

Job description

Information Systems Security Engineer (COMSEC)

Northstrat is seeking an Information Systems Security Engineer to join our team. The ideal candidate will have experience in the following areas: secure software engineering practices in support of Department of Defense (DoD) or Intelligence Community (IC) customers, application of NIST Special Publications 800 security controls and the Risk Management Framework (RMF) process, and system vulnerability scanning.

Key Responsibilities
  • Planning and managing the system application of NIST Special Publications 800 series security controls
  • Perform system vulnerability scanning, documenting results, and working with the development team to address security findings
  • Generation of comprehensive system security documentation and artifacts, to include a Plan of Action and Milestones (POA&M), for obtaining and maintaining Interim Authorization to Test (IATT), Authority to Connect (ATC) and Authorization to Operate (ATO)
  • Work collaboratively with team members, Information Assurance, Information Security Engineering, and other Subject Matter Experts to resolve security issues
  • Maintain thorough documentation of all activities and communications through ticketing systems, operational briefs, and status reports
COMSEC Specific
  • Knowledge of, and practical experience with the NIST Special Publications 800 Series and the Risk Management Framework (RMF) process
  • Familiar with secure software engineering practices in support of Department of Defense (DoD) or Intelligence Community (IC) customers
  • Experience with Authorization and Accreditation (A&A) process using RMF for classified systems obtaining and maintaining Interim Authorization to Test (IATT), Authority to Connect (ATC) and Authorization to Operate (ATO)
  • Experience with vulnerability scanning
  • Experience with security tools such as: Assured Compliance Assessment Solution (ACAS), and Security Technical Implementation Guide (STIG)
  • Familiar with information security principles and best practices
  • Excellent communication and collaboration skills
  • Ability to work independently and as part of a team
Preferred Qualifications
  • Familiar with tiered security environments (U, S, TS)
  • Familiar with AWS security services
  • Familiar with AWS infrastructure services
  • Familiar with Agile development methodologies
Requirements
  • Must have bachelor's degree in a STEM related field plus 6 years of relevant experience
  • CompTIA Security+ certification is required
  • Must be a U.S. citizen absolutely no exceptions
  • An active Top-Secret clearance is required with SCI or SCI eligible
  • Strong COMSEC background - Know the difference between USEAD Keying material and firefly keying material
  • Distribution and transfer (KMI/OTAT)
  • Experience with key dispositions to include SKMP (symmetric key management plan)
  • Experience with key disposition requirements via NSA/CSS/ Policy Manual 3-16
  • Knowledge of KEK/TEK key pairs
  • Understand OSI Model: layer 1, 2, 3, and 4
  • Experience interpreting network topologies to understand data plane/control plane
  • Experience with any UHF/VHF/SHF/EHF satcom receiver/transmitter or transceiver
Benefits

Northstrat values true work-life balance. We offer power of choice benefits designed to best meet the needs of you and your lifestyle. Our benefits programs are designed to support and encourage wellness, healthy living, retirement investment, and lifetime learning.

Northstrat is an Equal Opportunity Employer. We are committed to fostering an inclusive, diverse workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, disability, veteran status or other legally protected status.

Seniority level

Mid-Senior level

Employment type

Full-time

Job function

Information Technology

Industries

IT Services and IT Consulting

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Cyber Security Engineer-Information Systems Security Engineer (ISSE) - Senior Principal

Modern Technology Solutions, Inc.

Bath Township

On-site

USD 90,000 - 130,000

13 days ago

Industrial Security Administrator - Mid-Level

Modern Technology Solutions, Inc.

Alexandria

On-site

USD 80,000 - 100,000

13 days ago

Security Engineer

AnaVation, LLC

Washington

On-site

USD 100,000 - 130,000

27 days ago

Global Security Technician

Avature

Sterling

On-site

USD 70,000 - 90,000

30+ days ago

Global Security Technician

ManTech

Sterling

On-site

USD 60,000 - 100,000

30+ days ago

Cyber Security Engineer-Information Systems Security Engineer (ISSE) - Senior Principal

Modern Technology Solutions, Inc.

Bedford

On-site

USD 90,000 - 150,000

30+ days ago

Principal Industrial Security Analyst / Sr. Principal Industrial Security Analyst 3/4

Northrop Grumman Corp. (AU)

Chantilly

On-site

USD 100,000 - 125,000

30+ days ago

Industrial Security Administrator - Mid-Level

Modern Technology Solutions, Inc. (MTSI)

Alexandria

On-site

USD 75,000 - 110,000

30+ days ago

Cyber Security Engineer-Information Systems Security Engineer (ISSE) - Senior Principal

Modern Technology Solutions, Inc.

Ohio

On-site

USD 80,000 - 120,000

30+ days ago