Information Systems Security Engineer 1

Columbia Technology Partners

$80K — $95K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Information Assurance, or related field (4 additional years of experience may substitute)
  • Minimum 7 years of experience as an ISSE or in a related role
  • DoD 8570 IASAE Level II certification (or equivalent)
  • Experience with the Risk Management Framework (RMF), including A&A processes
  • Hands-on experience with RMF tools, NIST 800-53/800-37, vulnerability scanning, STIG implementation, and security control validation

Responsibilities

  • Conduct technical security assessments to identify vulnerabilities, compliance gaps, and risks
  • Define and validate system security requirements and contribute to secure system design
  • Design, develop, and integrate security solutions across networks, systems, and enclave environments
  • Collaborate with systems engineers and architects to incorporate security controls into system architectures
  • Support risk identification, analysis, and mitigation throughout the system lifecycle
  • Participate in RMF-based security planning, Assessment & Authorization (A&A), and system accreditation efforts
  • Develop, maintain, and validate RMF artifacts, including security control traceability and authorization packages

Benefits

  • Collaborative work environment with cross-functional teams
  • Focus on mission-driven security initiatives
  • Opportunities for professional development and training in security best practices
  • Involvement in cutting-edge technology and security systems
  • Engagement in high-impact projects that enhance national security
Full Job Description
Description:

Columbia Technology Partners is seeking an Information Systems Security Engineer 1 to support the design, development, and implementation of secure systems across complex computing and network environments. This role focuses on identifying security risks, ensuring compliance with established standards, and integrating security throughout the system lifecycle.

The ideal candidate will collaborate with engineering teams and stakeholders to embed security into system architecture, support risk management activities, and contribute to system authorization efforts in mission-driven environments.

This position requires hands-on experience with the Risk Management Framework (RMF), system authorization processes, and continuous monitoring activities, including the use of industry-standard RMF and vulnerability management tools.

Key Responsibilities:

  • Conduct technical security assessments to identify vulnerabilities, compliance gaps, and risks
  • Define and validate system security requirements and contribute to secure system design
  • Design, develop, and integrate security solutions across networks, systems, and enclave environments
  • Collaborate with systems engineers and architects to incorporate security controls into system architectures
  • Support risk identification, analysis, and mitigation throughout the system lifecycle
  • Participate in RMF-based security planning, Assessment & Authorization (A&A), and system accreditation efforts
  • Develop, maintain, and validate RMF artifacts, including security control traceability, boundary definitions, and authorization packages
  • Perform security control assessments aligned to NIST SP 800-53 and NIST 800-37
  • Execute continuous monitoring activities, including vulnerability remediation, compliance validation, and reporting
  • Conduct STIG implementation, patch management, and technical validation activities
  • Analyze scan results, perform false positive validation, and ensure timely remediation of findings
  • Utilize RMF and security compliance tools (e.g., XACTA, LATTEART, BISCOTTI, WATCHCAT, STE) to manage authorization data and workflows
  • Review and maintain system security documentation to ensure completeness, accuracy, and audit readiness
  • Support incident handling, auditing, configuration control, and change management processes
  • Work with customers and cross-functional teams to meet operational and security objectives


Qualifications:

  • Bachelor's degree in Computer Science, Information Assurance, or related field (4 additional years of experience may substitute)
  • Minimum 7 years of experience as an ISSE or in a related role
  • DoD 8570 IASAE Level II certification (or equivalent)
  • Experience with the Risk Management Framework (RMF), including A&A processes, ATOs, and continuous monitoring
  • Hands-on experience with RMF tools, NIST 800-53/800-37, vulnerability scanning, STIG implementation, and security control validation


Requirements:
  • U.S. Citizenship is required for all applicants. CTP is an equal opportunity employer and abides by applicable employment laws and regulations. All applicants and employees are subject to random drug testing in accordance with Executive Order 12564. Employment is contingent upon successful completion of a security background investigation and polygraph.
  • Certification Requirements:
    • DOD 8570 IASAE Level II Certification

This position requires an active Security Clearance with appropriate Polygraph.

Similar Jobs

More Jobs at Columbia Technology Partners

More Information Technology Jobs

Find similar Information Systems Security Engineer 1 jobs: