Information Systems Security Engineer (ISSE) with Security Clearance Job at RSCY Consultants, LLC, Herndon, VA

WmtoWHlHVEJwYXhTRjAwLzU2UzFTNzM1b1E9PQ==
  • RSCY Consultants, LLC
  • Herndon, VA

Job Description

Information Systems Security Engineer (ISSE)
Clearance: Top Secret/SCI with CI Poly
Location: Herndon, VA Currently seeking an Information Systems Security Engineers (ISSE) to support an Intel Community (IC) customer in the Herndon, Virginia area. ISSE responsibilities for conducting information system security engineering activities for new or existing system(s) may include: Defines information security requirements and their integration into information systems and its technology component through purposeful security design.
Develops and implements security designs ensure that the hardware, operating systems and software applications adequately address cyber security requirements and Security Controls Traceability Matrix (SCTM).
Identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations and recommend mitigation strategies.
Implement, validate Security Technical Implementation Guide (STIG) requirements and/or perform SRG assessments for all development and implementation projects.
Develop, customize, and configure Splunk applications and dashboards.
Develop Security Test Procedure (STP), conducts self-assessments to verify compliance with required configuration guidance and support A&A testing and validation of security designs.
Conducting risk analysis reviewing ACAS, CVEs, plugins, CWEs, research, collaborating with System Administrators to mitigate identified vulnerabilities and/or author Plans of Actions and Milestones (POA&M) as needed.
Execution of continuous monitoring efforts responds to data calls, scan requests, and various weekly and monthly security metrics reporting requirements.
Validate control implementations provide enforcement of the required data access and network flow restrictions align with the continuous monitoring strategy.
Participates in Agile Planning Events to provide technical input.
Support government activities and report to appropriate IC and DoD authorities (i.e., USCYBERCOM, IC-SCC)
Support security authorization activities in compliance with the customer Information System Certification and Accreditation Process following the NIST Risk Management Framework (RMF), CNSSI No 1243 and other prescribed business processes for security engineering.
Assist architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of Agency security policy and enterprise solutions.
Apply system security engineering expertise in one or more of the following to: system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; risk management; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control); and security testing. Qualifications
Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD Required Qualifications:
Bachelor's degree in a relevant technical (STEM) field with 8+ years of relevant experience; Master's degree in a relevant technical (STEM) field with 6+ years of relevant experience; or 4+ additional years of experience in lieu of a degree.
TS/SCI with polygraph clearance adjudication or ability to obtain SCI and pass a poly
Certified Information Systems Security Professional (CISSP) Certification is required
One (1) year of experience with IC Community
Demonstrate writing of your own project in scripting/programming (use of Shell scripting, Python, Javascript, Powershell) in a Linux or Windows environment to support the various Cyber Security tools and applications required
Proven experience with DISA Security Technical Implementation Guide (STIG) implementation and Security Content Automation Protocol (SCAP) tool usage
Proven experience performing Systems Security tasks including: Security Information and Event Monitoring (Splunk); Endpoint security (HBSS); Compliance and vulnerability scanning (ACAS / Nessus)
Demonstrated experience with creating and validating evidence for NIST security controls.
Possess a working knowledge of administering servers, system and application security threats and vulnerabilities
Experience extending existing applications in areas such as security, monitoring, task automation, continuous integration, deployment, and performance optimization
Provide guidance on vulnerability and malware remediation.
Experience analyzing vulnerabilities, establishing cause and impact, and identifying the corrective action needed to eliminate and prevent the event from happening in the future. Desired Qualifications:
Demonstrated experience with RMF and A&A;
Experience with FISCAM.

Job Tags

Similar Jobs

Sunbelt Staffing

School Speech Pathology | Chowchilla, California Job at Sunbelt Staffing

 ...Job Description Job Description Master's degree in Speech-Language Pathology, active SLP license and 1+ year of Speech-Language Pathology experience required. Applicants who do not meet these qualifications will not be considered. A certified Speech-Language Pathologist... 

Ubertal Inc

Workday Configuration Analyst Job at Ubertal Inc

 ...Workday Configuration Analyst Location: Remote (U.S. based only) Job Type: Contract 6 Months Start Date: November 17, 2025 Schedule: Full-time, Monday Friday (East Coast hours) Job Overview We are seeking a Workday Configuration Analyst... 

TradeJobsWorkforce

Hostess Job at TradeJobsWorkforce

 ...Hostess Job Duties: Welcome guests in a warm and friendly manner. Ascertains their dining/lodging needs. Seats guests and manage the seating chart. Monitors restaurant activity to determine seating and dining flow. Responds to guest inquiries and requests in... 

JOBSTER PRIVATE LTD.

Full Stack Software Engineer Job at JOBSTER PRIVATE LTD.

OverviewWhat you will be working on:As a Software Engineer, you will be a part of a multi-disciplinary team comprising of developers, designers and product owners creating products and services to solve problems and create meaningful impact. The team focuses on streamlining... 

Cushman & Wakefield

Cleaner, Part Time- 2nd Shift Job at Cushman & Wakefield

 ...Cleaner, Part Time-2nd Shift The Cleaner will work under the supervision of the Custodial Manager or Supervisor and perform a variety of custodial duties for C&W Services. Such duties shall be in accordance with established standards, instructions, and procedures of...