Information Systems Security Engineer (ISSE)
Join to apply for the Information Systems Security Engineer (ISSE) role at Copper River Cyber Solutions.
Job Overview
Copper River Cyber Solutions is seeking a highly skilled and experienced Information Systems Security Engineer (ISSE) to join our team supporting a federal civilian client.
Responsibilities
- Manage and lead customer needs on Authorization To Operate (ATO) package submissions and all associated deliverables.
- Ensure the confidentiality, integrity, and availability of critical systems within a federal environment.
- Oversee and manage information security in compliance with federal cybersecurity frameworks such as NIST SP 800-53, NIST SP 800-37, and FISMA.
- Conduct risk assessments, vulnerability assessments, and implement corrective actions.
- Develop and maintain system security plans (SSPs), security assessments, and continuous monitoring plans.
- Implement security controls and safeguards for information systems according to standards and regulations.
- Ensure adherence to security policies, procedures, and regulatory requirements; assist with audits and vulnerability remediation.
- Collaborate with stakeholders and conduct security training and awareness programs.
- Implement and maintain continuous monitoring programs to detect and respond to vulnerabilities or breaches.
Qualifications
- Bachelor's degree required.
- Ability to obtain a Public Trust clearance.
Experience
- Minimum of 5 years in information security, with at least 3 years in an ISSM or ISSE role within a federal or government environment.
- Experience leading ATO packages from initiation to completion.
- Experience working with cross-functional teams (Engineers, Platform Ops, Networkers, etc.).
- Proven experience in presenting and facilitating ATO packages.
Tools and Documentation Experience
- eMASS and/or Archer, Power Apps, ADO and/or JIRA, SharePoint, Microsoft Office.
- Experience developing ATO packages, including System Security Plans, Configuration Management Plans, Risk Management Plans, Business Impact Analyses, and Security Assessment Reports.
Certifications
- CISSP or similar certification required.
- CISM, CISA, or similar certifications are highly desirable.
Additional Details
- Seniority level: Mid-Senior level
- Employment type: Full-time
- Job function: Information Technology
- Industries: IT Services and IT Consulting