Information System Security Engineer

3 weeks ago


Richmond, United States Logistics Management Institute Full time

Information System Security Engineer (ISSE) - Clearance Required

Logistics Management Institute

With a legacy of solving the government’s most complex challenges and an outcome-driven model to execute above expectation, LMI transforms missions with solutions that define the new speed of possible.

View company page

Army Data and Analytics Platforms (ARDAP) is seeking a Cybersecurity Information Systems Security Engineer (ISSE) to join a team supporting data and analytics platforms for the US Army. The Cybersecurity ISSE will work with a team of cyber, technical, and program subject matter experts to capture and refine information security requirements and ensure their integration into information technology component products and information systems through purposeful security design or configuration. for all programs under the ARDAP Assessment and Authorization (A&A) portfolio. The ISSE will provide subject matter expertise (SME) in the continued research, testing, training, implementation, and continuous monitoring of these enterprise solutions. Work location is client site, Fort Belvoir, VA. Candidates should expect to work at the client site approximately 1 day per week. Responsibilities

Define system security requirements in coordination with security stakeholders including system engineers, program managers, security control assessors, and authorizing officials. Ensure cybersecurity requirements are identified, allocated, implemented, verified, and continuously monitored throughout the system life cycle. Perform Assessment and Authorization (A&A) cybersecurity reviews, identify gaps, and support risk management plans for cybersecurity personnel to execute. Support the Risk Management Framework (RMF) process for each product in the portfolio. Provide SME level cybersecurity engineering support and input to product leads and cybersecurity teams to produce authority to operate (ATO) packages and successfully achieve ATOs. Support interim authority to test (IATT), risk assessment /acceptance, and all other ATO related activities. Interpret security control noncompliance to determine the impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program. Work with product teams to identify controls, develop appropriate mitigations, and develop and track Program of Action and Milestone (POAM) documents to ensure that ATO packages are technically sound before submission to the program cyber staff for review. Track audit findings and recommendations to ensure that appropriate mitigation actions are taken. Support necessary compliance activities (e.g., ensure that system security configuration guidelines are followed, compliance monitoring occurs). Provide independent cybersecurity advice and guidance to government stakeholders and contractor team members. Participate in recurring cybersecurity working group meetings. Develop or review system security designs and architectures. Advise system engineers on the best methods to remediate vulnerability findings through the use of security scanning tools and DoD / Industry best practices. Support cybersecurity engineering analysis of alternatives, tradeoffs, and risk treatment decisions. Develop cybersecurity documentation in support of customer Risk Management Framework (RMF) process; in accordance with NIST SP 800-37 Rev 2. Work with interdisciplinary teams to deliver trustworthy and secure systems. Qualifications

Required: Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field 5 years minimum of system and/or security engineering work performed in support of U.S. Government customers Experience reviewing and developing of RMF Assessment and Authorization (A&A) documentation, e.g., System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POAMs) Must possess and maintain a Secret Security Clearance Experience implementing NIST SP 800-53 Revision 4 security requirements and NIST SP 800-53A security assessment procedures. Knowledge of Cloud (i.e., Azure, Amazon C2S, Commercial and GovCloud) security planning, design, and operations. Ability to explain complex cybersecurity issues to a diverse audience in layman's terms. Experience implementing or assessing cybersecurity solutions using technologies such as:

Nessus, WebInspect, Splunk, Open SCAP Microsoft Windows, Server, Active Directory RedHat Linux; CentOS, Virtualization Platforms: Hyper-V, VMware VDI (Desktop), Citrix

Network engineering/design of LANs, WANs, MANs, including underlying routing protocols, and implementation. (TCP/IP, BGP, OSPF) Knowledge of Cross Domain Solutions (CDS). Experience presenting verbal/written communications to Senior leadership including – Information Systems Security Engineer (ISSM), System Owners, Authorizing officials, and security leads. Experience with systems engineering lifecycle processes. Proven ability to balance priorities in a dynamic, mission-oriented environment. Experience with agile frameworks and Continuous Integration/Continuous Delivery (CI/CD) frameworks such as DevOps or DevSecOps . Experience with cloud

cybersecurity implementations. Familiarity with Army NETCOM RMF review processes (RMF 2.0). Experience with Continuous Monitoring and Continuous Monitoring Risk Scoring (CMRS) DoD 8570 IASAE Level III certification, such CISSP-ISSAP or CISSP-ISSEP or ability to be certified at level III within 6 months of start. Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr



  • Richmond, United States N'compass Full time

    Ncompass, LLC , a Service-Disabled Veteran Owned Small Business (SDVOSB) employing Subject Matter Experts (SMEs) who specialize in the assessment and management of system risk using the National Institute of Standards and Technology (NIST) and Risk Management Framework (RMF) for On-Prem and Cloud-Based systems, is seeking an experienced Information System...


  • Richmond, United States ITCON Services Full time

    ITCON Services is seeking to hire a motivated and knowledgeable Information Systems Security Officer (ISSO) to join our team. The ISSO will work with multiple teams of developers and analysts in a dynamic environment. The ideal candidate should be able to multi-thread work in different customer environments. Required active certification: Certified...


  • Richmond, United States Applied Information Sciences Full time

    As a Senior Information Security Analyst , you are responsible for implementing effective cybersecurity measures, monitoring networks for vulnerabilities, and responding to security breaches. What You'll Be Doing Identifying and assessing the robustness of security systems and designs, as well as the specific operational impacts of cybersecurity lapses, to...


  • Richmond, United States SOUTHEASTERN COMP CONSULTANTS INC Full time

    Job Details Job Location King George, VA Position Type Full Time Job Category Information Technology Overview SCCI is looking for an Information System Security Officer (ISSO) supporting Cybersecurity requirements. This position is in support of our Rapid Development Portfolio customer. The ISSO will work as part of a team to implement security controls and...


  • Richmond, United States IC-CAP, LLC Full time

    **Information System Security Officer 2 ARTH049**??IC-CAP LLC is a Woman Owned / HUBZone Small Business working in the Department of Defense and Intelligence Community. We are always looking for highly talented, energetic, and dynamic professionals that are interested in protecting the defense of our nation.Some of the positions are future positions. Please...


  • Richmond, United States IC-CAP, LLC Full time

    **Information System Security Officer 2 ARTH049** ? ? IC-CAP LLC is a Woman Owned / HUBZone Small Business working in the Department of Defense and Intelligence Community. We are always looking for highly talented, energetic, and dynamic professionals that are interested in protecting the defense of our nation. Some of the positions are future positions....

  • System Engineer

    4 weeks ago


    Richmond, United States Realign LLC Full time

    We are seeking a highly skilled and experienced System Engineer to join our team. The System Engineer will be responsible for designing, implementing, maintaining, and upgrading our organization's systems infrastructure. This role requires a deep understanding of hardware and software systems, as well as the ability to troubleshoot and resolve complex...


  • Richmond, United States System One Holdings, LLC Full time

    6 month Contract to PermanentMust be US Citizen with Interim Top Secret Clearance or aboveLocation: Richmond, KY | Hybrid Must have: Bachelor's Degree in Computer Science, Engineering or any related discipline with 5+ years of overall applicable experience or Associate's Degree with 7+ years of overall applicable experience Responsibilities: Responsible for...


  • Richmond, United States Kinsale Insurance Company Full time

    Are you passionate about information security and technology risk management? Kinsale Insurance has an opening for an Information Security Analyst who will report to the Manager of Information Security and help improve the information security posture of the organization. Create, maintain, communicate, enhance, and monitor security policy, drive information...


  • Richmond, United States Applied Information Sciences Full time

    As a Senior Azure Engineer , you will be responsible for designing, deploying, and managing Microsoft Azure-based solutions. This role requires a strong understanding of Azure technologies and experience implementing complex cloud-based solutions. The senior-level Azure engineer is also responsible for mentoring and assisting in the troubleshooting and...

  • Software Engineer

    3 weeks ago


    Richmond, United States Novel Applications of Vital Information Full time

    Residency Status: ALL Candidates Must Be a U.S. Citizen Clearance: Candidates Must have an Active Secret clearance and the ability to obtain a TS/SCI security clearance. Time Type: Full-Time, Daytime Schedule - Onsite Relocation Fees: No Company Overview: NAOVI is a premier technology services company that provides solutions in the areas of Cyber Security,...


  • Richmond, United States Delphi-US Full time

    Job Title: Information Security Analyst (Contract) - Job#4888Location: Boston, New York, Philadelphia, Cleveland, Richmond, Atlanta, Chicago, St. Louis, Minneapolis, Kansas City, Dallas, or San Francisco Hybrid, 2 days per week US Citizens who can work on W2 Only. Job Description: The Security Control Assessor plays an integral role in ensuring that an...


  • Richmond, United States Delphi-US Full time

    Job Title: Information Security Analyst (Contract) - Job#4888Location: Boston, New York, Philadelphia, Cleveland, Richmond, Atlanta, Chicago, St. Louis, Minneapolis, Kansas City, Dallas, or San Francisco Hybrid, 2 days per week US Citizens who can work on W2 Only. Job Description: The Security Control Assessor plays an integral role in ensuring that an...


  • Richmond, United States By Light Professional IT Services Full time

    Overview By Light Professional IT Services (By Light) are leading providers of innovative Information Technology (IT) services and communications support to the Department of Defense and Federal Agencies. By Light is looking for personnel to support a U.S. Army information technology infrastructure program. The project includes conducting survey and design,...


  • Richmond, United States Ageatia Global Solutions Full time

    Performs complex analysis of business issues utilizing established methodology and tools within information security areas. 2) Works with the clients and other resources to assess current capabilities, identify customer needs and recommends business process improvements within information security areas. 3) Provides some complex support and collaboration in...


  • Richmond, United States Ageatia Global Solutions Full time

    Performs complex analysis of business issues utilizing established methodology and tools within information security areas. 2) Works with the clients and other resources to assess current capabilities, identify customer needs and recommends business process improvements within information security areas. 3) Provides some complex support and collaboration in...


  • Richmond, United States Sebastian Tech Solutions Full time

    MUST BE US CITIZENMUST HAVE TOP SECRET CLEARANCE (OR INTERIM TOP SECRET CLEARANCE)WILLING TO ENTERTAIN CANDIDATES WHO WOULD BE INTERESTED IN RELOCATING TO THIS AREA STS is seeking a highly motivated, self-directed individual to fill the role of a Cyber Security Systems Designer. The selected individual will join a collaborative team environment where they...


  • Richmond, United States Sebastian Tech Solutions Full time

    MUST BE US CITIZENMUST HAVE TOP SECRET CLEARANCE (OR INTERIM TOP SECRET CLEARANCE)WILLING TO ENTERTAIN CANDIDATES WHO WOULD BE INTERESTED IN RELOCATING TO THIS AREA STS is seeking a highly motivated, self-directed individual to fill the role of a Cyber Security Systems Designer. The selected individual will join a collaborative team environment where they...


  • Richmond, United States Sebastian Tech Solutions Full time

    MUST BE US CITIZENMUST HAVE TOP SECRET CLEARANCE (OR INTERIM TOP SECRET CLEARANCE)WILLING TO ENTERTAIN CANDIDATES WHO WOULD BE INTERESTED IN RELOCATING TO THIS AREA STS is seeking a highly motivated, self-directed individual to fill the role of a Cyber Security Systems Designer. The selected individual will join a collaborative team environment where they...


  • Richmond, United States Sebastian Tech Solutions Full time

    MUST BE US CITIZEN MUST HAVE TOP SECRET CLEARANCE (OR INTERIM TOP SECRET CLEARANCE) WILLING TO ENTERTAIN CANDIDATES WHO WOULD BE INTERESTED IN RELOCATING TO THIS AREA STS is seeking a highly motivated, self-directed individual to fill the role of a Cyber Security Systems Designer. The selected individual will join a collaborative team environment where they...