KBR, Inc

Information System Security Engineer (ISSE)

KBR, Inc$108K — $163K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Top Secret clearance with SCI is mandatory
  • DoD 8570.1-M/8140 IAT Level III certification required (SecurityX (CASP), GCIH, CISA, CISSP)
  • Extensive networking experience (TCP/IP, firewalls, VPNs) and cloud security knowledge (AWS/Azure)
  • Expertise in compliance frameworks (NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria)
  • Hands-on management of security tools (Tenable Nessus, CyberArk, Trellix, Splunk)
  • Scripting proficiency (PowerShell, Python, Bash) for automation tasks
  • Demonstrated leadership experience mentoring junior ISSEs

Responsibilities

  • Design and maintain security architecture per NIST RMF and DoD STIGs
  • Conduct security engineering throughout the system development lifecycle
  • Implement vulnerability management using Tenable Nessus and other tools
  • Integrate cybersecurity into various infrastructure environments
  • Analyze security logs for incident response and forensics
  • Automate security processes through scripting
  • Collaborate with teams to remediate security issues and implement configurations

Benefits

  • On-site work environment located in Annapolis Junction, MD
  • Minimal travel required
  • Standard working hours
  • Professional development opportunities through training and mentoring
  • Potential eligibility for signing bonuses and relocation assistance
Full Job Description
Title:
Information System Security Engineer (ISSE)

Responsibilities:
  • Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies
  • Perform security engineering activities across system development lifecycle (SDLC), including requirements analysis, system design reviews, security testing, and accreditation support
  • Implement vulnerability management processes utilizing Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate system vulnerabilities
  • Integrate cybersecurity requirements into Windows and Linux server environments, cloud infrastructure, virtualization platforms, and containerized applications
  • Support incident response and forensic investigations by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise
  • Develop automation scripts using PowerShell, Bash, and Python to streamline vulnerability remediation, account auditing, compliance reporting, and security monitoring tasks
  • Collaborate with system administrators, network engineers, ISSOs, and application teams to remediate security findings and implement secure configuration baselines
  • Perform security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure continued compliance and operational security
  • Engineer endpoint protection and hardening solutions utilizing Trellix ePO - On-prem, host-based firewalls, and application whitelisting technologies
  • Evaluate and implement cybersecurity tools and technologies to improve system security posture, continuous monitoring, and threat detection capabilities
  • Produce technical security documentation, architecture diagrams, standard operating procedures (SOPs), and executive-level risk assessment reports
  • Experience administrating, configuring, and troubleshooting core modules such as Enterprise Password Vault (EPV), Password Vault Web Access (PVWA), Central Policy Manager (CPM), and Privileged Session Manager (PSM) in CyberArk
  • Monitor, analyze, and detect cyber events and incidents within information systems and networks under general supervision
  • Assist with integrated, dynamic cyber defense, coordinate and maintain security toolsets to support organizations' continuous monitoring and ongoing authorization programs
  • Establish a framework by which cyber risk can be measured and quantified in the marketplace
  • Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates
  • Implement security systems by specifying intrusion detection methodologies and equipment; directing equipment and software installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation. Verify security systems by developing and implementing test scripts
  • Maintain security by monitoring and ensuring compliance to standards, policies, and procedures; conducting incident response analyses; developing and conducting training programs
  • Responsible for the design, development, implementation, and integration of a DoD IA architectures, systems, or system components for use within computing, network, and enclave environments
  • Ensure that the architecture and design of development and operational systems are functional and secure
  • This includes designs for program of record systems and special purpose processing nodes with platform IT interconnectivity


Work Environment:
  • Location: On-Site - 540 National Business Parkway, Annapolis Junction, MD
  • Travel Requirements: Minimal
  • Working Hours: Standard


Minimum Qualifications:
  • Requires Top Secret clearance with SCI
  • Must have a DoD 8570.1-M/8140 IAT Level III certification (SecurityX (CASP), GCIH, CISA, CISSP) compliant
  • Strong background in networking (TCP/IP, firewalls, VPNs), cloud security (AWS/Azure), Kubernetes, and DevSecOps
  • Deep understanding of NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria, ATO package development, and cybersecurity compliance (STIGs)
  • Hands-on experience managing and deploying Tenable Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, GitLab, Microsoft Windows Server, Red Hat Enterprise Linux and Ubuntu Linux
  • Experience with scripting and automation with Powershell, Python, Bash and Ansible
  • Proven experience in leading projects and mentoring junior ISSE's
  • Present technical briefings to leadership


Basic Compensation:$108,800 - $163,200 (This range is for Washington, DC only)

The offered rate will be based on the selected candidate's knowledge, skills, abilities and/or experience and in consideration of internal parity.

Additional Compensation:

KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short-term incentives, long-term incentives, or discretionary payments for exceptional performance.

About KBR, Inc

KBR, Inc is an American engineering, procurement, and construction company headquartered in Houston, Texas. The company provides services to customers in the energy, chemical, and government sectors, among others. KBR has a global presence, with operations in over 40 countries. The company was founded in 1901 as M.W. Kellogg Company and has undergone several name changes and mergers since then. KBR is committed to delivering innovative and sustainable solutions to its customers while also being a responsible corporate citizen.
Learn more about KBR, Inc
Size
28,000 employees
Market Cap
$7.1 billion
Industry
Net Income
-$72 million
Founded
1919
5 Year Trend
+11.5%
Revenue
$5.7 billion
NASDAQ

Similar Jobs

More Jobs at KBR, Inc

More Information Technology Jobs

Find similar Information System Security Engineer (ISSE) jobs: