Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.
CACI is seeking an ISSE to support US Army modernization, embedding security-by-design across hybrid cloud/on-prem architectures. You will work with program managers and engineers to fortify the system against evolving threats and ensure a robust security posture.
The role emphasizes secure architecture, Zero Trust, and automated security controls within CI/CD, plus collaboration with DevSecOps and vulnerability management teams.
Job Title: Information Systems Security Engineer (ISSE)
Job Category: Information Technology
Time Type: Full time
Minimum Clearance Required to Start: Secret
Employee Type: Regular
Percentage of Travel Required: Up to 10%
Type of Travel: Local
The Information Systems Security Engineer (ISSE) serves as a key technical cybersecurity professional supporting our US Army customer and the Next Generation Command and Control (NGC2) modernization initiatives. In this role, you will partner closely with Assistant Program Managers (APMs), Product Managers (PdMs), and engineering teams to embed security‑by‑design across modernized tactical software baselines, containerized applications, and secure hybrid cloud/on‑prem architectures. The ISSE ensures modernization efforts maintain a robust, resilient, and defensible security posture against evolving tactical threats.
Partner with APMs, PdMs, lead systems engineers, and cybersecurity personnel to execute the program's cybersecurity strategy.
Provide proactive technical consultation to evaluate proposed designs, architectures, and software configurations early in the lifecycle to minimize security risk.
Develop, review, and maintain core program cybersecurity documentation such as the Program Protection Plan (PPP), Cybersecurity Strategy (CSS), System Security Plans (SSP), and technical cyber architecture diagrams.
Contribute to the design and engineering of secure, resilient architectures across hybrid cloud (IL5/IL6), virtualized, and tactical edge environments.
Integrate Zero Trust principles, access control mechanisms, encryption approaches, and fault‑tolerant strategies into system designs.
Promote secure software engineering practices to reduce flaws, bugs, and weaknesses.
Collaborate with DevSecOps teams to implement automated security controls, container vulnerability scanning, and compliance‑as‑code within CI/CD pipelines.
Support automation of Windows and Linux system hardening efforts.
Conduct and analyze ACAS/NESSUS scans, DISA STIG/SRG compliance checks, and static/dynamic source code vulnerability assessments.
Assist in developing improved automated vulnerability management and patching processes.
Represent Cybersecurity interests on Configuration Control/Review Boards (CCB/CRB).
Coordinate with engineering, vendor, and contractor teams to address vulnerabilities, communicate remediation steps, and manage residual risk.
A culture of integrity. At CACI, we pla