Information Systems Security Engineer - ISSE

Strategic ASI

$100K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • US Citizen
  • Active TS/SCI Clearance with CI Polygraph eligibility
  • Current or recent DoD SAP access
  • Master's Degree in engineering, computer science, cybersecurity, networking, or programming
  • 7+ years in cybersecurity, IT, or systems engineering
  • Experience with Special Access Programs (SAPs)
  • Strong knowledge of fault tolerance and RMA principles
  • Excellent analytical and communication skills
  • Proficiency in Java, Python, Ruby, and/or C++
  • Linux expertise, preferably with RedHat/RHEL or CentOS
  • Familiarity with DynStatic Application Security Scanning tools
  • Knowledge of virtualization technologies like EC2 and Docker
  • Experience with vulnerability scanning tools like Nessus

Responsibilities

  • Travel up to 25% monthly
  • Collaborate with System Engineering to integrate cyber resiliency into SDLC
  • Develop documentation for security tools and cloud operations
  • Conduct requirements analysis for software applications
  • Assist in change management and security impact assessments
  • Draft implementation documents for security features
  • Create and maintain security documentation and SOPs
  • Monitor compliance with security authorizations

Benefits

  • Opportunity for professional growth in a strategic security role
  • Involvement in significant defense-related projects
  • Potential for advanced technological training and certification
  • Flexible travel opportunities enhancing professional experience
  • Collaborative environment with engineering teams
Full Job Description
Job Description

Strategic ACI is seeking an Information Systems Security Engineer (ISSE) to serve as the Program Office's information security professional responsible for managing all aspects of an organization's information security system, including researching, testing, training, and implementing programs designed to safeguard sensitive information from possible compromise.

Responsibilities:

  • Travel up to 25% a month.
  • Work with System Engineering teams to incorporate cyber resiliency objectives, techniques, and design principles into all system engineering and development efforts throughout the systems development life cycle (SDLC).
  • Develop and maintain documentation and diagrams for security tools, system environments, and cloud operations.
  • Perform requirements analysis, design, and integration for complex software applications and collaboration infrastructures.
  • Participate in the change management process, including reviewing Change Requests and assisting in the assessment of security impact of proposed changes.
  • Write implementation and design documents describing how security features are implemented.
  • Create and maintain information system security documentation, Standard Operating Procedures (SOP), and provide guidance on active Plans of Action and Milestones (POA&M).
  • Conduct periodic and continuous monitoring of the system, procedures, and documentation to ensure compliance with the authorization package.


Qualifications:

Required:

  • US Citizen.
  • Active TS/SCI Clearance, and the ability to pass a CI Polygraph.
  • Current or recent DoD SAP access.
  • Master's Degree in engineering, computer science, cybersecurity, networking, or programming.
  • 7+ years' technical experience in cybersecurity, information technology, or systems engineering.
  • Must have experience working with Special Access Programs (SAPs).
  • Strong proficiency fault tolerance, and Reliability, Maintainability, Availability (RMA) subject matter.
  • Must possess excellent analytical skills and be capable of quantifying risk to enterprise systems and level of compliance with security policy.
  • Excellent communication skills (verbal and written) required.
  • Able to travel up to 25% per month.
  • Advanced knowledge in one or more of the following areas:
    1. Java, Python, Ruby and/or C++
    2. Linux Expertise (RedHat/RHEL or CentOS preferred)
    3. Dynamic & Static Application Security Scanning (e.g., Arachni, OWASP ZAP, BurpSuite, Fortify, Checkmarx, etc.)
    4. Virtualization and containers (EC2, Docker)
    5. Infrastructure Security Scanning, Vulnerability Scanning (Twistlock, ACAS/Nessus)
  • Certification Requirements in one or more of the following:
    1. Certified Information Systems Security Professional (CISSP).
    2. Certified Cloud Security Professional (CCSP).
    3. Information Systems Security Engineering Professional (ISSEP)
    4. DoD Information Technology Security Certification and Accreditation Process (DITSCAP)


DoD Information Assurance Certification and Accreditation Process (DIACAP)

Similar Jobs

More Jobs at Strategic ASI

More Information Technology Jobs

Find similar Information Systems Security Engineer - ISSE jobs: