SAIC

Information Systems Security Engineer (ISSE) Architect

SAIC$110K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in a related field plus 2-9 years of experience, or a Master's degree with 0-7 years, or a High School diploma with 6-13 years of experience.
  • Must meet Cybersecurity Workforce Framework (CWF) ID 652 or 633 requirements with relevant certifications.
  • 2-5 years managing and supporting enterprise-level IT environments.
  • Strong understanding of security architecture and engineering principles.
  • Experience with security documentation like SSPs and security diagrams.

Responsibilities

  • Design and engineer secure system architectures, integrating RMF and mission requirements.
  • Translate security requirements into technical specifications and design artifacts.
  • Select, implement, and validate security controls and mitigations.
  • Embed security across the full system lifecycle from requirements to sustainment.
  • Conduct risk assessments, threat modeling, and vulnerability analysis to recommend mitigations.

Benefits

  • Supports on-premises enterprise IT environments.
  • Opportunity for collaboration across diverse technical teams.
  • Access to cutting-edge cybersecurity frameworks and standards.
  • Engagement in mission-critical projects with federal security requirements.
  • On-site work provides direct involvement in system security integration.
Full Job Description
Job Description

SAIC is seeking an experienced Information Systems Security Engineer (ISSE) to support the MAJESTIC Joint Program Office (JPO) by performing advanced security engineering and architectural design for mission-critical IT systems.

In this role, the ISSE will lead the design, development, implementation, and validation of security architectures, ensuring all security controls are integrated into system engineering processes across the full lifecycle-from requirements development to deployment and sustainment.

The ISSE will collaborate closely with program leadership, system owners, developers, ISSMs/ISSOs, enterprise architects, and cybersecurity operations teams to ensure systems meet federal security requirements, including NIST 800-53, RMF, and customer-specific A&A frameworks such as ICD 503 and DAAPM.

This role requires on-site support in Springfield, VA.

Key Responsibilities:
  • Design and engineer secure system architectures, integrating RMF and mission requirements.
  • Translate security requirements into technical specifications, models, and design artifacts.
  • Select, implement, and validate security controls and technical mitigations.
  • Integrate security into system diagrams, data flows, and high-/low-level designs.
  • Engineer core security solutions (boundary protection, encryption, IAM, auditing, secure configs).
  • Embed security across the full system lifecycle-requirements through sustainment.
  • Develop and maintain A&A documentation and support ATO evidence.
  • Test and verify security controls across applications, platforms, and networks.
  • Conduct risk assessments, threat modeling, and vulnerability analysis; recommend mitigations.
  • Assess security impacts of system changes, upgrades, and new integrations.
  • Apply DISA STIGs, CIS Benchmarks, and maintain hardened configuration baselines.
  • Design monitoring architectures for SIEM, detection rules, and audit/log collection.
  • Support incident response with architectural forensics and remediation guidance.
  • Collaborate with developers, integrators, administrators, and cybersecurity teams.
  • Present security engineering findings and architecture recommendations to leadership.
  • Produce technical documentation, diagrams, reports, SOPs, and design artifacts.


Qualifications

Education:
  • Bachelors degree in related field and 2-9+ years of experience OR;
  • Masters degree in related field and 0-7+ years of experience OR;
  • High School diploma or equivalent and 6-13+ years of experience.

Certifications (CWF Requirements):
  • Candidates must satisfy Cybersecurity Workforce Framework (CWF) ID 652 (Security Architect, Intermediate Level) or 633 (System Security Engineer, Intermediate Level) requirements, as outlined by Navy COOL.
    This requirement can be met by possessing one or more of the following qualifying certifications:
  • Certified Cloud Security Professional (CCSP).
  • Certified Information Systems Security Officer (C)ISSO-A).
  • Certified Secure Software Lifecycle Professional (CSSLP).
  • CompTIA Cloud+.
  • CompTIA SecurityX (formerly CASP+).
  • Federal IT Security Professional-Designer-NG (FITSP-D).
  • GIAC Cloud Security Automation (GCSA).
  • GIAC Continuous Monitoring Certification (GMON).
  • GIAC Security Essentials Certification (GSEC).

OR This requirement can be met through:
  • A Bachelor's Degree in Cybersecurity, Computer Science, IT, or a related field.

Experience:
  • 2-5 years of professional experience managing and supporting enterprise-level IT environments.

Technical Skills:
  • Strong understanding of security architecture, secure system design, and engineering principles.
  • Experience developing SSPs, security diagrams, interface documentation, and control implementation descriptions.
  • Proficiency with vulnerability scanning tools (Nessus, ACAS, Qualys) and technical analysis platforms.
  • Knowledge of DISA STIGs, CIS Benchmarks, and secure configuration/hardening standards.
  • Familiarity with SIEM platforms (Splunk, SolarWinds) and enterprise monitoring architectures.
  • Understanding of Windows Server, Active Directory security, RHEL, and network security concepts (TCP/IP, VLANs, IPsec, firewalls).
  • Experience conducting technical risk assessments and generating architecture-level recommendations.
  • High-quality technical writing and documentation skills for engineering artifacts and audit evidence.

Clearance Requirement:
  • Active TS/SCI clearance with the ability to obtain and maintain a TS/SCI with CI Poly.

Work Environment and Notes:
  • On-Site Work: All work must be conducted on-site in Springfield, VA.
  • Program Scope: Supports on-premises enterprise IT environments, including virtualized Windows servers, MS SQL Server databases, and networking layers.
  • Subcontractor Role: Responsibilities and compensation vary based on the subcontract agreement, with a competitive salary aligned to market rates and role-specific requirements.


About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

More Information Technology Jobs

Find similar Information Systems Security Engineer (ISSE) Architect jobs: