Senior Information System Security Engineer
Chantilly, VA - USA
Job Summary
About the Role
Redhorse transforms the way government uses data and technology. To support this mission we are seeking a Senior Information System Security Engineer (ISSE) to provide expert technical and programmatic Information Assurance (IA) this role you will be the cornerstone of security for our nations most critical network and information systems. You will bridge the gap between complex technical requirements and business processes ensuring that as we innovate we remain compliant secure and resilient against evolving threats. Your work will directly impact the security posture of systems that handle vital government data.
- Provide technical and programmatic Information Assurance services to internal and external customers to support network and information security systems.
- Design develop and implement security requirements within the organizations business processes.
- Prepare comprehensive security documentation utilizing accepted guidelines such as DITSCAP DIACAP and NIST SP 800-37.
- Develop and execute Security Test and Evaluation (ST&E) plans to verify the efficacy of security controls.
- Conduct complex risk and vulnerability assessments to identify system weaknesses and recommend mitigation strategies.
- Analyze existing policies and procedures against Federal laws and regulations providing strategic recommendations to close compliance gaps.
- Develop test and integrate computer and network security tools to enhance system defense.
- Manage and complete System Security Plans (SSP) and Contingency Plans to ensure operational continuity.
- Perform vulnerability assessments and develop risk mitigation strategies to address identified deficiencies.
- Secure system configurations install security tools and scan systems to determine and report compliance results.
- Conduct security program audits and develop solutions to lessen identified risks.
- Provide IA support for the development and implementation of security architectures to meet new and evolving requirements.
- Assist in computer incident investigations and perform root cause analysis.
- Develop strategies to comply with privacy risk management and e-authentication requirements.
- Must have an active TS/SCI with FS Poly security clearance
- Bachelors degree in Computer Science Information Technology Cybersecurity or a related field.
- 8 years of related experience performing information assurance and information systems security engineering duties.
- Demonstrated experience in the certification and accreditation (C&A) of information systems.
- Direct experience with NIST SP 800-37 (RMF) DIACAP NIACAP or DCID 6/3 frameworks.
- Proficiency in developing System Security Plans (SSP) and performing vulnerability scans.
We encourage all candidates who meet the basic requirements to apply even if you do not have any of the following experience:
- Professional certifications such as CISSP ISSEP or CISM.
- Experience with modern cloud security environments (AWS Azure or Google Cloud).
- Familiarity with automated compliance tools and DevSecOps pipelines.
- Operational experience with DataBricks GitLab or Jira in a secure environment.
- Experience leading a team of junior security analysts or engineers.
Required Experience:
Senior IC
About Company
We’ve all been on your side of the table at some point in our careers, in uniform or government. That experience helps us understand your challenges in a…