Information System Security Engineer (ISSE)

AnaVation

$108K — $130K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of experience in security requirement analysis and computer systems design.
  • Bachelor's degree in Computer Security or related field, or an additional 5 years of experience in lieu of education.
  • Experience with cyber-risk compliance management systems (e.g., Xacta, RiskVision).
  • At least 1 year assessing vulnerability and compliance in IT infrastructure and applications.
  • Strong technical knowledge of NIST SP 800-53 security controls and their implementation.
  • Familiarity with operating systems and network/application security principles.
  • Active Top-Secret clearance with ability to pass polygraph for SCI access.

Responsibilities

  • Develop and implement compliance practices aligning with customer policies for information systems.
  • Ensure confidentiality, integrity, and availability of systems while working closely with Government customers.
  • Support the planning and development of information systems security programs.
  • Enhance security assessment and authorization processes for infrastructure and applications.
  • Implement and manage IA Policy Directives and Policy Guides in security frameworks.
  • Conduct assessments and manage security tools such as Tenable.io, Nessus Pro, and Nmap.
  • Maintain a robust overall system security posture through ongoing evaluations and enhancements.

Benefits

  • Generous cost sharing for medical insurance for employees and dependents.
  • 100% company-paid dental insurance for employees and dependents.
  • 100% company-paid long-term and short-term disability insurance.
  • 100% company-paid vision insurance for employees and dependents.
  • 401k plan with generous match and immediate 100% vesting.
  • Generous paid leave and holiday package.
  • Tuition and training reimbursement available.
  • Life and AD&D insurance offered.
Full Job Description
AnaVation is looking for a dedicated Information System Security Engineer (ISSE) to join our team. This position is part of a talented technical team responsible for the ongoing development, operations, and maintenance of several networked systems supporting digital forensic investigations. These systems primarily run on Windows and utilize virtual and cloud environments. The ideal candidate must be a self-starter with strong work habits, capable of completing tasks independently while also working effectively as part of a team. Candidates should have demonstrated career experience as an Information System Security Officer (ISSO) or Information System Security Engineer (ISSE) and experience with the Federal Authority to Operate (ATO) process. The ISSE will provide senior-level capabilities in information system security and apply current Information Assurance (IA) technologies to the architecture, design, development, evaluation, and integration of applications, systems, and networks to maintain the overall system security posture. The ISSE will: • Develop compliance and standardization practices aligned with customer policies for various information systems. • Work closely with Government customers to ensure the confidentiality, integrity, and availability of systems, applications, networks, and data. • Support the planning, analysis, development, implementation, maintenance, and enhancement of: • Information systems security programs • Infrastructure and applications • Security Assessment and Authorization (SAA) • IA Policy Directives (PDs) and Policy Guides (PGs) • IA security tools such as Tenable.io, Nessus Pro, Nmap, and related technologies This position is onsite in Huntsville, AL and requires an active Top-Secret clearance and the ability to successfully pass a polygraph and obtain SCI accesses. Required Qualifications: • Ten (10) years of experience performing security requirement analysis, system design, of computer systems. • Bachelor of Science degree in Computer Security or a related field. In lieu of education, an additional five (5) years of experience is required. • Experience in a cyber-risk and compliance management system (e.g., Xacta, RiskVision, etc.) • One (1) year experience or more configuring, performing, scheduling, reviewing, and assessing vulnerability (i.e., patches, updates, etc.) and compliance (i.e., Security Content Automation Protocol (SCAP) and/or Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG)) scans on the infrastructure and applications to ensure patch and configuration • Technical background that will assist in assessing the NIST SP 800-53 security controls and gather evidence to support conclusions • Knowledge of operating systems, network and application security to aid implementation of information security and assurance principle • Knowledge of SPLUNK software and tools. • Active Top-Secret clearance and the ability to successfully pass a polygraph and obtain SCI accesses. Preferred Qualifications: • Deep understanding of AWS and Azure cloud platforms, including cloud security and resource management. • Understanding of AI/LLM technology and use cases (copilot, chatGPT, claude etc) • Security related certification such as: • CompTIA Security+ • CompTIA Advanced Security Practitioner (CASP+) • Cisco Certified Cybersecurity Professional (CCCP) Benefits • Generous cost sharing for medical insurance for the employee and dependents • 100% company paid dental insurance for employees and dependents • 100% company paid long-term and short-term disability insurance • 100% company paid vision insurance for employees and dependents • 401k plan with generous match and 100% immediate vesting • Competitive Pay • Generous paid leave and holiday package • Tuition and training reimbursement • Life and AD&D Insurance

Similar Jobs

More Jobs at AnaVation

More Information Technology Jobs

Find similar Information System Security Engineer (ISSE) jobs: