Information Systems Security Engineer
Overview
In this role you will design, implement, and integrate secure IS/IA architectures across enterprise systems. You will ensure information assurance is functional and robust, aligning security design with applicable policies. You will work with stakeholders to define security requirements and support certification activities. This position offers impact through shaping secure systems within a large, global IT services organization. You will collaborate with cross-functional teams to deliver secure, compliant solutions at scale.
ResponsibilitiesEnsure cybersecurity solutions meet all required cybersecurity requirements identified by the Authorizing OfficialDesign and implement security features and safeguards per DOJ and Component policiesUpgrade information systems while preserving or enhancing cybersecurity effectivenessFollow applicable policies, standards, and directives for cybersecurityIdentify information systems cybersecurity requirementsDevelop and implement information system security designSupport Security Authorization documentation for Information System OwnerConduct cybersecurity reviews for system integration and testingAssist in initial Risk Assessment during Concept DevelopmentAssist in certification test planning and observe testing on behalf of ISSOCoordinate cybersecurity issues with the ISSO and notify of changes affecting security design
Key requirementsBachelor's degree in Computer Information Systems, Computer Science, Information Systems Management, Systems Engineering or related fieldMinimum of eight (8) years of relevant ISSE experienceActive Secret clearance with ability to obtain Top Secret if requiredDoD IAM/IAT/IASAE or CSSP Levels II or III certificates may substitute for experienceCSSLP, CASP, CEH; CISA; CISM (CISSP-ISSAP/ISSEP/ISSMP); GIAC certifications (GISF, GCED, GISP)Active Secret clearance; Top Secret eligibilitySecurity certification: CISSP-ISSAP/ISSEP/ISSMP; CISA; CISM; GIAC certifications (GISF, GCED, GISP)CSSLP, CASP, CEHDOJ and Component cybersecurity policies