Information Systems Security Engineer (ISSE)
$135,000–$216,000 year
On-siteLinthicum, Maryland, United States
Job Summary
Conduct log review and analysis using SIEM tools to determine appropriate actions, while performing vulnerability analysis on ACAS scans and ensuring DISA STIG compliance. Design, implement, and evaluate security requirements for computer systems and networks, coordinating activities with system leads, ISSOs, and program managers. Lead technical aspects of internal security audits and investigations, assessing risks and providing mitigation recommendations to stakeholders. Ensure compliance with government regulations and industry standards while integrating security requirements throughout the development process using DevOps and SecOps methodologies.
Required Qualifications
- Experience working with software developers and architects to understand security requirements
- Experience guiding application developers on security policy, identifying security requirements, providing technical guidance for the satisfaction of requirements
- DISA STIGs and STIG Viewer experience
- Hands-on experience in developing and validating control implementations and test procedures
- Knowledge of current security risks and protocols
- Active IAT Level II certification (CompTIA Security+ preferred)
- Security Clearance: Active Top Secret with SCI eligibility
- Bachelor's degree and 8+ years of experience, or Master's Degree and 6+ years of experience, or 3 years with PhD
- A degree in one of the following fields of study: Information Technology, Computer Science, Cybersecurity, Information Systems, Software Engineering, or Data Science
- An additional 4 years of relevant experience or specialized training in lieu of Bachelor's degree
Desired Qualifications
- Certifications: CASP+, CISM, CISSP-ISSAP, CISSP-ISSMP, FITSP-D, GCIA, GCSA, GICSP, GSEC, GDSA, GICSP, GMON, CCSP, CISSO, Cloud+, or CSSLP
- Experience transitioning from RMF v4 to v5
- Basic understanding of identity and access management system capabilities and configuration
- Experience with cloud computing platforms such as AWS and Azure
- Experience with TASKORDS, OPORDS, etc.
- Experience leading Cybersecurity (ISSO & ISSE) teams
- Experience working with Redhat or CentOS Linux operating systems
- Experience working in a DevSecOps
- Creating and using security tools and processes for scanning, testing, monitoring, and reporting
- Experience in planning and overseeing configuration changes for major applications across multiple networks
- Good analytic and problem-solving skills
- A degree in one of the following fields of study: Information Technology, Computer Science, Cybersecurity, Information Systems, Software Engineering, or Data Science
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.