ISSE

4 weeks ago


Eldersburg MD USA, United States Merit 321 Full time
Position: ISSE

Location: Columbia, MD (Hybrid)

Clearance: Current active Secret Clearance

Summary

We are looking for an Information Systems Security Engineer (ISSE). Candidate will perform system or network designs that encompass multiple enclaves, to include those with differing data protection/classification requirements. The candidate should understand distributed architectures and cloud-based systems for big data applications.

Essential Job Responsibilities

  • Will create, review, and edit authorization documentation for completeness and accuracy in accordance with federal and DoD policy.
  • Thoroughly understand and be able to implement DoD RMF system accreditation processes.
  • Assess use case and operational risk of integrated open source, and GOTS/COTS software components.
  • Will use vulnerability management systems, automated security scanning tools, and system accreditation record systems.
  • Must be able to grasp new concepts, facilitate information exchanges for data gathering, and collaborate with diverse audiences.
  • Will follow established processes where applicable, and establish and execute defensible processes where none are prescribed.
  • Provide security planning, assessment, risk analysis, and risk management support.
  • Recommend system-level solutions to resolve security requirements and guide the development team in meeting the security posture requirements.
  • Support the Government in the enforcement of the design and implementation of trusted relationships among external systems and architectures.
  • Must apply existing knowledge of IA policy, procedures, and workforce structure to design, develop, and implement secure networking, computing, and enclave environments.
  • Must be able to interact well with others to complete work.


Minimum Qualifications


  • 5+ years of experience as an ISSE with large multi-tiered programs and Bachelors in related field; OR 3 years relevant experience with Masters in related field; OR High School Diploma or equivalent and 11 years relevant experience.
  • Experience implementing DoD system accreditation processes (DIACAP acceptable and RMF preferred).
  • A working knowledge of TCP/IP suite of protocols and services, computer architectures, and network topologies is required.
  • Experience with DISA STIGs and SRGs, vulnerability management systems, mitigation and compliance processes, and reviewing results from automated security scanning tools.
  • DoD 8570 compliance with IAT Level II (SSCP, Security+ CE, CCNA-Security, or GSEC certification) is required.
  • Computing Environment certification is required.


Desired Skills (Optional)


  • CISSP-ISSEP is highly desired


EEO

It is the policy of Merit321 to provide equal opportunity in recruiting, hiring, training, and promoting individuals in all job categories without regard to race, color, religion, national origin, gender, age, disability, genetic information, veteran status, sexual orientation, gender identity, or any other protected class or category as may be defined by federal, state, or local laws or regulations. recruiting, hiring, training, and promoting individuals in all job categories without regard to race, color, religion, national origin, gender, age, disability, genetic information, veteran status, sexual orientation, gender identity, or any other protected class or category as may be defined by federal, state, or local laws or regulations.

  • Bethesda, MD, United States Omnyon Full time

    Job Description Required Skills •Ensure security policies and procedures are implemented •Experience with gaining an ATO for systems and working the systems through the assessment and authorization process •Experience with vulnerability scanning tools to include Nessus, AppDetective, WebInspect and other vulnerability scanning tools •Strong...


  • Lexington Park, MD, United States Booz Allen Full time

    Information Security Risk Specialist, SeniorThe Opportunity:Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the DoD. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is an information security risk...