J

Information Systems Security Engineer (ISSE) (TS/SCI Clearance with Full Scope Polygraph Required)

J&T Business Consulting Annapolis, Maryland, United States · $80K–$150K/yr

Business Consulting and Services · 11-50 employees

19 h ago
security Principal (10+ yrs) Full-time United States
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The ISSE will validate system security requirements, design robust security architectures, and execute hands-on vulnerability assessments. They will also collaborate with engineering and test teams to ensure compliance with stringent security standards in an Agile environment.

What they look for

Risk Management Framework Vulnerability Assessment Security Architecture Nessus NMAP Wireshark Cryptographic Devices System Hardening Compliance Standards Network Security Agile Methodology Information Assurance Security Auditing Configuration Management DoD 8570 PKI

Requirements

Candidates must have an active TS/SCI clearance with a polygraph and at least 12 years of experience in information systems security engineering. A DoD 8570/8140 IASAE Level 2 or 3 certification is required, along with proven expertise in the Risk Management Framework.

Benefits

Comprehensive Health Insurance Dental Insurance Vision Insurance Basic Life Insurance Disability Insurance Paid Time Off Paid Holidays Paid Parental Leave 401(k) Retirement Plan Tuition Reimbursement

Full description

Position: Information Systems Security Engineer (ISSE)

Location: Annapolis Junction, MD

Employment Type: Full-Time

Clearance Requirement: Active TS/SCI with Polygraph

Salary Range: $80,000 – $150,000 / year (dependent on experience, education, and skill set)

About the Role

Seeking a Senior Information Systems Security Engineer (ISSE) to support large-scale, mission-critical systems across a complex, geographically distributed network environment in Annapolis Junction, MD.

In this role, you will serve as a security subject matter expert, validating system security requirements, designing robust security architectures, and executing hands-on vulnerability assessments. You will collaborate closely with Systems Engineering, Test, and Integration teams in an Agile environment to ensure hardware and software implementations meet stringent compliance standards and maintain a resilient operational security posture.

Key Responsibilities

  • Validate and establish system security designs, architectures, and requirements for major system components and distributed network interfaces.
  • Apply the Risk Management Framework (RMF) to lead security planning, risk assessments, control evaluations, continuous monitoring, and system authorization activities.
  • Perform vulnerability testing, scanning, auditing, and assessment of system configurations using standard security tools (e.g., Nessus, NMAP, Wireshark).
  • Collaborate with engineering, test, and agile development teams during Program Increment (PI) planning to formulate security compliance requirements for new capabilities.
  • Plan and conduct security verification testing for Type 1 cryptographic and security-relevant devices.
  • Formulate, coordinate, implement, and enforce information systems security policies, technical standards, and configuration baselines.
  • Evaluate the operational security impact of new software deployments, identify vulnerabilities and attack vectors, and drive end-to-end remediation.
  • Act as a primary technical advisor on security architecture and risk trade-offs for Program Managers, internal engineering teams, and customer stakeholders.

Required Qualifications & Experience

  • Security Clearance: Active TS/SCI with Polygraph.
  • Experience: Minimum of 12 years of experience as an ISSE on large technical programs.
  • Certifications: DoD 8570/8140 IASAE Level 2 or Level 3 certification.
  • Risk & Policy Frameworks: Proven experience applying the Risk Management Framework (RMF) and formulating/assessing IT security policies and compliance standards.
  • Technical & Tool Expertise: Hands-on experience with vulnerability scanning and network analysis tools (e.g., Nessus, NMAP, Wireshark), communication protocols, encryption techniques/tools, and web services.
  • System Administration: In-depth experience with the secure configuration and hardening of standard enterprise desktop and server operating systems.

Desired Qualifications

  • Bachelor’s degree in Computer Science, Information Assurance, Information Systems Security Engineering, or a related field.
  • Professional certifications: CISSP or CISSP-ISSEP.
  • 5+ years of experience with Defense-in-Depth principles (access control, PKI, IAM, network and enterprise security architectures).
  • Experience with scripting languages and automated testing workflows.
  • Experience with advanced penetration testing tools, incident response, and application security evaluations for firewall designs and network boundaries.

Benefits & Compensation

This position offers a comprehensive benefits package designed to support employees both personally and professionally:

  • Comprehensive Health, Dental, and Vision Insurance
  • Basic Life and Disability Insurance
  • Paid Time Off (PTO) and Paid Holidays
  • Paid Parental Leave
  • 401(k) Retirement Plan with Company Match
  • Tuition Reimbursement for continued professional education

An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other characteristic protected under federal, state, or local law.

Similar roles