Description
SAIC is seeking an experienced Information Systems Security Engineer (ISSE) to support the MAJESTIC Joint Program Office (JPO) by performing advanced security engineering and architectural design for mission‑critical IT systems.
In this role, the ISSE will lead the design, development, implementation, and validation of security architectures, ensuring all security controls are integrated into system engineering processes across the full lifecycle—from requirements development to deployment and sustainment.
The ISSE will collaborate closely with program leadership, system owners, developers, ISSMs/ISSOs, enterprise architects, and cybersecurity operations teams to ensure systems meet federal security requirements, including NIST 800‑53, RMF, andcustomer‑specificA&A frameworks such as ICD 503 and DAAPM.
This role requires on-site supportin Springfield, VA.
Key Responsibilities
- Design and engineer secure system architectures, integrating RMF and mission requirements.
- Translate security requirements into technical specifications, models, and design artifacts.
- Select, implement, andvalidatesecurity controls and technical mitigations.
- Integrate security into system diagrams, data flows, and high‑/low‑level designs.
- Engineer core security solutions (boundary protection, encryption, IAM, auditing, secure configs).
- Embed security across the full system lifecycle—requirements through sustainment.
- Develop andmaintainA&A documentation and support ATO evidence.
- Test and verify security controls across applications, platforms, and networks.
- Conduct risk assessments, threat modeling, and vulnerability analysis; recommend mitigations.
- Assess security impacts of system changes, upgrades, and new integrations.
- Apply DISA STIGs, CIS Benchmarks, andmaintainhardened configuration baselines.
- Design monitoring architectures for SIEM, detection rules, and audit/log collection.
- Support incident response with architectural forensics and remediation guidance.
- Collaborate with developers, integrators, administrators, and cybersecurity teams.
- Present security engineering findings and architecture recommendations to leadership.
- Produce technical documentation, diagrams, reports, SOPs, and design artifacts.
Qualifications
Education:
- Bachelorsdegree in related field and 2-9+ years of experience OR;
- Mastersdegree in related field and 0-7+ years of experience OR;
- High School diploma or equivalent and 6-13+ years of experience.
Certifications (CWF Requirements):
- Candidates must satisfyCybersecurity Workforce Framework (CWF)ID652(Security Architect,IntermediateLevel)or633(System Security Engineer,IntermediateLevel)requirements, as outlined by Navy COOL.
This requirement can be met bypossessingone or more of the following qualifyingcertifications: - Certified Cloud Security Professional (CCSP).
- Certified Information Systems Security Officer (C)ISSO-A).
- Certified Secure Software Lifecycle Professional (CSSLP).
- CompTIA Cloud+.
- CompTIASecurityX(formerly CASP+).
- Federal IT Security Professional-Designer-NG (FITSP-D).
- GIAC Cloud Security Automation (GCSA).
- GIAC Continuous Monitoring Certification (GMON).
- GIAC Security Essentials Certification (GSEC).
ORThis requirement can be met through:
- ABachelor’s Degreein Cybersecurity, Computer Science, IT, or a related field.
Experience:
- 2-5yearsof professional experience managing and supporting enterprise-levelITenvironments.
Technical Skills:
- Strong understanding of security architecture, secure system design, and engineering principles.
- Experience developing SSPs, security diagrams, interface documentation, and control implementation descriptions.
- Proficiencywith vulnerability scanning tools (Nessus, ACAS, Qualys) and technical analysis platforms.
- Knowledge of DISA STIGs, CIS Benchmarks, and secure configuration/hardening standards.
- Familiarity with SIEM platforms (Splunk, SolarWinds) and enterprise monitoring architectures.
- Understanding of Windows Server, Active Directory security, RHEL, and network security concepts (TCP/IP, VLANs, IPsec, firewalls).
- Experience conducting technical risk assessments and generating architecture‑level recommendations.
- High‑quality technical writing and documentation skills for engineering artifacts and audit evidence.
Clearance Requirement:
- ActiveTS/SCIclearance with the ability to obtain andmaintainaTS/SCI withCIPoly.
Work Environment and Notes:
- On-Site Work:All work must be conductedon-sitein Springfield, VA.
- Program Scope:Supports on-premises enterprise IT environments, including virtualized Windows servers, MS SQL Server databases, and networking layers.
- Subcontractor Role:Responsibilities and compensation vary based on the subcontract agreement, with a competitive salary aligned to market rates and role-specific requirements.
Target salary range: $80,001 - $120,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.