Enable job alerts via email!

Information Systems Security Engineer (ISSE) SME (ISSO/Cybersecurity Architect - SME)

Gemini Industries

Fairfax (VA)

On-site

USD 120,000 - 160,000

Full time

6 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in the defense sector is looking for a Senior Information Systems Security Engineer to support critical missions in cybersecurity. The ideal candidate will have extensive experience in information security, technical certifications, and a proven track record in managing cybersecurity projects. Key responsibilities include designing secure architectures, ensuring compliance with standards, and supporting cross-functional teams.

Qualifications

  • 15+ years of information security experience, including 10+ years with DoD/IC.
  • DoD 8570.01-M IAT Level III certification and Cloud Associate certification required.
  • Expert in cloud, cybersecurity, networking, and related domains.

Responsibilities

  • Design and implement secure system architectures.
  • Conduct vulnerability assessments and ensure compliance with RMF standards.
  • Provide strategic advice and technical guidance for cybersecurity projects.

Skills

Information Security
Vulnerability Analysis
Cybersecurity Engineering
Cloud Computing
System Hardening
Communication

Education

MA/MS in Cybersecurity, Computer Science or related field
BS in a related field + 4 years experience

Tools

Xacta
eMASS
Nessus
Splunk
Elastic SIEM

Job description

Location: Fairfax, VA (Situational telework eligible)

Clearance: TS Clearance SCI Eligible / SAP Eligible

Education: MA/MS in Cybersecurity, Computer Science or related field (or BS in a related field plus an additional 4 years of related work experience)

Certifications: A DoD 8570.01-M IAT Level III technical certification (such as CISSP, CASP, or other level 3 technical certification) is required.; and a Cloud Service Provider Associate Certification (AWS, Azure, Oracle, or Google) is required.

Outcomes:

The successful candidate is expected to accomplish the following outcomes during the first year in the position:

· Formally track all tasks, to include assigned by, suspense, status, and comments on all assigned tasks through completion and be prepared to brief upon request.

· Develop digital continuity folders and files that include standard operating procedures, workflows and POC lists to accomplish all tasks.

· Create 2-3 products beyond the client’s requirements that positively impact the client to either increase efficiency, effectiveness, or innovation.

· Master position tasks within 60 days and exceed requirements within 90 days.

Responsibilities:

The Senior Information Systems Security Engineer (ISSE) (SME) will directly support the Secretary of the Air Force (SAF) / Office of Competition (OC) Mission Partner Capabilities Office (MPCO) also known as SAF/CDMX Directorate. The Mission Partner Capabilities Office provides design, configuration, accreditation and implementation of mission and R&D information management systems and cloud-based solutions that support defense and intelligence priorities as well as internal business processes and mission functions, network communications, database management, security accreditation, and workflow management.

The ISSE will design and implement secure system architectures to protect SAF/OC information systems from cyber threats. The ISSE will work closely with ISSMs, ISSOs, and IT teams to integrate security controls and ensure compliance with RMF, NIST 800-53, and DoD security standards.

The ISSE SME is responsible for designing, implementing, and maintaining security controls to protect the organization's information systems in accordance with Department of Defense (DoD) requirements. This role involves collaborating with various stakeholders to ensure that security measures are effectively integrated into the system development lifecycle (SDLC) and that compliance with relevant regulations is achieved. This is a unique hands-on technical role in such that the ISSE is responsible for compliance-based cybersecurity engineering to include but not limited to cybersecurity engineering and generation of body of evidence requirements per DoD Risk Management Framework (RMF). Additionally, the ISSE shall provide management and professional support, assistance, advice, to support the efficient and effective management and operation of the organization, activities, or systems specifically related to cybersecurity in all phases of RMF. This role will be the technical component supporting the ISSM. Per PWS section 1.3.9, Cybersecurity Support, specific tasks and responsibilities include but are not limited to:

Specific responsibilities include but are not limited to:

  • Provide SME expertise and recommendations in applying security requirements to complex combatant command projects, identifying gaps, and while integrating new technologies.
  • Develop secure system architectures and hardening solutions.
  • Conduct vulnerability assessments, security testing, and continuous monitoring.
  • Implement security controls per RMF and NIST guidelines.
  • Support risk assessments and incident response efforts.
  • Ensure security policies and best practices are integrated into system design.
  • Develop strategies to address potential solutions to complex problems.
  • Develop and document requirements from project inception to conclusion.
  • Provide strategic advice, technical guidance, and expertise to program and project staff.
  • Apply security controls and all technical mechanisms required by DoD RMF/Joint Special Access Program Implementation Guide (JSIG)/and Intelligence Community (IC) Directives and building security assessment procedures and evidence for assessment by Authorizing Officials of body of evidence.
  • Engineering, administration, and configuration of Nessus scans and policies, Trellix/McAfee back end and policies, Splunk and Elastic SIEM administration, engineering, and query languages (SPL, SQL, or ES/QL) for analysis.
  • Apply STIGs, and various security mechanisms within Windows, Linux, and AWS cloud consoles.
  • Identify and analyze information system vulnerabilities and compliance issues.
  • Administration of AWS cloud console and cybersecurity mechanisms, and STIG/SCAP compliance checker.
  • Execute incident response as necessary
  • Provide detailed analysis, evaluation, and recommendations for improvements, optimization, and/or maintenance efforts for specified mission-critical challenges/issues as related to system vulnerabilities and remediation.
  • Coordinate cross-functional teams through meetings and progress measuring activities.
  • Participate in project performance review meetings and discussions.
  • Support a cross-functional teams with cybersecurity support.

Qualifications:

The candidate must have the following qualifications:

  • · A minimum of fifteen (15) years of related work experience in information security, and of those years, at least ten (10) years of experience supporting a component of the Department of Defense (DoD) or Intelligence Community (IC).

  • Cloud Service Provider Associate Certification (AWS, Azure, Oracle, or Google)

  • Excellent oral, written, and interpersonal communication skills.

  • Expertise in building bodies of evidence and assessment and authorization packages/activities within DoD and IC environments, specifically Special Access Programs.

  • The ability to work under pressure and meet deadlines in a rapidly changing and demanding environment.

  • Strong attention to detail, flexibility, and the ability to context switch.

  • Expert in multiple domains of Information Technology, including cloud, cybersecurity, networking, and others.

  • Expert in two or more of the following domains: vulnerability analysis and vulnerability management, SIEM operations and defensive cyber operations, system hardening and cyber tool engineering.

  • Cybersecurity engineering is related to the RMF lifecycle, security control enforcement, body of evidence creation, and continuous monitoring, assessment, and authorization processes.

  • Operating in overlapping security control and overlay environments (CNSSI 1253, Executive Order 12333, Intelligence, JSIG, etc.).

  • Experience in overlapping domains at multiple classifications, including vulnerability analysis, SIEM operations, cyber network defense, cyber operations, malware analysis, information systems security management, or engineering.

  • Proficiency with Xacta or eMASS.

  • Experience with DoD Joint Special Access Program Implementation Guide (JSIG), AF Cyber policies, NIST SP 800 Series, and CNSSI 1253 security controls and overlays.

  • Experience operating in cloud cybersecurity and shared responsibility models, networking, and/or data experience is required.

  • Certifications:

    DoD 8570.01-M IAT Level III technical certification (such as CISSP, CASP, or other level 3 technical certification) is required; and a Cloud Service Provider Associate Certification (AWS, Azure, Oracle, or Google) is required.

The following qualifications are desired:

  • Experience with DEVSECOPS, containerization, and zero-trust architectures (preferred)
  • Splunk or Elastic Certifications (preferred)
  • Experience with Department of Defense (DoD) Special Access Program (SAP) administrative processes (preferred)

Travel: Some local travel may be expected.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information Systems Security Engineer (ISSE) SME (ISSO/Cybersecurity Architect - SME)

Kinsley Power Systems

Fairfax

On-site

USD 120,000 - 160,000

Today
Be an early applicant

Engineering Technician SME

KBR, Inc

North Charleston

Remote

USD 82,000 - 125,000

5 days ago
Be an early applicant

Baseline Security Engineer, Lead

BOOZ ALLEN HAMILTON INTERNATIONAL (U.K.) LTD

Washington

Remote

USD 99,000 - 225,000

21 days ago

Information System Security Engineer (ISSE)

Peraton

Linthicum

On-site

USD 112,000 - 179,000

Yesterday
Be an early applicant

Engineering Technician SME

KBR, Inc

North Charleston

Remote

USD 82,000 - 125,000

7 days ago
Be an early applicant

Security Analyst III

MLT Systems

Stafford

On-site

USD 92,000 - 126,000

6 days ago
Be an early applicant

IT Security Engineer

Philips

Malvern

On-site

USD 96,000 - 155,000

7 days ago
Be an early applicant

Security Engineer

Ansfederal

Linthicum

On-site

USD 100,000 - 200,000

3 days ago
Be an early applicant

Information Security Analyst IV

DS Technologies Inc

Takoma Park

Hybrid

USD 100,000 - 150,000

7 days ago
Be an early applicant