Full Job Description
AnaVation is seeking a highly motivated Information Systems Security Engineer(ISSE) to support a high-visible contract and will be responsible for delivering cybersecurity engineering, secure software development, DevSecOps integration, and Risk Management Framework (RMF) implementation across Department of Defense. The ISSE will serve as an embedded cybersecurity engineer working alongside Government engineers, Cyber Operations Teams (COT), Cyber Penetration Teams (CPT), software developers, cloud engineers, and DevSecOps personnel to engineer, implement, automate, and continuously improve cybersecurity controls supporting mission applications and cloud services. This position supports secure capability delivery across multiple value streams and classification levels while enabling Continuous Authority to Operate (cATO), Zero Trust, and cloud-native cybersecurity initiatives.
Position Responsibilities: The Information Systems Security Engineer (ISSE) provides cybersecurity engineering expertise throughout the system development lifecycle by designing, implementing, testing, and sustaining security controls that enable secure software delivery within agile and DevSecOps environments.
Responsibilities include:
Integrate cybersecurity requirements into cloud-native applications, Kubernetes/OpenShift platforms, CI/CD pipelines, and containerized workloads throughout the software development lifecycle.
Engineer and implement security controls supporting Risk Management Framework (RMF) authorization, Continuous Authority to Operate (cATO), and continuous monitoring objectives.
Identify, assess, and remediate cybersecurity vulnerabilities through vulnerability management, security engineering, and technical risk mitigation activities.
Design and implement Zero Trust security architectures, container hardening, and cloud security best practices across mission environments.
Collaborate daily with Government leadership, Cyber Operations Teams (COT), Cyber Penetration Teams (CPT), software developers, cloud engineers, and cybersecurity assessors to integrate security into Agile and DevSecOps workflows.
Support cybersecurity assessments, penetration testing, security control validation, and remediation of assessment findings.
Implement and maintain Security Technical Implementation Guides (STIGs), security baselines, and secure configuration standards across development, testing, staging, production, and classified environments.
Evaluate cybersecurity risks and develop technical security solutions that balance mission requirements with enterprise security objectives.
Implement cybersecurity automation, improving engineering efficiencies, and strengthening the overall security posture.
Enable the delivery of resilient, mission-ready software capabilities that support secure operations and accelerate capability delivery to the warfighter.
Serve as the cybersecurity lead supporting all contract value streams.
Required Qualifications:
Clearance: U.S. Citizen, TS/SCI cleared within last 2 years; CI Polygraph within last 5 years
Education: Bachelor's degree in Cybersecurity, Computer Science, Engineering, Information Technology, or related field
Certification: One or more of the following: CISSP, CCSP, AWS Security Specialty or Equivalent DoD 8140 certification
Location: Full-time on-site in San Antonio, TX.
Experience and knowledge:
Nine or more years supporting Department of Defense or Intelligence Community cybersecurity missions.
Nine or more years of cybersecurity engineering, information assurance, RMF, DevSecOps, or cloud security experience.
Experience implementing cybersecurity controls within cloud-native or containerized environments.
Experience supporting RMF implementation and security engineering activities.
Working knowledge of NIST SP 800-53, RMF, STIG implementation, vulnerability management, and continuous monitoring.
Experience integrating cybersecurity into Agile software development environments.
Experience supporting Kubernetes, OpenShift, containers, or cloud platforms.
Excellent written and verbal communication skills.
Ability to work collaboratively across multidisciplinary engineering teams.
Preferred Qualifications:
Clearance: TS/SCI w/CI Poly
Education: Advanced degree in Cybersecurity, Computer Science, Engineering, Information Assurance, or related field.
Certification: One or more of the following: CISSP, Sec+, CASP, CySA, Certified Cloud Security Professional (CCSP).
Experience an Knowledge:
Nine or more years supporting DoD cybersecurity engineering missions.
Experience implementing Zero Trust architectures.
Experience supporting Continuous Authority to Operate (cATO).
Experience securing Kubernetes, OpenShift, containers, or cloud-native platforms.
Experience implementing DevSecOps security automation and Infrastructure-as-Code.
Experience supporting IL4/IL5/IL6 cloud environments.
Experience supporting Cyber Operations Teams or penetration testing organizations.
Experience supporting software factory environments across multiple security domains.
Benefits
Generous cost sharing for medical insurance for the employee and dependents
100% company paid dental insurance for employees and dependents
100% company paid long-term and short-term disability insurance
100% company paid vision insurance for employees and dependents
401k plan with generous match and 100% immediate vesting
Competitive Pay
Generous paid leave and holiday package
Tuition and training reimbursement
Life and AD&D Insurance