Cybersecurity Engineer III

Information Systems Solutions

$140K — $150K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of experience in cybersecurity or incident response
  • IAM II certification required
  • Additional certification required (CISSP, CISM, CAP, CASP, GSLC)
  • In-depth knowledge of Risk Management Framework
  • Clearance Level: Secret

Responsibilities

  • Test and apply security controls based on categorization and tailoring
  • Conduct reconnaissance and assess Plans of Milestones and Actions (POA&Ms)
  • Develop comprehensive A&A documentation including SSP and SARs
  • Adhere to eMASS scheduled tasking for accreditation cycles
  • Maintain DISA circuit connections and accreditation workflows

Benefits

  • 100% onsite work environment
Full Job Description
Information Systems Solutions (ISS) is seeking a Cybersecurity Engineer III to support the NIWC PAC Information Technology Management Support Services contract. The Cybersecurity Engineer III will be responsible for supporting Assessment and Authorization (A&A) accreditation efforts. This role maintains cybersecurity monitoring operations, performs triage to assess the scope and impact of incidents, identifies vulnerabilities, and recommends remediation strategies. The role requires in-depth knowledge of the Risk Management Framework.

100% onsite

Key Responsibilities:
• Test and apply security controls based on security categorization, the application of overlays (privacy, classified, intel, etc.) and security control tailoring (AI, NOFORN, etc.).
• Conduct active and passive reconnaissance of data, with the ability to assess and author Plans of Milestones and Actions (POA&Ms) containing accurate and verifiable mitigation statements, milestone tracking, and applying to the most relevant security control.
• Development of comprehensive required A&A documentation, including System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Reports (SARs), etc.
• Adherence to the eMASS scheduled tasking within the accreditation cycle, including Quarterly Independent Verification and Validation (IV&V), quarterly STIG checks, Annual Security Review (ASR), monthly POA&M updates, and resubmission for ATO, ATC, IATC and IATT as applicable.
• Maintenance of DISA circuit connections (CCSDs), inheritance from accredited systems and cloud service providers, and the workflow schedule on accreditations.

Requirements

Clearance Level:

Secret

Certification: IAM II

One of the following:

CAP

CASP
CISM
CISSP (or Associate)

GSLC

Required Qualifications:
• 10+ years of experience in cybersecurity or incident response
• Certifications preferred: Certified Information Systems Security Professional (CISSP)

Skills & Competencies:
• Cybersecurity Monitoring and Incident Response
• Security Testing, Auditing, and Remediation
• Data Analytics and Risk Assessment
• Proficiency with IT Security Software and Web Security Tools

Salary Description

140,000-150,000

Similar Jobs

More Jobs at Information Systems Solutions

More Information Technology Jobs

Find similar Cybersecurity Engineer III jobs: