Jr Information System Security Engineer (ISSE)

Peraton

Washington (District of Columbia)

On-site

USD 85,000 - 115,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Peraton seeks a Jr Information System Security Engineer (ISSE) to support a Washington, D.C. customer onsite. You will design and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational policies.

You will engage across SDLC, perform vulnerability management with Nessus, ACAS, and Qualys, and secure Windows/Linux, cloud, and container environments. You will help with incident response using Splunk and develop automation scripts in PowerShell,

Qualifications

  • Active Top Secret with SCI eligibility.
  • DoD 8570.1-M/8140 IAT Level III certification (SecurityX/CASP, GCIH, CISA, CISSP) compliant.
  • Experience with networking (TCP/IP, firewalls, VPNs).
  • Experience with cloud security (AWS/Azure) and Kubernetes.
  • Familiarity with NIST SP 800-161, RMF, FedRAMP, STIGs.
  • Proficient with Nessus, CyberArk, Trellix, Splunk, VMware, Linux systems.

Responsibilities

  • Design, implement, and maintain enterprise security architecture aligned with RMF, STIGs, and policies.
  • Perform security engineering across SDLC including requirements analysis and accreditation support.
  • Implement vulnerability management to identify and remediate system vulnerabilities.
  • Integrate cybersecurity requirements into Windows, Linux, cloud, and container environments.
  • Support incident response and forensics by analyzing SIEM alerts and logs.
  • Develop automation scripts to streamline remediation and compliance tasks.
  • Collaborate with admins, ISSOs, and app teams to remediate findings and baselines.
  • Perform security impact analysis for changes and upgrades to ensure compliance.
  • Engineer endpoint protection and hardening using Trellix ePO and related tools.
  • Evaluate cybersecurity tools and technologies to improve posture and monitoring.
  • Produce security documentation, architecture diagrams, SOPs, and risk reports.
  • Assist with DoD IA architectures within computing, network, and enclave environments.

Skills

Security architecture
NIST RMF
DoD STIGs
Vulnerability management
Cloud security
Scripting: PowerShell/Python/Bash
Splunk
CyberArk
DevSecOps
Networking basics

Education

BS/BA in a related field

Tools

Tenable Nessus
ACAS
Qualys
CyberArk
Splunk Enterprise
VMware vSphere
Windows Server
Red Hat Enterprise Linux
Ubuntu Linux

Job description

Jr Information System Security Engineer (ISSE)

Location: US-DC-Washington

Responsibilities

Peraton is seeking an Information Systems Security Engineer (ISSE) to support our customer onsite in Washington D.C. Responsibilities include:

  • Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies.
  • Perform security engineering activities across system development lifecycle (SDLC), including requirements analysis, system design reviews, security testing, and accreditation support.
  • Implement vulnerability management processes utilizing Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate system vulnerabilities.
  • Integrate cybersecurity requirements into Windows and Linux server environments, cloud infrastructure, virtualization platforms, and containerized applications.
  • Support incident response and forensic investigations by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise.
  • Develop automation scripts using PowerShell, Bash, and Python to streamline vulnerability remediation, account auditing, compliance reporting, and security monitoring tasks.
  • Collaborate with system administrators, network engineers, ISSOs, and application teams to remediate security findings and implement secure configuration baselines.
  • Perform security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure continued compliance and operational security.
  • Engineer endpoint protection and hardening solutions utilizing Trellix ePO - On-prem, host-based firewalls, and application whitelisting technologies.
  • Evaluate and implement cybersecurity tools and technologies to improve system security posture, continuous monitoring, and threat detection capabilities.
  • Produce technical security documentation, architecture diagrams, standard operating procedures (SOPs), and executive-level risk assessment reports.
  • Experience administrating, configuring, and troubleshooting core modules such as Enterprise Password Vault (EPV), Password Vault Web Access (PVWA), Central Policy Manager (CPM), and Privileged Session Manager (PSM) in CyberArk.
  • Monitors, analyzes, and detects cyber events and incidents within information systems and networks under general supervision.
  • Assists with integrated, dynamic cyber defense, coordinates and maintains security toolsets to support organizations' continuous monitoring and ongoing authorization programs.
  • Establishes a framework by which cyber risk can be measured and quantified in the marketplace.
  • Determines security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates. Implements security systems by specifying intrusion detection methodologies and equipment; directing equipment and software installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation. Verifies security systems by developing and implementing test scripts.
  • Maintains security by monitoring and ensuring compliance to standards, policies, and procedures; conducting incident response analyses; developing and conducting training programs. Responsible for the design, development, implementation, and integration of a DoD IA architectures, systems, or system components for use within computing, network, and enclave environments.
  • Ensures that the architecture and design of development and operational systems are functional and secure.
  • This includes designs for program of record systems and special purpose processing nodes with platform IT interconnectivity.
Qualifications
  • 2 years with BS/BA; 0 years with MS/MA; 6 years with no degree
  • Must possess an active Top Secret with SCI Eligibility
  • Must be DoD 8570.1-M/8140 IAT Level III certification (SecurityX (CASP), GCIH, CISA, CISSP) compliant
  • Experience with networking (TCP/IP, firewalls, VPNs), cloud security (AWS/Azure), Kubernetes, and DevSecOps.
  • Understanding of NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria, ATO package development, and cybersecurity compliance (STIGs).
  • Experience with using and deploying Tenable Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, GitLab, Microsoft Windows Server, Red Hat Enterprise Linux and Ubuntu Linux
  • Experience with scripting and automation with Powershell, Python, Bash and Ansible
EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Engineer (ISSE)
Information System Security Engineer (ISSE)

Peraton • Maryland

On-site
USD 120,000 - 180,000
Senior Information Systems Security Engineer (ISSE)
Senior Information Systems Security Engineer (ISSE)

The Amatriot Group • Maryland

On-site
USD 150,000 - 210,000
Senior Information Systems Security Engineer (ISSE)
Senior Information Systems Security Engineer (ISSE)

Amatriot Group, LLC • Glen Burnie (MD)

On-site
USD 150,000 - 210,000
Senior Information Systems Security Engineer – ISSE
Senior Information Systems Security Engineer – ISSE

Jobtailor • Maryland

On-site
USD 140,000 - 180,000
Information Systems Security Engineering (ISSE)
Information Systems Security Engineering (ISSE)

HRUCKUS • Maryland

On-site
USD 116,000 - 140,000
Information System Security Engineer
Information System Security Engineer

Navstar Inc. • Columbia (MD)

On-site
USD 140,000 - 190,000
INFORMATION SYSTEM SECURITY ENGINEER (Must have Active TS/SCI w/CI Poly Clearance)
INFORMATION SYSTEM SECURITY ENGINEER (Must have Active TS/SCI w/CI Poly Clearance)

NorthHill Technology • Fairfax (VA)

On-site
USD 150,000 - 190,000
null
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

Arena Technical Resources, LLC (ATR) • Maryland

On-site
USD 120,000 - 150,000
Sr. Information Systems Security Engineer ACTIVE TS/SCI CIP REQUIRED
Sr. Information Systems Security Engineer ACTIVE TS/SCI CIP REQUIRED

Select Search Associates LLC • Manassas (VA)

On-site
USD 140,000 - 190,000
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

Evans & Chambers Technology • Arlington (VA)

On-site
USD 100,000 - 130,000