Overview: Cyber Defense Technologies (CDT) is seeking a proactive Information Systems Security Engineer (ISSE) to support Risk Management Framework (RMF) compliance, system hardening, and security engineering across a diverse portfolio of systems. This role requires independent ownership of complex security challenges- from vulnerability assessment and remediation through continuous monitoring-while ensuring alignment with DoW and USSOCOM security policies.
You will bridge high-level security architecture with hands-on implementation across physical and virtual operating systems, networking devices, enterprise, embedded, and air-gapped environments.
Clearance Requirements: An active Secret clearance is required, TS/SCI preferred. All candidates must be U.S. Citizens. Applicants who do not meet these requirements will not be considered.
Responsibilities include but are not limited to:- Perform security design, configuration, hardening, testing, and monitoring of advanced information systems independently or as part of a team.
- Conduct vulnerability testing and apply current compliance standards and technical controls across Windows, Linux, Android, iOS, and related platforms.
- Support security architecture development; enforce trusted relationships with external systems; assess and mitigate security threats/risks throughout the program lifecycle.
- Assist vendors and system developers in implementing DoW/USSOCOM security functionality and enterprise solutions.
- Contribute to security planning, assessment, risk analysis, risk management, certification, and awareness activities.
- Review Assessment & Authorization (A&A;) documentation for completeness and compliance.
- Support rapid Fielding and Deployment Release processes by ensuring RMF and Authorization to Operate (ATO) requirements are met.
- Create and maintain IA policy documentation and RMF artifacts, including System Security Plans (SSP), Security Assessment Reports, Risk Assessments, POA&Ms, Control Implementation/Validation documents, Ports/Protocols/Services matrices, network/architecture diagrams, and accreditation boundaries.
- Execute cross-platform patch management and system imaging.
- Map NIST 800-53 controls and DISA CCIs to system capabilities in support of ATO maintenance and renewals.
- Engage customer technical points of contact as needed during architecture and implementation activities.
Technical Areas of Expertise:- Experience with RMF process and requirements (NIST 800-53)
- Experience with virtualized and standalone environments (VMware)
- Experience with patch management solutions
- Experience with standard forensic practices, imaging software, tools, and techniques
- Experience with Security Technical Implementation Guide (STIG) experience
- Experience with Vulnerability Management (Nessus, NexPose, OpenVAS, etc)
- ELINT, Radio Frequency, Electronic Warfare, and/or SIGINT experience a plus
- Translating technical customer requirements into business process and tasking
- Technical consulting both buyer and end user customer personnel in a complex environment
- System Administration experience with Linux and Windows
- Experience with administration and forensic practices with mobile platforms is a plus
REQUIRED QUALIFICATIONS: - Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related technical field; or work relevant work experience equivalent.
- Minimum 4 years of information security-related experience in areas such as security operations, vulnerability management, security testing, system patching, log analysis, intrusion detection, or security device administration.
- Knowledge of RMF, Windows/Linux operating systems, STIGs, ACAS, HBSS, and/or related technologies.
- Demonstrated ability to work independently, analyze root causes, and drive solutions from identification through resolution.
- U.S. Citizenship and active Secret clearance (or higher), clearable to TS/SCI.
PREFERRED QUALIFICATIONS: - Active DoD 8570 IAT Level II (or higher) certification preferred at time of hire (e.g., Security+ CE, CASP+, CISSP).
- Hands-on experience with vulnerability assessment tools (ACAS, Nessus, SCAP), VMware, image deployment/orchestration, and multi-platform hardening.
- Technology-specific certifications (Cisco, VMware, Microsoft, etc.) relevant to the environment.
- Experience supporting rapid ATO processes and continuous monitoring in DoD/IC environments.
Travel:CONUS Travel of 10 to 15% may be required depending on program needs
Compensation and Benefits: - Competitive salary based. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on work experience, education, certifications, geographic location, contract wage determination that align with the specified role.
- Comprehensive benefits package, including Health, Dental, Paid Time Off, Holiday Pay, Short-term and Long-term disabilities, Life Insurance, Retirement plans, Learning and Development opportunities, Wellness programs as well as other optional benefits elections.
Apply Now:If you are a proactive Information System Security Engineer (ISSE) and thrive in dynamic environments, we encourage you to apply and join the CDT team!