Information Systems Security Engineer (ISSE)

Systems & Technology Research
Arlington, Virginia, US
Full-time

Information Systems Security Engineer (ISSE)

Arlington, VA

The information below covers the role requirements, expected candidate experience, and accompanying qualifications.

About the Team :

The Security team at STR is comprised of highly skilled professionals who are responsible for maintaining compliance IAW with Government protocol and directives.

The Classified Cybersecurity (CCS) team consists of a collaborative group of ISSM’s, ISSO’s, and ISSE’s who are passionate about national security that take great pride in maintaining confidentiality, integrity, and availability of our systems.

The Role :

STR has an exciting opportunity for an ISSE to function as a key contributor for classified programs Cybersecurity / Risk Management Framework (RMF) posture in accordance with government directives and program requirements.

In this dynamic position you will interface and collaborate with other Cybersecurity professionals (ISSM’s, ISSO’s), Security professionals (CPSO’s, FSO’s), and System Administrators, on overall compliance and configuration change management.

Please note this is not a remote and / or hybrid role and requires you to be onsite.

Responsibilities :

  • Conduct both vulnerability and compliance scans of Information Systems
  • Support the development of Risk Management Framework (RMF) documentation and control validation testing for Authority to Operate (ATO) accreditations
  • Support the development of cybersecurity requirements, design, and architecture
  • Implement Information Assurance and Information Security protections and requirements in program development and execution environments
  • Implement required security controls of networking devices, databases, operating systems, and hardware and software components
  • Review / manage various IA Vulnerability Alerts (IAVA) (i.e., US-CERT, etc.) and overall remediation
  • Assist ISSM’s and ISSO’s in monitoring and resolving Plan of Action and Milestones (POA&M) to mitigate system vulnerabilities
  • Conduct reviews / technical inspections to identify and mitigate potential security weaknesses and ensure that all security features applied to a system are implemented and functional
  • Support completion of Continuous Monitoring requirements IAW RMF and NIST SP800-53 requirements
  • Perform other tasks as assigned by manager

Who you Are :

This position requires an active Top Secret security clearance, with the ability to obtain an SAP and SCI access for which U.

S. citizenship is needed by U.S. Government

  • Two (2) to Five (5) years of technical (hands-on) experience related to Information Assurance / Cyber Engineering requirements, development, and implementation
  • DoD 8570 IAM Level III certification (CISA, CISM, CISSP, etc.) or the ability to obtain within 6 months upon being hired
  • Experience with NIST SP800-53 control implementation and assessment
  • Familiarity with the DCSA Authorization and Assessment Process Manual (DAAPM) and the Joint Special Access Implementation Guide (JSIG)
  • Experience with configuration / certification and auditing / analysis of Windows / Linux operating systems and system virtualization in peer-to-peer, LAN & WAN networks
  • Experience with managing and implementing DISA STIGs and benchmarks in a variety of operations systems (Windows, Linux, Ubuntu)
  • Experience with various IA vulnerability / compliance scanning tools (e.g., NMap, ACAS, Nessus, Security Content Automation Protocol (SCAP)
  • Experience with maintaining / managing Security Incident and Event Management (SIEM) and centralized auditing tools (i.

e., Splunk, PowerStrux)

  • Familiarity with Microsoft Deployment Toolkit (MDT)
  • Support hardening of new builds of Information Systems (IS) and ensure full functionality before deployment
  • Familiarity with Windows and / or Linux scripting
  • McAfee / Trellix ePO administration, to include familiarity with DLP components
  • Detail oriented and self-motivated
  • Ability to effectively prioritize multiple projects
  • Ability to work with people in a team environment and deal effectively with changing project priorities

STR is a growing technology company with locations near Boston, MA, Arlington, VA, near Dayton, OH, Melbourne, FL, and Carlsbad, CA.

We specialize in advanced research and development for defense, intelligence, and national security in : cyber; next generation sensors, radar, sonar, communications, and electronic warfare;

and artificial intelligence algorithms and analytics to make sense of the complexity that is exploding around us.

STR is committed to creating a collaborative learning environment that supports deep technical understanding and recognizes the contributions and achievements of all team members.

Our work is challenging, and we go home at night knowing that we pushed the envelope of technology and made the world safer.

STR is not just any company. Our people, culture, and attitude along with their unique set of skills, experiences, and perspectives put us on a trajectory to change the world.

We can't do it alone, though - we need fellow trailblazers. If you are one, join our team and help to keep our society safe! Visit us at www.str.us for more info.

J-18808-Ljbffr

2 days ago
Related jobs
Promoted
The Aerospace Corporation
Arlington, Virginia

Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM). Master’s or bachelor’s degree in Cybersecurity, Information Systems, Information Technology, or related field. Establish, implement, maintain, and monitor the overall security compliance pos...

Promoted
MITRE
McLean, Virginia

The Operational Engineering Department is seeking a Lead Systems Engineer to support our sponsor’s unique, diverse, and evolving mission needs. Applying systems engineering skills to drive a holistic approach to systems development and design, while remaining flexible and adaptable to evolving spons...

Promoted
Raft
Reston, Virginia

Information Systems Security Manager. Master's degree in Cybersecurity, Information Assurance, Information Technology, or a related field. You will also aid in the design, implementation, and maintenance of the cybersecurity platforms under the purview of the contract in collaboration with customer ...

Promoted
MITRE
McLean, Virginia

MITRE’s End-to-End Systems Engineering Department has a new opportunity for systems engineers with an interest in advancing and applying innovative systems engineering techniques to help solve some of our nation's most critical challenges in delivering services to citizens throughout defense and int...

Promoted
Leidos Inc
Arlington, Virginia

Working with the Facility Security Officer (FSO) develop, implements and manage a formal Information Security / Information Systems Security Program. The Information System Security Manger (ISSM) is the primary IA decision maker and responsible for the management and technical administration of the ...

Promoted
MITRE
McLean, Virginia

Our current work program includes support in the areas of mission engineering, systems engineering, program acquisition and management, sensors and surveillance, communications and networking, digital engineering, cybersecurity, and intelligence. The Border Security Department seeks multiple Intelli...

Promoted
The Swift Group
Vienna, Virginia

Information Systems Security Manager. Certified Information Systems Security Professional (CISSP). The successful candidate will be responsible for proposing, coordinating, implementing, and enforcing information system security policies, instructions, standards, and methodologies. Propose, coordina...

General Dynamics Information Technology
Alexandria, Virginia

Candidate must possess an appropriate and current DoD Information Assurance (IA) Certification to be considered for employment; either valid CompTIA Security+ CE, Systems Security Certified Practitioner (SSCP) or Cisco Certified Network Associate (CCNA)-Security. General Dynamics Information Technol...

UIC
Alexandria, Virginia

Ensure that all users have the requisite security clearances and access authorization, and are aware of their cybersecurity responsibilities for DoD IS systems under their purview before being granted access to those systems and according to the agreed upon Service Level Agreements (SLA). BA/S in Co...

ST2 ManTech Advanced Systems Intl
McLean, Virginia

Cyber Security Engineer/Architect. The officer will partner closely with Information System Security Managers (ISSMs) and Sponsor leadership to document and publish tradecraft exemplars, cyber tips, talking points, standard operating procedures, and official guidance. At ManTech International, you’l...