Senior Information Systems Security Engineer

Astrion

Bedford (MA)

On-site

USD 165,000 - 175,000

Full time

9 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Astrion seeks a Senior Information System Security Engineer (ISSE) at Hanscom AFB, MA to support the Special Programs Division. You will lead security activities for weapon systems and PIT Systems, guiding RMF artifacts and ensuring compliance with DoD policies.

The role requires active TS/SCI clearance, US citizenship, and RMF experience, with DoD 8570.01 MMGT512 certification. 15+ years cyber-security or 12+ with advanced degree are preferred. Position is full-time with competitive pay.

Qualifications

  • Must be a US citizen.
  • Active TS/SCI clearance and ability to pass background screening for SAP.
  • DoD 8570.01 MMGT512 compliant certification.
  • Experience with the Risk Management Framework (RMF).

Responsibilities

  • Support A&A for weapon systems and PIT Systems, guiding RMF artifacts per DoD/AF policies.
  • Recommend cybersecurity policies to protect information systems and networks.
  • Develop, execute, and track security measures for information infrastructure.
  • Review architectures and advise on cybersecurity strategies for dev/legacy systems.
  • Assess threats and advise program managers on risk reduction.
  • Translate requirements into technical security requirements and architectures.
  • Promote security awareness across lifecycle and participate in system design.
  • Understand DevSecOps practices to check for security flaws during code review.
  • Understand OSs including Linux/Ubuntu, IoT, ZTA, and Cloud development.
  • Document system security requirements and recommended mitigations.
  • Plan and update Cyber Security Strategy within PPP and CPI/CC analysis.
  • Review Tempest requirements and disaster recovery procedures.
  • Experience with compliance and vulnerability tools (STIGs, Nessus, ACAS, SCAP).
  • Review CDRL items for cybersecurity and provide comments to PM.

Skills

US citizenship
Active TS/SCI clearance
RMF
DevSecOps awareness
Linux/Ubuntu/IoT/Cloud familiarity

Education

BA/BS degree in Cybersecurity or related
MA/MS degree with 12+ years experience
20 years related experience with DoD background

Job description

Overview

Senior Information System Security Engineer (ISSE)

LOCATION: Hanscom AFB, MA

SALARY RANGE: $165-$175,000 annually*

*depending on experience, certifications, and qualifications

JOB STATUS: Full-Time

CLEARANCE: TS/SCI

CERTIFICATIONS: DoD 8570.01 MMGT512 compliant

TRAVEL: Limited; As Needed

Astrion has an exciting opportunity fora Senior Information System Security Engineer (ISSE) located at the Hanscom AFB, MA supporting the Special Programs Division (AFLCMC/HNJ).

REQUIRED QUALIFICATIONS / SKILLS:
  • Must be a US citizen
  • Must hold an active TS/SCI Clearance and ability to pass a background screening for SAP
  • BA/BS degree and at least 15 years of Cyber-Security experience and 5 years DoD experience
  • OR MA/MS Degree and 12-year experience, 5 years in DoD
  • OR 20 years of directly related experience with proper certifications of which 8 years are in DoD
  • DoD 8570.01 MMGT512 compliant certification.
  • Experience with the Risk Management Framework (RMF)
RESPONSIBILITIES

Duties include but not limited to:

  • Support the system/application authorization and accreditation (A&A) effort for weapon systems and PIT Systems, to include assessing and guiding the quality and completeness of A&A activities, tasks, and resulting artifacts mandated by governing DoD and Air Force policies (i.e., Risk Management Framework (RMF). Understanding of how RMF intersects with the acquisition process and how it’s used to generate requirements; how RMF and Cybersecurity should be covered in contracts – requirements, deliverables, PWS/SOW language. Understanding how to work through RMF and controls with a program to establish appropriate levels of risk based on program lifecycle and mission requirements.
  • Recommend policies and procedures to ensure the reliability of and accessibility to information systems and to prevent and defend against unauthorized access to systems, networks, and data.
  • Develop, execute, and track the performance of security measures to protect information and network infrastructure and computer systems.
  • Review and assess architectures and recommend cybersecurity strategies to developmental and legacy system designs.
  • Assess threats to determine impact and recommend corrective actions to program managers to reduce risk.
  • Translate program/system requirements into technical requirements and architectures needed to meet program objectives.
  • Life cycle development Promote awareness of security issues among management and ensuring sound security principles are reflected in program’s’ visions and goals. Participate in systems design.
  • Understanding of DevSecOps environments to check for security flaws and vulnerabilities during code review.
  • Understanding of operating systems including Linux, Ubuntu, IoT systems, ZTA environments and Cloud development.
  • Identify, define, and document system security requirements and recommend solutions to management.
  • Plan, develop, implement, and update Cyber Security Strategy Information within the Program Protection Plan (PPP) and assess CPI (Critical Program Information) and CC (Critical Components) analysis.
  • Recommend and review Tempest requirements, systems security contingency plans and disaster recovery procedures.
  • Experience with compliance and vulnerability and software scanning tools (STIGs, Nessus, ACAS, SCC/ SCAP, etc.) to include the review and creation of mitigation reports.
  • Review the Vendor submitted Contract Data Requirement List (CDRL) items for Cybersecurity related areas, to ensure technical requirements have been met, and provided substantial comments and recommendations to the Program Management (PM) team as to adequacy of the CDRL.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Systems Security Engineer
Senior Information Systems Security Engineer

Astrion • Lincoln (MA)

On-site
USD 165,000 - 175,000
Senior Information Systems Security Engineer (ISSE)
Senior Information Systems Security Engineer (ISSE)

Applied Research Solutions • Bedford (MA)

On-site
USD 178,000 - 198,000
Senior Information Systems Security Engineer (ISSE)
Senior Information Systems Security Engineer (ISSE)

Appliedres • Washington, Northern (KY)

On-site
USD 178,000 - 198,000
Senior Information System Security Engineer
Senior Information System Security Engineer

Odyssey • Lincoln (MA)

On-site
USD 140,000 - 180,000
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

Abacus Technology Corporation • Lincoln (MA)

On-site
USD 180,715 - 210,000
Health insurance
401(k) matching
Life insurance
+4
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

Abacus Technology • Massachusetts

On-site
USD 180,715 - 210,000
Health Insurance
401(k) and Matching
Life Insurance
+4
Senior ISSE – Air Force Systems (Hanscom AFB)
Senior ISSE – Air Force Systems (Hanscom AFB)

Applied Res • Bedford (MA), Northern (KY)

Hybrid
USD 178,000 - 195,000
Senior ISSE – Air Force Systems (Hanscom AFB)
Senior ISSE – Air Force Systems (Hanscom AFB)

Applied Research Solutions • Bedford (MA)

On-site
USD 178,000 - 195,000
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

Abacus Technology Corporation • Massachusetts

Hybrid
USD 140,000 - 190,000
Cyber Security Engineer - Information Systems Security Engineer (ISSE) - Senior Principal
Cyber Security Engineer - Information Systems Security Engineer (ISSE) - Senior Principal

Modern Technology Solutions, Inc. (MTSI) • Bedford (MA)

On-site
USD 110,000 - 150,000