Information Systems Security Engineer (ISSE) (TS/SCI Clearance with Full Scope Polygraph Required)
J&T Business Consulting Annapolis, Maryland, United States · $80K–$150K/yr
Business Consulting and Services · 11-50 employees
About the role
The ISSE will validate system security requirements, design robust security architectures, and execute hands-on vulnerability assessments. They will also collaborate with engineering and test teams to ensure compliance with stringent security standards in an Agile environment.
What they look for
Requirements
Candidates must have an active TS/SCI clearance with a polygraph and at least 12 years of experience in information systems security engineering. A DoD 8570/8140 IASAE Level 2 or 3 certification is required, along with proven expertise in the Risk Management Framework.
Benefits
Full description
Position: Information Systems Security Engineer (ISSE)
Location: Annapolis Junction, MD
Employment Type: Full-Time
Clearance Requirement: Active TS/SCI with Polygraph
Salary Range: $80,000 – $150,000 / year (dependent on experience, education, and skill set)
About the Role
Seeking a Senior Information Systems Security Engineer (ISSE) to support large-scale, mission-critical systems across a complex, geographically distributed network environment in Annapolis Junction, MD.
In this role, you will serve as a security subject matter expert, validating system security requirements, designing robust security architectures, and executing hands-on vulnerability assessments. You will collaborate closely with Systems Engineering, Test, and Integration teams in an Agile environment to ensure hardware and software implementations meet stringent compliance standards and maintain a resilient operational security posture.
Key Responsibilities
- Validate and establish system security designs, architectures, and requirements for major system components and distributed network interfaces.
- Apply the Risk Management Framework (RMF) to lead security planning, risk assessments, control evaluations, continuous monitoring, and system authorization activities.
- Perform vulnerability testing, scanning, auditing, and assessment of system configurations using standard security tools (e.g., Nessus, NMAP, Wireshark).
- Collaborate with engineering, test, and agile development teams during Program Increment (PI) planning to formulate security compliance requirements for new capabilities.
- Plan and conduct security verification testing for Type 1 cryptographic and security-relevant devices.
- Formulate, coordinate, implement, and enforce information systems security policies, technical standards, and configuration baselines.
- Evaluate the operational security impact of new software deployments, identify vulnerabilities and attack vectors, and drive end-to-end remediation.
- Act as a primary technical advisor on security architecture and risk trade-offs for Program Managers, internal engineering teams, and customer stakeholders.
Required Qualifications & Experience
- Security Clearance: Active TS/SCI with Polygraph.
- Experience: Minimum of 12 years of experience as an ISSE on large technical programs.
- Certifications: DoD 8570/8140 IASAE Level 2 or Level 3 certification.
- Risk & Policy Frameworks: Proven experience applying the Risk Management Framework (RMF) and formulating/assessing IT security policies and compliance standards.
- Technical & Tool Expertise: Hands-on experience with vulnerability scanning and network analysis tools (e.g., Nessus, NMAP, Wireshark), communication protocols, encryption techniques/tools, and web services.
- System Administration: In-depth experience with the secure configuration and hardening of standard enterprise desktop and server operating systems.
Desired Qualifications
- Bachelor’s degree in Computer Science, Information Assurance, Information Systems Security Engineering, or a related field.
- Professional certifications: CISSP or CISSP-ISSEP.
- 5+ years of experience with Defense-in-Depth principles (access control, PKI, IAM, network and enterprise security architectures).
- Experience with scripting languages and automated testing workflows.
- Experience with advanced penetration testing tools, incident response, and application security evaluations for firewall designs and network boundaries.
Benefits & Compensation
This position offers a comprehensive benefits package designed to support employees both personally and professionally:
- Comprehensive Health, Dental, and Vision Insurance
- Basic Life and Disability Insurance
- Paid Time Off (PTO) and Paid Holidays
- Paid Parental Leave
- 401(k) Retirement Plan with Company Match
- Tuition Reimbursement for continued professional education
An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other characteristic protected under federal, state, or local law.
Similar roles
-
Senior Account Executive, Public Relations (Cybersecurity)
Highwire Connecticut, United States
-
Staff Product Security Engineer, PSIRT
ServiceNow Hyderabad, Telangana, India
-
Senior Security Engineer
Capco London, England, United Kingdom
-
Principal Security Engineer
Capco London, England, United Kingdom
-
Senior Security Engineer
DAIWA CAPITAL MARKETS AMERICA INC New York, New York, United States · $160K–$190K/yr
-
Information Security Engineer
Peoples Bank Louisville, Kentucky, United States