Information Systems Security Engineer (ISSE), SME

NavstarColumbia, MD
158d$175,000 - $275,000

About The Position

The Senior ISSE shall deliver and lead threat-informed cybersecurity products - cybersecurity risk assessments, architecture reviews, and engineering guidance that bring sound, accurate, timely, and actionable service to mission partners. This includes conducting cybersecurity risk assessments and providing prioritized risk mitigation recommendations in support of the customer's mission. The role supports the design, implementation, and operation of real-time capabilities to discover, detect, analyze, and mitigate threats and vulnerabilities. The Senior ISSE will analyze candidate architectures by evaluating against defined security requirements to identify security gaps and provide recommended mitigation strategies. Additionally, the role involves researching and evaluating candidate emerging technologies to determine cybersecurity effectiveness, aiding stakeholders through the development, refinement, delivery, and implementation of innovative solutions and capabilities, and engaging stakeholders to ensure security objectives, protection needs, security requirements, and associated validation methods are defined. The Senior ISSE will validate and verify system security requirements definitions and analysis and establish system security design, design, develop, implement and/or integrate IA and security systems and system components including those for networking, computing and enclave environment to include those with multiple enclaves and with differing data protection/classification requirements. The role also assists architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of Agency security policy and enterprise solutions, contributes to the security planning, assessment, risk analysis, risk management, certification and awareness activities for system and networking operations, and reviews C&A documentation, providing feedback on completeness and compliance of its content.

Requirements

  • Active TS/SCI clearance with Polygraph.
  • Bachelor of Science degree in Computer Science, Information Assurance, Information Security System Engineering or related field.
  • Minimum of 20 years of experience as an Information Systems Security Engineer (ISSE) or System Engineer.
  • CISSP OR CASP certification required.
  • Strong writing skills.
  • Ability to present briefings to senior level DoD officials.
  • Expertise in the Risk Management Framework (RMF) and conducting cybersecurity risk assessments.
  • Expertise in network technology and systems security engineering.
  • Experience in identifying, researching, characterizing, and documenting security weaknesses.
  • Experience developing and documenting system security requirements and conducting requirements gap analysis.
  • Experience with security monitoring and incident response capabilities.
  • Experience with emerging technologies such as Zero Trust and Cloud Computing.
  • Knowledge of NIST Special Publications 800 Series, CNSSI 1253, and DoD 8500.
  • Ability to work independently within a schedule and with little direction.

Nice To Haves

  • Experience with JEE (EJB, JPA, JTA, JAX-B, JAX-RS, JAX-WS), SQL, application servers (Tomcat, WebLogic, JBoss), scripting.
  • Experience with high level requirements management including requirements decomposition, secure systems engineering and development.
  • Experience in software development on Agile teams using Agile Developer practices.
  • Experience with FITNesse, Mockito, Cucumber, Unified Functional Tester (UFT), Selenium.
  • Experience with Behavior Driven Development (BDD).
  • Secure Software development (i.e., Layer 7 Policy).
  • Experience with the Scaled Agile Framework (SAFe) methodology, SAFe Agilest Certification, or experience as a member of an agile team.
  • Additional experience in J2EE, Python, C/C++, SQL, SOAP, WSDL, Postgres, Oracle, Mongo, PowerShell.

Responsibilities

  • Conduct cybersecurity risk assessments and provide prioritized risk mitigation recommendations.
  • Support the design, implementation, and operation of real-time capabilities to discover, detect, analyze, and mitigate threats and vulnerabilities.
  • Analyze candidate architectures against defined security requirements to identify security gaps.
  • Research and evaluate candidate emerging technologies for cybersecurity effectiveness.
  • Aid stakeholders in the development, refinement, delivery, and implementation of innovative solutions.
  • Engage stakeholders to define security objectives, protection needs, and validation methods.
  • Validate and verify system security requirements definitions and analysis.
  • Design, develop, implement, and/or integrate IA and security systems and components.
  • Assist architects and systems developers in implementing appropriate information security functionality.
  • Contribute to security planning, assessment, risk analysis, risk management, and certification activities.
  • Review C&A documentation for completeness and compliance.

Benefits

  • Highly Competitive Health Care Premiums, including 100% employer paid for employee.
  • Flexible Spending Accounts for Medical and Dependent Care.
  • Generous PTO and Federal Holiday Paid Leave.
  • Employer Paid STD/LTD.
  • Employer Paid Life Insurance.
  • 401K plan and Employer Match.
  • Referral and Opportunity Referral Programs.
  • Professional Development Assistance.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Career Level

Senior

Industry

Professional, Scientific, and Technical Services

Education Level

Bachelor's degree

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service