Astrion logo

Information Systems Security Engineer (ISSE)

Astrion

  • Columbia, Maryland
  • 4 days ago
  • $114,000–$171,000 Per Year

Highlights

Security Control Implementation - Design and implement technical security controls; ensure controls are implemented correctly and function as intended; validate implemented controls; work closely with system administrators to configure systems securely. The ISSE serves as the primary architect for the technical design, integration, and implementation of security controls in support of classified information management systems under 32 CFR Part 117 (NISPOM Rule).

Numbers & Facts

LocationColumbia, Maryland
IndustryOther/Not Classified
Salary$114,000–$171,000 Per Year
Company Size2,500 to 4,999 employees
Websitehttps://astrion.us/about-us/

Description

Overview:

Information Systems Security Engineer (ISSE)

LOCATION: Columbia, MD

JOB STATUS: Full-time

CLEARANCE: Ability to obtain TS/SCI

CERTIFICATION: CAP, CISSM, or CISSP

TRAVEL: Less than 5%

SALARYRANGE: $114K - $171K

 

Astrion has an exciting opportunity for an experienced Information Systems Security Engineer (ISSE) to securely engineer classified information systems throughout their lifecycle. The ISSE serves as the primary architect for the technical design, integration, and implementation of security controls in support of classified information management systems under 32 CFR Part 117 (NISPOM Rule). Further, the ISSE will design the secure networks based on instructions, manuals and policies as outlined in guidance from the DoW, Navy, and MDA; this position is located in Columbia Maryland.

 

REQUIRED QUALIFICATIONS / SKILLS

  • Bachelor’s degree with 8-10 years of experience.
  • Minimum of 5 years of experience in Linux and Windows administration.
  • Experience in supporting U.S. Government clients.
  • Be able to apply systems engineering knowledge to develop, implement and maintain a secure network environment.
  • A CAP, CISM, or CISSP certification is required.
  • U.S. citizenship with active TS/SCI eligibility and the ability to maintain such eligibility.

PREFERRED QUALIFICATIONS / SKILLS 

  • Proficiency with Secure Internet Protocol Network establishment and maintenance.
  • Configuration management.
  • Vulnerability assessment and remediation.
  • Secure software development principles.
  • Risk analysis and technical writing.
  • Proficiency with various compute applications and testing tools (Word, Excel, PowerPoint, WASSP, MBSA).
  • Strong understanding of DCSA eMASS and DAAG processes.

RESPONSIBILITES:

  • Security Architecture and System Design – Integrate security requirements into system architecture during the planning and design phases.
  • Ensure system designs meet 32 CFR Part 117 (NISPOM Rule); and guidance as outlined in the DCSA Assessment and Authorization Guide (DAAG).
  • Research and recommend secure technologies and architectures to reduce risk.
  • Incorporate security engineering principles throughout the system development life cycle (SDLC).
  • Develop engineering artifacts required for Assessment & Authorization (A&A).
  • Assist with security control inheritance and control tailoring.
  • Support the development of Plans of Action and Milestones (POA&Ms).
  • Security Control Implementation - Design and implement technical security controls; ensure controls are implemented correctly and function as intended; validate implemented controls; work closely with system administrators to configure systems securely.
  • Vulnerability Management – Analyze vulnerabilities identified through tools such as; ACAS, SCAP, STIG Viewer Nessus, Security Assessments.
  • Recommend engineering solutions to mitigate identified risks.
  • Evaluate security impacts of hardware, software, and configuration changes.
  • Continuous Monitoring (ConMon) – Review security posture and system health.
  • Authorization Support – Develop technical documentation supporting system authorization.
  • Provide Engineering input for Security Plans, POA&Ms, and Configuration Management Plans.
  • Configuration and Change Management - Evaluate proposed system changes for security impact; Participate in Configuration Control Boards (CCBs).
  • Technical Advising - Advise program managers, system owners, and administrators on security implications of design decisions.
  • Collaboration – Work closely with ISSM, ISSO, Systems Administrators, DCSA Information System Security Professional (ISSP)

About Company

We are the transformative evolution of two prominent government services firms, ERC and Oasis Systems, each bringing with them a rich legacy of dedicated service to our nation’s Defense and Federal communities.

The company brings together 2,800 employees focused on Cybersecurity, Digital Solutions, Mission Support, and Systems Engineering serving customers in more than 36 states across the U.S. with Centers of Excellence in Washington DC, Huntsville, AL and Burlington, MA.

Our resources, deep expertise, and adaptable solutions will enable us to scale and expand development and engineering capabilities for Defense and Federal communities.

Similar Jobs