Back to search
NR Labs Linkedin · Posted 9d ago

Information System Security Engineer (ISSE)

Washington DC-Baltimore, Washington, United States

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

Role Overview

We are seeking an Information Systems Security Engineer (ISSE) to provide technical and hands-on security engineering support for federal cloud and enterprise systems. This role focuses on securing cloud-based architectures, integrating security across the system lifecycle, and supporting Information System Security Officers (ISSOs) with authorization and accreditation activities.

Role Responsibilities

  • Design and implement security mechanisms protecting IT and cloud solutions in Microsoft Azure and Amazon Web Services (AWS).
  • Integrate security requirements throughout the system development lifecycle, including applications, single and multi-purpose information systems, operating systems, and CI/CD pipelines.
  • Design and assess secure information system and cloud architectures, including Azure and other cloud vendors.
  • Highly experienced in designing the configuration of NSGs, Azure Firewall, Private Endpoints security, Azure VNETs, subnets, routing tables, security groups, and network Access Control Lists.
  • Expert in assessing the effectiveness of implemented security mechanisms and configurations.
  • Provide technical and engineering support to ISSOs performing A&A activities.
  • Conduct security impact assessments for system, architecture, application, and configuration changes.
  • Perform threat modeling to identify, analyze, and mitigate risks associated with application and infrastructure design changes.
  • Integrate Supply Chain Risk Management (SCRM) activities aligned with NIST SP 800-161 into information system designs
  • Apply application security best practices, including secure coding principles, dependency management, and vulnerability remediation.
  • Support DevSecOps practices by designing and integrating security controls, scanning, and monitoring at strategic points of the CI/CD pipeline prior to introduction to a production environment.
  • Design and implement security best practices to containers and Infrastructure as Code
  • Develop security architecture documentation, technical standards, and risk-based recommendations based on security designs.

Required Qualifications and Education:

  • Bachelor's Degree in Cybersecurity, IT, Engineering, or related field.
  • 6+ years of cybersecurity and 2+ years of verifiable ISSE experience.
  • Strong networking experience, including TCP/IP, routing and switching, firewalls, VPNs, load balancing, and cloud networking.
  • Strong experience integrating threat modeling analysis using specific threat modeling framework(s) with security impact analysis activities.
  • Demonstrated experience with Azure networking services.
  • Experience with application security and DevSecOps in cloud-based environments.
  • Strong knowledge of NIST RMF, FedRAMP, NIST SP 800-160, NIST SP 800-161, and NIAP / Common Criteria
  • Experience with Kubernetes or other container technologies, and Infrastructure as Code preferred.
  • Strong communication skills
  • Required Certifications: Certified Information Systems Security Professional (CISSP) or equivalent OR Certified Cloud Security Professional (CCSP)
  • Preferred Certifications: CISSP-ISSEP or CISSP-ISSAP


Clearance and Location Requirements:

  • Able to be cleared for a Public Trust clearance.
  • This position requires to be onsite 3 days per week in Washington, DC.
Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search