Information Systems Security Engineer

Markon, LLC.

$215K — $225K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active TS/SCI w/ Polygraph with this Customer
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or related discipline
  • CISSP certification required
  • Experience performing security engineering and cybersecurity assessments of Government information systems
  • Strong understanding of ICD 503, RMF, A&A processes, and Government cybersecurity policies
  • Experience with RMF tools like Xacta, LatteArt, or comparable platforms
  • Experience with vulnerability assessments using Nessus and other security scanning technologies
  • Strong familiarity with Linux operating systems and AWS/Azure security services.

Responsibilities

  • Assess IT architectures for compliance with cybersecurity and security frameworks
  • Develop and maintain information security policies and technical guidance
  • Support Assessment and Authorization (A&A) activities and security documentation
  • Create security-related artifacts such as system designs and operational procedures
  • Provide security engineering support for authorization and evaluation
  • Perform continuous monitoring of systems and evaluate changes impacting security
  • Develop security architecture deliverables and define technical countermeasures

Benefits

  • Comprehensive health and wellness programs
  • Professional development opportunities
  • Flexible work schedule options
  • Retirement savings plans
  • Work-life balance initiatives
Full Job Description
Description

Markon is seeking an experienced Information Systems Security Engineer (ISSE) to support the Fort Meade customer by providing cybersecurity engineering expertise for mission-critical systems supporting the Cyber Threat Intelligence (CTI) mission. This role evaluates system and cloud architectures, develops security requirements and technical documentation, supports authorization activities, and identifies and mitigates vulnerabilities across classified and unclassified environments. The ISSE will work closely with systems engineers, security teams, and Government stakeholders to integrate cybersecurity throughout the system lifecycle and ensure compliance with applicable Intelligence Community security requirements.

Responsibilities
  • Assess existing and proposed IT architectures for compliance with cybersecurity requirements and applicable security frameworks, including ICD 503.
  • Develop and maintain information security policies, standards, procedures, and technical guidance.
  • Support Assessment and Authorization (A&A) activities and development of associated security documentation.
  • Develop and review security-related artifacts, including system security designs, Concepts of Operations (CONOPS), implementation plans, operational procedures, and system documentation.
  • Provide security engineering support for authorization, accreditation, test, and evaluation activities.
  • Perform continuous monitoring of information systems and evaluate changes that may impact system security or authorization.
  • Develop security architecture deliverables and define technical countermeasures for operational systems and systems under development.
  • Evaluate proposed system and cloud security architectures to determine whether designs satisfy cybersecurity and compliance requirements.
  • Identify, document, track, and support remediation of system vulnerabilities throughout the system lifecycle.
  • Perform and analyze vulnerability scans using Nessus and other cybersecurity assessment tools.
  • Apply Risk Management Framework (RMF) processes to evaluate security controls, document risk, and support system authorization.
  • Collaborate with systems engineers, developers, cloud engineers, and security personnel to integrate security requirements into system designs.
  • Provide cybersecurity recommendations and communicate technical risks to both engineering teams and executive stakeholders.
Qualifications

Required Qualifications

  • Active TS/SCI w/ Polygraph with this Customer.
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related technical discipline and the required experience for the SE5 labor category.
  • CISSP certification required.
  • Experience performing security engineering and cybersecurity assessments of Government information systems.
  • Strong understanding of ICD 503, Risk Management Framework (RMF), A&A processes, and Government cybersecurity policies and procedures.
  • Experience with customer RMF processes and tools such as Xacta, LatteArt, or comparable platforms.
  • Experience performing vulnerability assessments using Nessus and other security scanning technologies.
  • Strong understanding of Linux-based operating systems and associated security principles.
  • Strong understanding of AWS and Azure cloud environments and associated security services.
  • Experience evaluating system architectures, security designs, controls, and technical countermeasures.
  • Experience supporting continuous monitoring, vulnerability management, and remediation activities.
  • Strong understanding of information security principles, security controls, and risk assessment methodologies.
  • Excellent written and verbal communication skills with the ability to communicate technical cybersecurity concepts to both executive and technical audiences.

Desired Qualifications

  • Experience supporting Cyber Threat Intelligence or cybersecurity missions within the Intelligence Community.
  • Experience integrating cybersecurity requirements throughout the systems engineering lifecycle.
  • Experience securing classified and unclassified cloud environments.
  • Knowledge of cloud-native security controls, identity and access management, logging, monitoring, and vulnerability management.
  • Experience developing security architecture documentation and engineering artifacts for complex enterprise systems.
  • Experience working directly with Authorizing Officials, security control assessors, ISSOs, ISSMs, and systems engineering teams.
Salary RangeUSD $215,000.00 - USD $225,000.00 /Yr.The Markon pay range for this position is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Similar Jobs

More Jobs at Markon, LLC.

  • Cyber Policy & Strategy Analyst
    $130K — $220K *
    Arlington, VA 22204 (Arlington County)
    Aerospace & Defense
    In-Person
  • Sr. Systems Engineer
    $210K — $225K *
    Columbia, MD 21044 (Howard County)
    Aerospace & Defense
    In-Person
  • Acquisition Lead (Cyber)
    $130K — $220K *
    Arlington, VA 22204 (Arlington County)
    Aerospace & Defense
    In-Person
  • Cyber Budget Analyst
    $130K — $220K *
    Arlington, VA 22204 (Arlington County)
    Education, Government & Non-Profit
    In-Person
  • Systems Engineer (Cyber)
    $130K — $220K *
    Arlington, VA 22204 (Arlington County)
    Aerospace & Defense
    In-Person

More Information Technology Jobs

Find similar Information Systems Security Engineer jobs: