Information Systems Security Engineer (ISSE)
OverviewWe are seeking a highly skilled Information Systems Security Engineer (ISSE) to design, implement, and maintain security controls across enterprise systems and networks. This role ensures systems are compliant with security requirements while supporting mission-critical operations. The ISSE will work closely with system owners, engineers, and cybersecurity teams to integrate security throughout the system lifecycle.What will you do?Design, implement, and maintain security controls for information systems and networksSupport the Risk Management Framework (RMF) lifecycle, including system categorization, control selection, implementation, assessment, and authorizationConduct security assessments, vulnerability scans, and risk analysisDevelop and maintain system security documentation (SSP, POA&M, SAR, etc.)Ensure systems comply with NIST, RMF, and organizational security policiesCollaborate with ISSOs, system administrators, and developers to remediate vulnerabilitiesSupport continuous monitoring and incident response activitiesImplement and manage security tools (SIEM, IDS/IPS, endpoint protection, etc.)Provide technical guidance on secure system architecture and designStay current on emerging threats, vulnerabilities, and security technologiesDo you have what it takes?Active TS/SCI with Polygraph required.Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience)5+ years of experience in information security, with focus on system security engineeringHands-on experience with RMF and NIST 800-53 controlsExperience developing and maintaining A&A documentation (SSP, POA&M, ATO packages)Knowledge of operating systems (Windows, Linux) and network security principlesExperience with vulnerability scanning tools (ACAS, Nessus, or similar)Familiarity with security tools such as SIEM, firewalls, and endpoint protectionUnderstanding of encryption, identity management, and access control mechanisms