ISSE

Peraton

Washington (District of Columbia)

On-site

USD 112,000 - 179,000

Full time

36 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

PTO 25 days annually
Bonus plan
Enhanced employee benefits

Job summary

Peraton is seeking an Information Systems Security Engineer (ISSE) to support an IC customer in the Washington DC area. The role focuses on security engineering across lifecycle stages, STIG implementation, and continuous monitoring of information systems.

You will develop Splunk dashboards, perform RMF tasks, and work with IC security authorities to ensure proper accreditation and risk management. A TS/SCI with poly is required or the ability to obtain one, along with CISSP and strong technical

Qualifications

  • Bachelor's or higher in a STEM field with 8+ years of relevant experience; or 4+ additional years of experience in lieu of a degree.
  • TS/SCI with polygraph clearance adjudication or ability to obtain SCI and pass a poly
  • CISSP certification is required
  • One year of experience with IC Community
  • Experience scripting languages, Linux/RedHat, Windows Server and/or Networking Appliances
  • Experience with DISA STIG implementation and SCAP tools
  • Experience performing SS security tasks including Splunk, HBSS, ACAS/Nessus
  • Experience creating and validating evidence for NIST security controls

Responsibilities

  • Define information security requirements and integrate them into information systems.
  • Develop and implement security designs to meet cyber security requirements and SCTM.
  • Identify vulnerabilities and recommend mitigations for IA standards.
  • Implement STIG requirements and perform SRG assessments for development projects.
  • Develop Splunk applications and dashboards.
  • Develop STP and support A&A testing and validation of security designs.
  • Conduct risk analysis and coordinate POA&Ms as needed.
  • Execute continuous monitoring and reporting of security metrics.
  • Validate control implementations align with RMF and CNSSI 1243 requirements.

Skills

Scripting languages
Linux/RedHat
Windows Server
Networking appliances
Splunk
HBSS
ACAS/Nessus
NIST controls

Education

Bachelor's degree in STEM
Master's degree in STEM
4+ years of experience in lieu of degree

Tools

SCAP tools
STIG
NIST RMF tooling

Job description

Job Locations

US-VA-Herndon | US-DC-Washington | US-MD-Riverdale

Responsibilities

Currently seeking an Information Systems Security Engineers (ISSE) to support an Intel Community (IC) customer in the Herndon, Virginia area.

ISSE responsibilities for conducting information system security engineering activities for new or existing system(s) may include:

  • Defines information security requirements and their integration into information systems and its technology component through purposeful security design.
  • Develops and implements security designs ensure that the hardware, operating systems and software applications adequately address cyber security requirements and Security Controls Traceability Matrix (SCTM).
  • Identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations and recommend mitigation strategies.
  • Implement, validate Security Technical Implementation Guide (STIG) requirements and/or perform SRG assessments for all development and implementation projects.
  • Develop, customize, and configure Splunk applications and dashboards.
  • Develop Security Test Procedure (STP), conducts self-assessments to verify compliance with required configuration guidance and support A&A testing and validation of security designs.
  • Conducting risk analysis reviewing ACAS, CVEs, plugins, CWEs, research, collaborating with System Administrators to mitigate identified vulnerabilities and/or author Plans of Actions and Milestones (PO&A) as needed.
  • Execution of continuous monitoring efforts responds to data calls, scan requests, and various weekly and monthly security metrics reporting requirements.
  • Validate control implementations provide enforcement of the required data access and network flow restrictions align with the continuous monitoring strategy.
  • Participates in Agile Planning Events to provide technical input.
  • Support government activities and report to appropriate IC and DoD authorities (i.e., USCYBERCOM, IC-SCC)
  • Support security authorization activities in compliance with the customer Information System Certification and Accreditation Process following the NIST Risk Management Framework (RMF), CNSSI No 1243 and other prescribed business processes for security engineering.
  • Assist architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of Agency security policy and enterprise solutions.
  • Apply system security engineering expertise in one or more of the following to: system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; risk management; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control); and security testing.

#SpaceIntel

Qualifications

Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD

Required Qualifications:

  • Bachelor's degree in a relevant technical (STEM) field with 8+ years of relevant experience; Master's degree in a relevant technical (STEM) field with 6+ years of relevant experience; or 4+ additional years of experience in lieu of a degree.
  • TS/SCI with polygraph clearance adjudication or ability to obtain SCI and pass a poly
  • Certified Information Systems Security Professional (CISSP) Certification is required
  • One (1) year of experience with IC Community
  • Proven experience in scripting languages, Linux/RedHat, Windows Server and/or Networking Appliances
  • Proven experience with DISA Security Technical Implementation Guide (STIG) implementation and Security Content Automation Protocol (SCAP) tool usage
  • Proven experience performing Systems Security tasks including: Security Information and Event Monitoring (Splunk); Endpoint security (HBSS); Compliance and vulnerability scanning (ACAS / Nessus)
  • Demonstrated experience with creating and validating evidence for NIST security controls.

Desired Qualifications:

  • Skilled in implementing mitigation strategies and how to resolve problems, and to re-test/ re-evaluate systems
  • Demonstrated experience with DISA Security Technical Implementation Guide (STIG) implementation and Security Content Automation Protocol (SCAP) tool usage
  • Possess a working knowledge of administrating servers, system and application security threats and vulnerabilities
  • Experience extending existing applications in areas such as security, monitoring, task automation, continuous integration, deployment, and performance optimization
  • Demonstrate writing of your own project in scripting/programming (use of Shell scripting, Python, Javascript, Powershell) in a Linux or Windows environment to support the various Cyber Security tools and applications required
  • Provide guidance on vulnerability and malware remediation.
  • Experience analyzing vulnerabilities, establishing cause and impact, and identifying the corrective action needed to eliminate and prevent the event from happening in the future.

Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and eligible to participate in an attractive bonus plan

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$112,000 - $179,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

ISSE
ISSE

Peraton • Riverdale Park (MD)

On-site
USD 112,000 - 179,000
25 days PTO
Enhanced benefits
Discretionary bonus plan
ISSE
ISSE

Peraton • Herndon (VA)

On-site
USD 112,000 - 179,000
PTO 25 days
Annual bonus plan
Enhanced employee benefits
External Job Posting Title Information Systems Security Engineer (ISSE)
External Job Posting Title Information Systems Security Engineer (ISSE)

Peraton • Linthicum (MD)

On-site
USD 135,000 - 216,000
Information Systems Security Engineer Level 1 - AI/ML Project TS/SCI w Poly
Information Systems Security Engineer Level 1 - AI/ML Project TS/SCI w Poly

Peraton • Laurel (MD)

On-site
USD 135,000 - 216,000
25 days PTO
Eligible for discretionary bonus
External Job Posting Title Information Systems Security Engineer (ISSE)
External Job Posting Title Information Systems Security Engineer (ISSE)

Peraton • Herndon (VA)

On-site
USD 135,000 - 216,000
25 days PTO
Bonus plan
Enhanced benefits
External Job Posting Title Information Systems Security Engineer (ISSE)-TS/SCI w/Poly
External Job Posting Title Information Systems Security Engineer (ISSE)-TS/SCI w/Poly

Peraton • Annapolis (MD), Northern (KY)

On-site
USD 146,000 - 234,000
PTO 5 weeks
Health benefits
Annual bonus
Sr Information Systems Security Engineer (ISSE), Advisor - TS/SCI w/poly
Sr Information Systems Security Engineer (ISSE), Advisor - TS/SCI w/poly

Peraton • Washington

On-site
USD 146,000 - 234,000
Cloud certification
Sr Information Systems Security Engineer (ISSE) - SCA, Advisor - TS/SCI w/poly
Sr Information Systems Security Engineer (ISSE) - SCA, Advisor - TS/SCI w/poly

Peraton • Quantico (VA)

On-site
USD 146,000 - 234,000
Jr Information System Security Engineer (ISSE)
Jr Information System Security Engineer (ISSE)

Peraton • Corridor North (MD)

On-site
USD 112,000 - 179,000
Sr Information Systems Security Officer (ISSO), Advisor – TS/SCI w/poly
Sr Information Systems Security Officer (ISSO), Advisor – TS/SCI w/poly

Peraton • Washington

On-site
USD 146,000 - 234,000