Information System Security Engineer
Information assurance engineer job at ManTech
MANTECH seeks a motivated, career and customer-oriented Senior Information System Security Engineer (ISSE) to join our team in Virginia Beach, VA. This is a hybrid position with 1-2 days onsite and 2-3 days remote.
As an ISSE, you will have the opportunity to work on innovative and mission-critical and national security projects. You will collaborate with a skilled team of professionals, responsible for developing accreditation packages for cloud systems in both AWS and Azure environments. This position offers great opportunities for technical growth and improved experience in Cyber Security.
Responsibilities include but are not limited to:
Performing cyber security research under NAVSEA for cloud and network solutions
Developing, defining, and aiding in implementing cyber security policies and processes
Defining IS and Network Environment security requirements in accordance with applicable cybersecurity requirements
Supporting A&A packages for multiple projects
Applying security expertise to new modernization cyber solutions that provide confidentiality, integrity, availability, authentication, and non-repudiation for security policies and memorandum for records
Developing Plan of Action and Milestones with proper Mitigations or Remediations, accordingly
Developing approaches to mitigate IS and Cloud Network Environment vulnerabilities and recommend changes to network or network system components as needed
Travel up to 25%
Minimum Qualifications:
High School Diploma, and 8+ years of relevant experience
5+ years developing secure solutions for incident response, business continuity, and disaster recovery
3+ years implementing security controls and policies with emerging cybersecurity technologies, including access control, privileged access management, data security, network security, data loss prevention, cloud security, vulnerability management, configuration management, privacy, and audits
Must have an active Security+ certification
Must be familiar with the use and operation of security tools including STIG Viewer, eMASSter, and Tenable Nessus and/or Security Center
Experience with cloud brokerages, preferably Navy
Knowledge and experience working with federal compliance and guidance, including FISMA, RMF, Federal Enterprise Architecture Framework, DoDAF, NIST Cybersecurity Framework, NIST 800 series, FedRAMP and cloud-based security controls
Preferred Qualifications:
Bachelor's Degree
One of the following certifications: Certified Information Systems Security Professional (CISSP), CompTIA Advanced Security Practitioner (CASP) CE, Certified Secure Software Lifecycle Professional (CSSLP), CISSP- Information System Security Engineering Professional (ISSEP), or CISSP- Information System Security Architecture Professional (ISSAP) or an equivalent security certification
Clearance Requirements:
Must have an active Secret security clearance.
Physical Requirements:
The person in this position must be able to remain in a stationary position 50% of the time.
Must be able to move around the office and operate office equipment.
Frequently communicate with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
Cyber Network Defense Analyst
Information assurance engineer job at ManTech
**ManTech** seeks a motivated, career and customer-oriented **Cyber Network Defense Analyst** in **Herndon, VA.** As a CND Analyst on our team, you will use your expertise in specialized network defense to provide innovative and creative solutions to challenging cyber security problems. You will utilize the latest cyber tools available and assist with creating new ones while allowing you to advance the nation's information security posture.
**Responsibilities include, but are not limited to:**
+ Provide malicious code detection, intrusion detection, and information security tool development and integration.
+ Utilize forensic analysis to identify malware, misuse, and/or unauthorized activity.
+ Analyze all data sources, including Internet, Intelligence Community (IC) reporting, security events, firewall logs, and other data sources to identify malware, misuse, unauthorized activity or other cyber security related concerns.
+ Track intelligence using open source and classified sources to identify malicious code threats and provide solutions to counteract that threat.
+ Identify gaps in visibility or coverage of cyber defense systems.
+ Prepare data analytics and reporting.
**Minimum Qualifications:**
+ High School Diploma and 15+ years of experience in a cyber security or network security role, or Bachelor's degree in a technical field with 11+ years of experience
+ Experience writing script in programming languages such as Python, JavaScript, Yara or Snort
+ Experience using Splunk, Elasticsearch or similar tools for case development and application
+ Experience with network security applications, protocols, and associated hardware
+ Experience with one or more of the following classes of enterprise cyber defense technologies: Host based IDS and IPS, Network and host-based malware detection and prevention
**Preferred Qualifications:**
+ Experience with AWS infrastructure, tools and/or services
+ Experience working with MITRE ATT&CK
**Clearance Requirements:**
+ Must have an active/Current TS/SCI with polygraph
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
Information Systems Security Officer
Virginia jobs
Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: Secret Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Continental US * * * **Responsibilities:** + Manage Risk Management Framework (RMF) process
+ Work with system development team to identify needed RMF artifacts and load them into the government's EMASS system.
+ Develop security plans, policies, and designs.
+ Configure and implement security solutions based upon the customer's performance criteria and specifications
+ Conduct systems pre-test and acceptance tests to validate the designed performance criteria
+ Structure mock designs based upon RFP specifications in support of the Bids & Proposal teams
+ Collaborate with government and /or subcontractors at customer site for security solution integration into existing infrastructure
+ Develop and perform technical presentations for customers
+ Mentor junior engineers and technicians
+ Serve as technical lead on projects.
+ Travel to other CACI Locations or Customer Sites as necessary
+ Proactively ensure a safe work environment and adhere to CACI EH&S policies and procedures
+ Perform other duties as required
**Qualifications:**
**_Required:_**
+ A Bachelors degree is required.
+ Knowledge of risk assessment tools, technologies, and methods including EMASS system
+ Experience designing secure networks, systems, and application architectures
+ Experience planning, researching, and developing security policies, standards, and procedures
+ Ability to communicate network security issues to peers and customers
+ Working knowledge of current Cyber technologies and experience with NIST 800 Series and DoD 8570 regulations and governing DISA STIGs and/or SRGs
+ Understanding of Information Assurance Vulnerability Management (IAVM) and Information Assurance Vulnerability Assessments (IAVAs
+ Prior experience with RMF controls, risk assessments, and POA&M generation
+ Strong working knowledge of Confidentiality, Integrity, and Availability (CIA) concepts, to include 2-factor authentication, Public Key encryption techniques, patch management, end-point security systems, intrusion detection, security event management and defense-in-depth.
+ Well versed in DoD cyber security Assessment and Authorizations (A&A) DoD Implementation, Directives, NIST Special Publications and other government cyber security standards, policies, and directives
+ Experience with Nessus, ACAS, SCAP
+ Experience completing and review DISA Security Technical Implementation Guides (STIGs)
+ Experience conducting risk analysis on products and system components through review of CVEs, plugins, IAVAs
+ Experience onboarding assets to centrally managed Enterprise solutions.
+ Application Security Architecture and Design experience
+ Security Compliance Operations and Application Security Assessment experience
+ DoD 8570.01 IAT level 2 or greater cyber security certification per DoD 8570.01 (such as Security+)
+ Experience designing and implementing Commercial Solutions for Classified (CSfC) Multi-Site Connectivity Capability Package desired
+ Systems integration experience
+ Excellent interpersonal and presentation skills
+ At least five years of continuous recent experience in the field of DoD information systems security and/or cybersecurity.
+ Possess an active Information Assurance Management (IAM) Level III certification. Additional cyber and/or IT certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or CompTIA's Advanced Security Practitioner (CASP)
+ Possess an active DoD Secret clearance.
**_Desired:_**
+ At least five years of continuous recent experience as an Information System Security Manager (ISSM), Information Systems Security Engineer (ISSE), and/or Information Systems Security Officer (ISSO).
+ At least five years of continuous recent experience performing information systems security and/or cybersecurity roles in IT projects and obtaining ATO/ATC.
+ At least five years of continuous recent experience in DoD enterprise Mission Assurance Support Service (eMASS).
+ At least five years of continuous recent experience in networking and/or system engineering.
-
**________________________________________________________________________________________**
**What You Can Expect:**
**A culture of integrity.**
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
**An environment of trust.**
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
**A focus on continuous growth.**
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
**Your potential is limitless.** So is ours.
Learn more about CACI here. (************************************************
**________________________________________________________________________________________**
**Pay Range** : There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here (***************************************************** .
Since this position can be worked in more than one location, the range shown is the national average for the position.
The proposed salary range for this position is:
$105,100-$231,100
_CACI is_ _an Equal Opportunity Employer._ _All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any_ _other protected characteristic._
Lead Information Systems Security Officer (ISSO)
Hampton, VA jobs
Lead Information Systems Security Officer (ISSO) Job Category: Information TechnologyTime Type: Full time Minimum Clearance Required to Start: TS/SCIEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: None* * *
The Opportunity:
CACI is seeking a Lead Information Systems Security Officer (ISSO) for Langley AFB in Hampton, VA supporting the cyber security mission of Distributed Ground System-Experimental (DGS-X) information systems (IS) and networks, most notably the Air Force Distributed Common Ground System (DCGS) legacy and Open Architecture (OA) enterprise.
If you are looking for your next career challenge supporting a unique mission we would like to speak with you. In this role, you will be the Cybersecurity subject matter expert supporting both in-house and external customer efforts. As a valued member of the team, you will work with multiple entities ensure that various cybersecurity requirements are implemented appropriately.
Responsibilities:
Provide inputs to ensure systems are operated, maintained, and disposed of by security policies and procedures as outlined in the security plan.
Coordinate Assess and Authorize (A&A), Configuration Management (CM), and Release Management requirements for the client's systems by DoD Instructions.
Ensure application, system, environment, or organizational changes do not hurt the security posture of the system security compliance and assessment.
Monitor and validate vulnerability postures in Assured Compliance Assessment Solution (ACAS), and ensure all systems comply with DISA Security Technical Implementation Guidelines (STIG)s and with HBSS requirements.
Verify the implementation of delegated aspects of the system security program locally as well as across customer-related systems.
Preparation and submission of Authority to Operate documentation to eMASS and XACTA.
Ensure audit records are collected and analyzed per the security plan.
Report all security-related incidents to the Facility Security Officer and assist with formal reporting to impacted customers with MAJCOM oversight.
Formally notifying the customer(s) of any changes to a system that could affect authorization to operate.
Ensure user activity monitoring data is analyzed, stored, and protected following AF IC policies and procedures.
Assist ISSM in the execution of the continuous monitoring strategy.
Development and oversight of ISSO training program.
Perform other duties as assigned.
Identify system security requirements following AF IC and NISPOM policy.
Validate configuration of cyber security tools to ensure auditing and vulnerability management controls are met.
Qualifications:
Required:
An Active DOD TS/SCI Clearance.
B.S Degree in Information Technology/Systems, Computer Science, Computer Engineering, or Electrical Engineering with 8 years related experience, 10-12 years related experience without a Bachelor's Degree.
Must hold at least one active Department of Defense 8570.01-M IAT/IAM Level II certification.
Experience in initial risk assessment activities and ability to assist Authorizing Official (AO) risk determination with risk acceptance
Advanced knowledge of information technology and networking, including a working knowledge in one of the following: IP Networking, cyber security, or software development.
Advanced knowledge and understanding of Windows Server, Active Directory, DHCP, DNS and WSUS/SCCP.
Advanced knowledge of Microsoft Windows and Linux software applications and other applications as required.
Experience as an ISSO managing systems approved to process classified information including working knowledge of the National Industrial Security Program Operating Manual (NISPOM), Intelligence Community Directives (ICD 503, etc.) and Risk Management Framework (RMF) as prescribed in NIST SP 800-53, SP 800-53A, and SP 800-137.
Knowledge of Air Force cyber security policies.
Experience submitting ATO documentation in eMASS and Xacta.
Desired:
Certifications such as CISSP, CISM, or equivalent.
In-depth knowledge of DIA JCIP standards.
-
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
Your potential is limitless. So is ours.
Learn more about CACI here.
________________________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
The proposed salary range for this position is:
$75,200-$158,100
CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Auto-ApplyInformation Systems Security Officer (ISSO)
Sterling, VA jobs
Information Systems Security Officer (ISSO) Job Category: Information TechnologyTime Type: Full time Minimum Clearance Required to Start: TS/SCI with PolygraphEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *
The Opportunity: CACI is seeking an experienced and proactive Information Systems Security Officer to assist in the management our organization's information security efforts. The successful candidate will be responsible for developing, implementing, and maintaining a comprehensive information security program to protect our customer's data, systems, and networks from internal and external threats.
Responsibilities:
Prepare and update a Systems Security Plan that encompasses all aspects of all automated information systems utilized to support the program
Oversee the implementation of information security policies, procedures, and best practices
Verify all software and hardware installed and operated comply with the government's Security Certification Officer and COMM Program Security Officer (PSO) IAW the Program Security Plan
Prepare and update the Equipment Security Certification
Conduct regular risk assessments and security audits to identify vulnerabilities
Design and implement security measures to protect against cyber threats, data breaches, and other security incidents
Lead incident response efforts in case of security breaches or cyber attacks
Establish and implement a continuous monitoring plan IAW the customer's Cyber Security Office guidance
Maintain security approvals and accreditations IAW ICD 503
Provide integration and support associated with existing customer automated discovery network mapping activities and tools.
Collaborate with IT and other departments to integrate security measures into all aspects of the organization
Provide security awareness training to employees and stakeholders
Stay up-to-date with the latest security trends, technologies, and threats
Qualifications:
Must have current TS/SCI with poly
University Degree (BA/BS) or equivalent experience in a related field
7+ years of related work experience
Profound understanding of the Defense Counterintelligence and
Certified Information Systems Security Professional (CISSP)
Information Systems Security Officer (ISSO)
Relevant experience with IT service, cybersecurity, and/or Program Security
Ability to work closely with government partners, security counterparts, program managers, and offices within the Intelligence Community and other defense industry partners to ensure successful execution of program activity.
Ability to work closely with internal cross-functional teams (Directors, Program Managers, Project Managers and Contracting Officers)
Customer and team oriented and able to function with limited supervision.
Must have excellent verbal and written communications skills.
Ability to implement strategic goals
Establishes operational plans for technical area
Develops and implements innovative products, processes, standards or operational plans
This position is contingent on funding and may not be filled immediately. However, this position is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI.
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
Your potential is limitless. So is ours.
Learn more about CACI here.
________________________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
The proposed salary range for this position is:
$86,600 - $181,800
CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Auto-ApplyInformation Systems Security Officer (ISSO)
Sterling, VA jobs
Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Local * * * **The Opportunity** : CACI is seeking an experienced and proactive Information Systems Security Officer to assist in the management our organization's information security efforts. The successful candidate will be responsible for developing, implementing, and maintaining a comprehensive information security program to protect our customer's data, systems, and networks from internal and external threats.
**Responsibilities:**
+ Prepare and update a Systems Security Plan that encompasses all aspects of all automated information systems utilized to support the program
+ Oversee the implementation of information security policies, procedures, and best practices
+ Verify all software and hardware installed and operated comply with the government's Security Certification Officer and COMM Program Security Officer (PSO) IAW the Program Security Plan
+ Prepare and update the Equipment Security Certification
+ Conduct regular risk assessments and security audits to identify vulnerabilities
+ Design and implement security measures to protect against cyber threats, data breaches, and other security incidents
+ Lead incident response efforts in case of security breaches or cyber attacks
+ Establish and implement a continuous monitoring plan IAW the customer's Cyber Security Office guidance
+ Maintain security approvals and accreditations IAW ICD 503
+ Provide integration and support associated with existing customer automated discovery network mapping activities and tools.
+ Collaborate with IT and other departments to integrate security measures into all aspects of the organization
+ Provide security awareness training to employees and stakeholders
+ Stay up-to-date with the latest security trends, technologies, and threats
**Qualifications:**
+ Must have current TS/SCI with poly
+ University Degree (BA/BS) or equivalent experience in a related field
+ 7+ years of related work experience
+ Profound understanding of the Defense Counterintelligence and
+ Certified Information Systems Security Professional (CISSP)
+ Information Systems Security Officer (ISSO)
+ Relevant experience with IT service, cybersecurity, and/or Program Security
+ Ability to work closely with government partners, security counterparts, program managers, and offices within the Intelligence Community and other defense industry partners to ensure successful execution of program activity.
+ Ability to work closely with internal cross-functional teams (Directors, Program Managers, Project Managers and Contracting Officers)
+ Customer and team oriented and able to function with limited supervision.
+ Must have excellent verbal and written communications skills.
+ Ability to implement strategic goals
+ Establishes operational plans for technical area
+ Develops and implements innovative products, processes, standards or operational plans
This position is contingent on funding and may not be filled immediately. However, this position is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI.
**________________________________________________________________________________________**
**What You Can Expect:**
**A culture of integrity.**
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
**An environment of trust.**
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
**A focus on continuous growth.**
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
**Your potential is limitless.** So is ours.
Learn more about CACI here. (************************************************
**________________________________________________________________________________________**
**Pay Range** : There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here (***************************************************** .
The proposed salary range for this position is:
$86,600 - $181,800
_CACI is_ _an Equal Opportunity Employer._ _All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any_ _other protected characteristic._
Information System Security Officer (ISSO)
Chantilly, VA jobs
Information System Security Officer (ISSO) Job Category: SecurityTime Type: Full time Minimum Clearance Required to Start: SecretEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *
The Opportunity:
CACI is looking for an Information System Security Officer (ISSO) to support our DoD customer to implement an enterprise IT service delivery model that provides consistent, secure, high-quality, and cost-effective services to enable mission success and improve end user experience across the customer environment. On this program, CACI will deliver enhanced capabilities and services to implement and operate an enterprise ITSM solution, enterprise service desk, endpoint management and security solution, as well as CONUS/OCONUS field support and life cycle support for end user devices to enable the DoD customer to transition focus from IT operations to mission operations.
Responsibilities:
Verify that all requirements for system access to an Information System are met and that there is a signed Acceptable Use Agreement on file.
Assist in the preparation, distribution, coordination and maintenance of plans, instructions, policies, guidance, and standard operating procedures necessary for implementation of the Organization's IA program and serve as the subject matter focal point for the Organization's IA program.
The ISSM in ensuring that a Certification and Accreditation package is prepared and maintained in accordance with (IAW) the DoD Information Assurance Certification and Accreditation Process (DIACAP), or the DoD Risk Management Framework (RMF).
Overseeing System Owners to ensure they follow established IS policies and procedures.
Reviews weekly bulletins and advisories that impact security of site information systems to include, RCERT, ACERT, IAVA, and DISA ASSIST bulletins.
Support periodic testing which is conducted to evaluate the security posture of the ISs by employing various intrusion/attack detection and monitoring tools (shared responsibility with ISSOs).
Implementing and enforcing IS security policies.
Ensuring approved policies and procedures are in place capturing the organization's requirements in regard to all of the NIST 800-53r5 families. The SIPR ISSO will assist in updating policies and procedures when changes occur or periodically.
Ensuring development and implementation of procedures in accordance with configuration management (CM) policies and practices for authorizing the use of hardware/software on an IS. Any changes or modifications to hardware, software, or firmware of a system must be coordinated with the ISSM/ISSO and appropriate approving authority prior to the change.
Responding to security incidents, and for investigating and reporting (to the IAM and ISSO and to local management) security violations and incidents, as appropriate.
Serving as a member of the Change Advisory Board and Demand Approval Board
Working knowledge of system functions, security policies, technical security safeguards, and operational security measures.
Attending required technical (e.g., operating system, networking, security management, SysAdmin) and security training relative to assigned duties.
Ensuring that proper decisions are made concerning levels of concern for confidentiality, integrity, and availability of the data, and the protection level for confidentiality for the system.
Reporting all security-related incidents to the ISSM and Security Incident Response Team.
Initiating protective and corrective measures when a security incident or vulnerability is discovered, with the approval of the ISSM or System Owner.
Developing and maintaining an accreditation/certification and assessment/authorization support documentation package for system(s) for which they are responsible.
Conducting Continuous Monitoring in line with the DAF's cATO methodology
Ensuring all IS security-related documentation is current and accessible to properly authorized individuals.
Ensuring system security requirements are addressed during all phases of the system life cycle.
Provide status updates on IA and system security health to the government in a formal setting. The SIPR ISSO will need to provide updates for all of the systems when the ISSM is unavailable.
Qualifications:
Required:
Bachelor's Degree and 8 years of relevant experience
DoD 8570 IAT or IAT level II Certified
Familiarity with DoD Risk Management Framework (RMF) or DIACAP processes
Experience with classified environments and information systems
Knowledge of eMASS preferred
ITIL Foundation preferred
Cloud Experience
DEVSECOPS Experience
DoD Secret Clearance ability to obtain TS.
Strong technical written and verbal communication skills
Ability to work and lead other team members, with little oversight, to accomplish Sprints and organizational tasks.
-
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
Your potential is limitless. So is ours.
Learn more about CACI here.
________________________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
The proposed salary range for this position is:
$103,800 - $218,100
CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Auto-ApplyInformation System Security Officer (ISSO)
Chantilly, VA jobs
Information System Security Officer (ISSO) Job Category: Information TechnologyTime Type: Full time Minimum Clearance Required to Start: TS/SCI with PolygraphEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *
Exciting Opportunity: Join Our Dynamic Cybersecurity Team as an Information Systems Security Officer (ISSO)!
Are you passionate about cybersecurity and eager to make a significant impact? We are thrilled to announce an opening for a dedicated and detail-oriented Information Systems Security Officer (ISSO) to join our innovative cybersecurity team. In this role, you will play a pivotal part in our Continuous Monitoring program, ensuring alignment with Federal guidelines and standards.
Why You'll Love This Role:
As an ISSO, you will be at the forefront of protecting our information systems, contributing to a secure and compliant environment. You'll work with a talented team, leveraging your expertise in the Risk Management Framework (RMF) and NIST SP 800 series publications to enhance our security posture.
Responsibilities:
Implement and Maintain Continuous Monitoring: Develop and sustain a robust Continuous Monitoring program in line with RMF and NIST SP 800-137 guidelines.
Conduct Security Assessments: Perform regular security assessments and vulnerability scans to identify and mitigate potential risks.
Real-Time Monitoring: Keep a vigilant eye on security controls and their effectiveness, ensuring our systems remain protected around the clock.
Trend Analysis: Analyze security-related data to spot trends and emerging threats, allowing us to stay one step ahead.
Documentation: Prepare and maintain comprehensive documentation for security status reporting, ensuring transparency and compliance.
Collaborative Remediation: Work closely with system owners and stakeholders to address security findings and implement effective remediation plans.
System Security Plans: Assist in creating and updating System Security Plans (SSPs) and other essential RMF documentation.
ATO Support: Provide vital support for the Authorization to Operate (ATO) process, ensuring our systems meet all necessary standards.
Stay Current: Keep abreast of the latest cybersecurity threats, technologies, and compliance requirements to continually enhance our defenses.
Incident Response: Participate in incident response activities, helping to swiftly address and resolve security incidents.
Qualifications:
Required:
Clearance: An active TS/SCI with Polygraph.
Experience: BS/BA or equivalent experience and a minimum of 7 years in a related field.
Specialized Experience: 2-5 years in information security, with a strong focus on continuous monitoring and RMF.
Certifications: Relevant certifications such as Security+, CISSP, CISM, or CAP.
Knowledge: In-depth understanding of NIST SP 800 series publications, especially SP 800-37, SP 800-53, and SP 800-137.
Regulations: Familiarity with Federal information security regulations and guidelines (e.g., FISMA, FedRAMP).
Tools: Experience with security tools like vulnerability scanners, SIEM systems, and GRC platforms.
Skills: Strong analytical and problem-solving skills, coupled with excellent written and verbal communication abilities.
Team Player: Ability to work effectively in a team environment and collaborate with various stakeholders.
Desired:
Government Experience: Experience in a government or government contractor environment.
Automation: Familiarity with automation tools for continuous monitoring processes.
Tenable: Experience with Tenable.
Splunk: Experience with Splunk.
Qmulos Q-Audit: Experience with Qmulos Q-Audit.
Why Join Us?
This position is crucial in maintaining the security posture of our information systems and ensuring compliance with Federal cybersecurity requirements. As an ISSO, you will be an integral part of our organization's risk management strategy, helping to protect critical assets from evolving cyber threats.
Ready to Make a Difference? Apply now and take the next step in your cybersecurity career with us!
-
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
Your potential is limitless. So is ours.
Learn more about CACI here.
________________________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
The proposed salary range for this position is:
$103,800 - $218,100
CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Auto-ApplyInformation System Security Officer (ISSO)
Chantilly, VA jobs
Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Local * * * Exciting Opportunity: Join Our Dynamic Cybersecurity Team as an Information Systems Security Officer (ISSO)!
Are you passionate about cybersecurity and eager to make a significant impact? We are thrilled to announce an opening for a dedicated and detail-oriented Information Systems Security Officer (ISSO) to join our innovative cybersecurity team. In this role, you will play a pivotal part in our Continuous Monitoring program, ensuring alignment with Federal guidelines and standards.
Why You'll Love This Role:
As an ISSO, you will be at the forefront of protecting our information systems, contributing to a secure and compliant environment. You'll work with a talented team, leveraging your expertise in the Risk Management Framework (RMF) and NIST SP 800 series publications to enhance our security posture.
Responsibilities:
* Implement and Maintain Continuous Monitoring: Develop and sustain a robust Continuous Monitoring program in line with RMF and NIST SP 800-137 guidelines.
* Conduct Security Assessments: Perform regular security assessments and vulnerability scans to identify and mitigate potential risks.
* Real-Time Monitoring: Keep a vigilant eye on security controls and their effectiveness, ensuring our systems remain protected around the clock.
* Trend Analysis: Analyze security-related data to spot trends and emerging threats, allowing us to stay one step ahead.
* Documentation: Prepare and maintain comprehensive documentation for security status reporting, ensuring transparency and compliance.
* Collaborative Remediation: Work closely with system owners and stakeholders to address security findings and implement effective remediation plans.
* System Security Plans: Assist in creating and updating System Security Plans (SSPs) and other essential RMF documentation.
* ATO Support: Provide vital support for the Authorization to Operate (ATO) process, ensuring our systems meet all necessary standards.
* Stay Current: Keep abreast of the latest cybersecurity threats, technologies, and compliance requirements to continually enhance our defenses.
* Incident Response: Participate in incident response activities, helping to swiftly address and resolve security incidents.
Qualifications:
Required:
* Clearance: An active TS/SCI with Polygraph.
* Experience: BS/BA or equivalent experience and a minimum of 7 years in a related field.
* Specialized Experience: 2-5 years in information security, with a strong focus on continuous monitoring and RMF.
* Certifications: Relevant certifications such as Security+, CISSP, CISM, or CAP.
* Knowledge: In-depth understanding of NIST SP 800 series publications, especially SP 800-37, SP 800-53, and SP 800-137.
* Regulations: Familiarity with Federal information security regulations and guidelines (e.g., FISMA, FedRAMP).
* Tools: Experience with security tools like vulnerability scanners, SIEM systems, and GRC platforms.
* Skills: Strong analytical and problem-solving skills, coupled with excellent written and verbal communication abilities.
* Team Player: Ability to work effectively in a team environment and collaborate with various stakeholders.
Desired:
* Government Experience: Experience in a government or government contractor environment.
* Automation: Familiarity with automation tools for continuous monitoring processes.
* Tenable: Experience with Tenable.
* Splunk: Experience with Splunk.
* Qmulos Q-Audit: Experience with Qmulos Q-Audit.
Why Join Us?
This position is crucial in maintaining the security posture of our information systems and ensuring compliance with Federal cybersecurity requirements. As an ISSO, you will be an integral part of our organization's risk management strategy, helping to protect critical assets from evolving cyber threats.
Ready to Make a Difference? Apply now and take the next step in your cybersecurity career with us!
* ________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
Your potential is limitless. So is ours.
Learn more about CACI here.
________________________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
The proposed salary range for this position is:
$103,800 - $218,100
CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Security Engineer Sr - C
Virginia Beach, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position is contingent on contract award.
This position will be based at Virginia Beach, VA.
Responsibilities:
The Engineer, Cybersecurity II provides advanced cybersecurity engineering support across Navy systems under the Naval Surface Warfare Center Dahlgren Division (NSWCDD). This role integrates cybersecurity requirements throughout the systems engineering lifecycle, supporting both afloat and ashore networks. The position contributes to system design, risk management, and cyber resilience initiatives aligned with DoD and NAVSEA standards.
Cyber Engineering and Analysis:
Conduct system and software engineering analyses to ensure compliance with cybersecurity standards and best practices.
Support Risk Management Framework (RMF) activities by developing and maintaining technical artifacts, assessment documentation, and ATO packages.
Review and support the implementation of Security Technical Implementation Guides (STIGs) and vulnerability remediation processes.
Perform configuration management of cybersecurity baselines, ensuring changes to system design maintain compliance with RMF and NIST SP 800-53 controls.
Apply system hardening techniques and zero-trust security principles across operating systems, applications, and network devices.
Analyze and support interconnection security agreements (ISAs) and ensure compliance within approved Authorization boundaries.
Utilize and support cybersecurity assessment tools including ACAS, STIG Viewer, eMASS, and Security Compliance Checker.
System Life-Cycle Security:
Participate in the design and implementation of secure systems architecture, providing cybersecurity engineering input from concept through sustainment.
Conduct risk and vulnerability assessments for systems undergoing upgrades or changes, including penetration and regression testing.
Support secure coding practices and software assurance reviews to detect and mitigate exploitable flaws.
Contribute to development and documentation of cybersecurity procedures, security plans, and network diagrams.
Assist in hardware and software patch management, version control, and baseline integrity monitoring.
Operations & Maintenance
Provide system administration support for Windows, Linux, and network environments, ensuring cybersecurity compliance.
Execute cybersecurity best practices during lab and field operations, including monitoring, incident response coordination, and risk reporting.
Maintain technical documentation, POA&Ms, and audit trails in support of cybersecurity posture tracking.
Requirements
Qualifications:
Education: Bachelor's degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information System,
Information Technology, Computer, Electrical, or Electronics Engineering, Software Engineering, Computer
Science, Mathematics with a concentration in Computer Science, or equivalent to above disciplines.
Certification:
• DoD 8570.01-M in accordance with (IAW) DFARS ************ Baseline Certification,
minimum IAT Level II.
Experience:
Five (5) year of full-time professional experience performing system hardening with demonstrated
experience in the following areas: Experience supporting Navy, NAVSEA, or DoD cybersecurity programs.
Proficiency with DISA STIGs, eMASS, ACAS, Nessus, and RMF documentation.
Knowledge of system hardening, zero-trust frameworks, and cross-domain security solutions.
Working knowledge of NIST SP 800-37, 800-53, and 800-160 cybersecurity engineering standards.
Hands-on experience with Windows Server, Linux, and network device administration.
Strong technical writing and documentation skills for cybersecurity deliverables (CDRLs, POA&Ms, risk assessments, etc.).
Desired Attributes:
Detail-oriented with a systems-thinking approach to cybersecurity.
Strong communication and collaboration skills to work across engineering and program teams.
Demonstrated ability to balance mission assurance, security compliance, and system performance.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Security Engineer Sr - C
Virginia Beach, VA jobs
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position is contingent on contract award.
This position will be based at Virginia Beach, VA.
Responsibilities:
The Engineer, Cybersecurity II provides advanced cybersecurity engineering support across Navy systems under the Naval Surface Warfare Center Dahlgren Division (NSWCDD). This role integrates cybersecurity requirements throughout the systems engineering lifecycle, supporting both afloat and ashore networks. The position contributes to system design, risk management, and cyber resilience initiatives aligned with DoD and NAVSEA standards.
Cyber Engineering and Analysis:
* Conduct system and software engineering analyses to ensure compliance with cybersecurity standards and best practices.
* Support Risk Management Framework (RMF) activities by developing and maintaining technical artifacts, assessment documentation, and ATO packages.
* Review and support the implementation of Security Technical Implementation Guides (STIGs) and vulnerability remediation processes.
* Perform configuration management of cybersecurity baselines, ensuring changes to system design maintain compliance with RMF and NIST SP 800-53 controls.
* Apply system hardening techniques and zero-trust security principles across operating systems, applications, and network devices.
* Analyze and support interconnection security agreements (ISAs) and ensure compliance within approved Authorization boundaries.
* Utilize and support cybersecurity assessment tools including ACAS, STIG Viewer, eMASS, and Security Compliance Checker.
System Life-Cycle Security:
* Participate in the design and implementation of secure systems architecture, providing cybersecurity engineering input from concept through sustainment.
* Conduct risk and vulnerability assessments for systems undergoing upgrades or changes, including penetration and regression testing.
* Support secure coding practices and software assurance reviews to detect and mitigate exploitable flaws.
* Contribute to development and documentation of cybersecurity procedures, security plans, and network diagrams.
* Assist in hardware and software patch management, version control, and baseline integrity monitoring.
Operations & Maintenance
* Provide system administration support for Windows, Linux, and network environments, ensuring cybersecurity compliance.
* Execute cybersecurity best practices during lab and field operations, including monitoring, incident response coordination, and risk reporting.
* Maintain technical documentation, POA&Ms, and audit trails in support of cybersecurity posture tracking.
Job Requirements
Qualifications:
Education: Bachelor's degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information System,
Information Technology, Computer, Electrical, or Electronics Engineering, Software Engineering, Computer
Science, Mathematics with a concentration in Computer Science, or equivalent to above disciplines.
Certification:
* DoD 8570.01-M in accordance with (IAW) DFARS ************ Baseline Certification,
minimum IAT Level II.
Experience:
* Five (5) year of full-time professional experience performing system hardening with demonstrated
* experience in the following areas: Experience supporting Navy, NAVSEA, or DoD cybersecurity programs.
* Proficiency with DISA STIGs, eMASS, ACAS, Nessus, and RMF documentation.
* Knowledge of system hardening, zero-trust frameworks, and cross-domain security solutions.
* Working knowledge of NIST SP 800-37, 800-53, and 800-160 cybersecurity engineering standards.
* Hands-on experience with Windows Server, Linux, and network device administration.
* Strong technical writing and documentation skills for cybersecurity deliverables (CDRLs, POA&Ms, risk assessments, etc.).
Desired Attributes:
* Detail-oriented with a systems-thinking approach to cybersecurity.
* Strong communication and collaboration skills to work across engineering and program teams.
* Demonstrated ability to balance mission assurance, security compliance, and system performance.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Virginia Beach, VA 23461 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Information Security Systems Engineer - Expert
Herndon, VA jobs
BAE Systems, a top-ten prime contractor to the U.S. Department of Defense, enables the U.S. government to transform data into intelligence and provides engineering, integration and sustainment support for critical military platforms and systems. Intelligence & Security provides services and products to the Department of Defense, the government, federal law enforcement officials, and troops deployed around the world.
At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills and training they need to succeed. We are all about trust, camaraderie and a shared ambition to lead the world in defense technologies and national security services. We offer flexible work environment to support the balance in your life and keep you performing at your best. Be a part of a company that is part of the community; driven to improve our future and protect our freedom.
We are looking for experienced Cyber Security Engineers to join our technology-based program supporting a key government customer. This program will deliver engineering services for network infrastructure as well as sophisticated enterprise computing infrastructure including end-point devices, data center hosted servers, multi-Cloud services as well as virtualized applications, and storage systems. Enterprise Computing Engineering services include modern application technology including containerized solutions with orchestrated workflow that function both on customer premise, and via remote Cloud services. Network infrastructure engineering services are comprised of core infrastructure, voice and video engineering, field engineering, application management and development for networks, network analytics, firewalls, network access controls and bandwidth service delivery. This is a fast paced, challenging, and career rewarding experience to provide solutions on one of the most complex and high-profile programs within the government.
ABC
#LI-DDUNN
Required Education, Experience, & Skills
We are actively seeking an Information Systems Security Engineer (ISSE) with a minimum of 11 years' experience with a Bachelor's Degree. Other degrees will be considered with the year's experience adjusted to accommodate. We are looking for a candidate with specific skills that may include the following:
* Implementation and validation of security controls that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation
* Developing architecture documentation and Systems Security Plans (SSP) to support Accreditation and Authorization (A&A) reviews
* POA&M development and implementation
* Coordinating with customer security organizations to achieve Authority to Operate (ATO).
* Knowledge of the complex environment involving shared networks and multiple security enclaves
* Engineering for Cyber engineering and integration services including security, authentication, identity management, authorization, and access control engineering.
* Self-starter able to work independently and build relationships with technical reps across divisions, comfortable with cyber security and able to brief issues to the customer
* Over 5 years of experience working on Government Agency enterprise infrastructure and engineering programs.
Preferred Education, Experience, & Skills
* Nessus / Rapid7
* Security Development and Operations (SecDevOps)
* Various security tools and processes such as Splunk, Nessus Security Center, WebInspect, Xacta
* Cloud security controls and implementation
* STIG compliance and vulnerability management
* CISSP
* AWS Certified Security Specialty
* Microsoft Office365
* Experience in one or more software products associated with cyber system engineering for data analytics including SQL security, TANIUM Endpoint Management Software, Powershell, MacAfee, App Blocker, Splunk ITSI.
* Experience with one or more software development environments supporting commercial or open source tools including but not limited to: Linux, Python, C, Bash Scripting, Perl, SQL, Splunk Phantom, UBA, and UIPath
* Experience in one or more cloud computing services and technologies including but not limited to: AWS/C2S, Microsoft Azure, Nutanix, VMware.
Pay Information
Full-Time Salary Range: $146670 - $249330
Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20+ hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.
About BAE Systems Intelligence & Security BAE Systems, Inc. is the U.S. subsidiary of BAE Systems plc, an international defense, aerospace and security company which delivers a full range of products and services for air, land and naval forces, as well as advanced electronics, security, information technology solutions and customer support services. Improving the future and protecting lives is an ambitious mission, but it's what we do at BAE Systems. Working here means using your passion and ingenuity where it counts - defending national security with breakthrough technology, superior products, and intelligence solutions. As you develop the latest technology and defend national security, you will continually hone your skills on a team-making a big impact on a global scale. At BAE Systems, you'll find a rewarding career that truly makes a difference.
Intelligence & Security (I&S), based in McLean, Virginia, designs and delivers advanced defense, intelligence, and security solutions that support the important missions of our customers. Our pride and dedication shows in everything we do-from intelligence analysis, cyber operations and IT expertise to systems development, systems integration, and operations and maintenance services. Knowing that our work enables the U.S. military and government to recognize, manage and defeat threats inspires us to push ourselves and our technologies to new levels.
This position will be posted for at least 5 calendar days. The posting will remain active until the position is filled, or a qualified pool of candidates is identified.
Cyber Network Defense Analyst
Information assurance engineer job at ManTech
General information Requisition # R63748 Posting Date 10/15/2025 Security Clearance Required TS/SCI w/ Poly Remote Type Onsite Time Type Full time Description & Requirements Unlock the secrets of intelligence with MANTECH! Join a dynamic team at the forefront of national security, providing advanced solutions to government intelligence agencies. Since 1968, we've been solving the toughest challenges with groundbreaking tech. Explore thrilling projects in Digital Transformation, Cybersecurity, IT, Data Analytics and Software Development. Elevate your career and make a difference. Your adventure begins now-unleash your potential with MANTECH!
ManTech seeks a motivated, career and customer-oriented Cyber Network Defense Analyst in Herndon, VA.
As a CND Analyst on our team, you will use your expertise in specialized network defense to provide innovative and creative solutions to challenging cyber security problems. You will utilize the latest cyber tools available and assist with creating new ones while allowing you to advance the nation's information security posture.
Responsibilities include, but are not limited to:
* Provide malicious code detection, intrusion detection, and information security tool development and integration.
* Utilize forensic analysis to identify malware, misuse, and/or unauthorized activity.
* Analyze all data sources, including Internet, Intelligence Community (IC) reporting, security events, firewall logs, and other data sources to identify malware, misuse, unauthorized activity or other cyber security related concerns.
* Track intelligence using open source and classified sources to identify malicious code threats and provide solutions to counteract that threat.
* Identify gaps in visibility or coverage of cyber defense systems.
* Prepare data analytics and reporting.
Minimum Qualifications:
* High School Diploma and 15+ years of experience in a cyber security or network security role, or Bachelor's degree in a technical field with 11+ years of experience
* Experience writing script in programming languages such as Python, JavaScript, Yara or Snort
* Experience using Splunk, Elasticsearch or similar tools for case development and application
* Experience with network security applications, protocols, and associated hardware
* Experience with one or more of the following classes of enterprise cyber defense technologies: Host based IDS and IPS, Network and host-based malware detection and prevention
Preferred Qualifications:
* Experience with AWS infrastructure, tools and/or services
* Experience working with MITRE ATT&CK
Clearance Requirements:
* Must have an active/Current TS/SCI with polygraph
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
Auto-ApplyInformation Systems Security Engineer (Senior)- ISSE
Sterling, VA jobs
BAE Systems, a top-ten prime contractor to the U.S. Department of Defense, enables the U.S. government to transform data into intelligence and provides engineering, integration and sustainment support for critical military platforms and systems. Intelligence & Security provides services and products to the Department of Defense, the intelligence community, federal law enforcement officials, and troops deployed around the world.
At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills and training they need to succeed. We are all about trust, camaraderie and a shared ambition to lead the world in defense technologies and national security services. We offer flexible work environment to support the balance in your life and keep you performing at your best. Be a part of a company that is part of the community; driven to improve our future and protect our freedom.
We are looking for an ISSE to join our technology-based program supporting a key government customer. This program will deliver engineering services for network infrastructure as well as sophisticated enterprise computing infrastructure including end-point devices, data center hosted servers, multi-Cloud services as well as virtualized applications, and storage systems. Enterprise Computing Engineering services include modern application technology including containerized solutions with orchestrated workflow that function both on customer premise, and via remote Cloud services. Network infrastructure engineering services are comprised of core infrastructure, voice and video engineering, field engineering, application management and development for networks, network analytics, firewalls, network access controls and bandwidth service delivery.
#LI-KW2
Required Education, Experience, & Skills
We are actively seeking Cyber Security Systems Engineers with a minimum of 6 years' experience. This opportunity is supporting the customer's Division level A&A projects which has several Branches within it. The A&A projects are therefore at various levels within the customer organization depending upon which team is responsible for initial development and accreditation vs. long term Operations and Maintenance support. Bachelor's or Master's Degree are preferred in one or more discipline, but can be waived if previous direct ISSE support to this customer's agency. Specific skills include the following:
* Possess multi-tasking skills, as well as be a good communicator/facilitator. Comfortable at all levels from developer to senior staff.
* Knowledge of the complex network environments involving shared networks and multiple security enclaves.
* Possess the ability to bridge the technical implementation (i.e. developer talk), into commonly understood security words. Often this is a skillset and is not an actual language, but frequently translation or a basic understand needs to be conveyed by the ISSE when speaking with others or in writing the documentation in order to ensure it's easy to understand.
* Document the various security control implementations as well as gather the artifacts that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation for various Assessment and Authorization (A&A) efforts
* Document and obtain a general understanding of the architecture being developed or that was developed for each project in order to write the Systems Security Plans (SSP)/CONOPS in the Xacta application.
* Gather the information by working with various team members in order to write various additional A&A related documents such as Contingency Plan (CP), General User Guide (GUG), Privileged User Guide (PUG), Standard Operating Procedures (SOP's), etc.
* Support Accreditation and Authorization (A&A) reviews by ISSO/M, as well as the Security Controls Assessor (SCA)
* Document the Plans of Actions and Milestones (POA&Ms) implementation responses or mitigations, as well as provide all required artifacts (i.e. evidence gathering from the teams)
* Coordinating with various contractor and staff personnel to obtain the A&A content, as well as working with various customer organizations to navigate the customer's A&A process in order to achieve Authority to Develop (ATD), Interim Authority to Operation (IATT), as well as Authority to Operate (ATO).
* Keep track of where each of the various A&A projects are within the customer's A&A process in order to know when it's time to re-submit for accreditation or an accreditation extension.
Preferred Education, Experience, & Skills
* Previous ISSE experience directly supporting the customer.
* Previous ISSO experience directly supporting the customer is also helpful.
* Various security tools and reports such as Xacta, RoadRunner, Rapid 7, WebInspect, App Detective, and Splunk
* Public, private and hybrid Cloud experience (AWS, Microsoft Azure, etc.)
* Virtualization experience (VDI & VMWare)
* Basic knowledge is helpful, but not required for the following general topics: Cloud security control implementation, PKI implementation, STIG compliance and vulnerability management, and Security Development and Operations (SecDevOps)
* CISSP, or GSLC
* AWS Certified Security Specialty
* Basic Excel and Microsoft Office365
Pay Information
Full-Time Salary Range: $122870 - $208890
Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20+ hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.
About BAE Systems Intelligence & Security BAE Systems, Inc. is the U.S. subsidiary of BAE Systems plc, an international defense, aerospace and security company which delivers a full range of products and services for air, land and naval forces, as well as advanced electronics, security, information technology solutions and customer support services. Improving the future and protecting lives is an ambitious mission, but it's what we do at BAE Systems. Working here means using your passion and ingenuity where it counts - defending national security with breakthrough technology, superior products, and intelligence solutions. As you develop the latest technology and defend national security, you will continually hone your skills on a team-making a big impact on a global scale. At BAE Systems, you'll find a rewarding career that truly makes a difference.
Intelligence & Security (I&S), based in McLean, Virginia, designs and delivers advanced defense, intelligence, and security solutions that support the important missions of our customers. Our pride and dedication shows in everything we do-from intelligence analysis, cyber operations and IT expertise to systems development, systems integration, and operations and maintenance services. Knowing that our work enables the U.S. military and government to recognize, manage and defeat threats inspires us to push ourselves and our technologies to new levels.
This position will be posted for at least 5 calendar days. The posting will remain active until the position is filled, or a qualified pool of candidates is identified.
Information Systems Security Engineer (Senior)- ISSE
Sterling, VA jobs
BAE Systems, a top-ten prime contractor to the U.S. Department of Defense, enables the U.S. government to transform data into intelligence and provides engineering, integration and sustainment support for critical military platforms and systems. Intelligence & Security provides services and products to the Department of Defense, the intelligence community, federal law enforcement officials, and troops deployed around the world.
At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills and training they need to succeed. We are all about trust, camaraderie and a shared ambition to lead the world in defense technologies and national security services. We offer flexible work environment to support the balance in your life and keep you performing at your best. Be a part of a company that is part of the community; driven to improve our future and protect our freedom.
We are looking for an ISSE to join our technology-based program supporting a key government customer. This program will deliver engineering services for network infrastructure as well as sophisticated enterprise computing infrastructure including end-point devices, data center hosted servers, multi-Cloud services as well as virtualized applications, and storage systems. Enterprise Computing Engineering services include modern application technology including containerized solutions with orchestrated workflow that function both on customer premise, and via remote Cloud services. Network infrastructure engineering services are comprised of core infrastructure, voice and video engineering, field engineering, application management and development for networks, network analytics, firewalls, network access controls and bandwidth service delivery.
\#LI-KW2
**Required Education, Experience, & Skills**
We are actively seeking Cyber Security Systems Engineers with a minimum of 6 years' experience. This opportunity is supporting the customer s Division level A&A projects which has several Branches within it. The A&A projects are therefore at various levels within the customer organization depending upon which team is responsible for initial development and accreditation vs. long term Operations and Maintenance support. Bachelor's or Master s Degree are preferred in one or more discipline, but can be waived if previous direct ISSE support to this customer s agency. Specific skills include the following:
+ Possess multi-tasking skills, as well as be a good communicator/facilitator. Comfortable at all levels from developer to senior staff.
+ Knowledge of the complex network environments involving shared networks and multiple security enclaves.
+ Possess the ability to bridge the technical implementation (i.e. developer talk), into commonly understood security words. Often this is a skillset and is not an actual language, but frequently translation or a basic understand needs to be conveyed by the ISSE when speaking with others or in writing the documentation in order to ensure it s easy to understand.
+ Document the various security control implementations as well as gather the artifacts that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation for various Assessment and Authorization (A&A) efforts
+ Document and obtain a general understanding of the architecture being developed or that was developed for each project in order to write the Systems Security Plans (SSP)/CONOPS in the Xacta application.
+ Gather the information by working with various team members in order to write various additional A&A related documents such as Contingency Plan (CP), General User Guide (GUG), Privileged User Guide (PUG), Standard Operating Procedures (SOP s), etc.
+ Support Accreditation and Authorization (A&A) reviews by ISSO/M, as well as the Security Controls Assessor (SCA)
+ Document the Plans of Actions and Milestones (POA&Ms) implementation responses or mitigations, as well as provide all required artifacts (i.e. evidence gathering from the teams)
+ Coordinating with various contractor and staff personnel to obtain the A&A content, as well as working with various customer organizations to navigate the customer s A&A process in order to achieve Authority to Develop (ATD), Interim Authority to Operation (IATT), as well as Authority to Operate (ATO).
+ Keep track of where each of the various A&A projects are within the customer s A&A process in order to know when it s time to re-submit for accreditation or an accreditation extension.
**Preferred Education, Experience, & Skills**
+ Previous ISSE experience directly supporting the customer.
+ Previous ISSO experience directly supporting the customer is also helpful.
+ Various security tools and reports such as Xacta, RoadRunner, Rapid 7, WebInspect, App Detective, and Splunk
+ Public, private and hybrid Cloud experience (AWS, Microsoft Azure, etc.)
+ Virtualization experience (VDI & VMWare)
+ Basic knowledge is helpful, but not required for the following general topics: Cloud security control implementation, PKI implementation, STIG compliance and vulnerability management, and Security Development and Operations (SecDevOps)
+ CISSP, or GSLC
+ AWS Certified Security Specialty
+ Basic Excel and Microsoft Office365
**Pay Information**
Full-Time Salary Range: $122870 - $208890
Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20 hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.
**Information Systems Security Engineer (Senior)- ISSE**
**115935BR**
EEO Career Site Equal Opportunity Employer. Minorities . females . veterans . individuals with disabilities . sexual orientation . gender identity . gender expression
Information Systems Security Engineer
Chantilly, VA jobs
SAIC is seeking an experienced Information Systems Security Engineer (ISSE) for a position located in Chantilly, VA. The successful candidate will leverage overall system knowledge and expertise of space systems regarding security posture in the areas of technical, network, physical, certification and accreditation and operational security.
DESCRIPTION OF DUTIES:
Key duties/responsibilities include, but are not limited to\:
Provide ISSE expertise for transitioning NRO or DoD systems authorization to Intelligence Community Directive (ICD) 503 or current agency directive and provide expertise on authorization process as needed.
Perform system, sub-system and unit-level design analysis as necessary to determine if the design is both adequate to meet program security requirements and is cost effective.
Perform analysis of alternatives (AoA) for security architectures and assist Systems Engineering with the planning for significant new and emerging security requirements for information assurance, information technology and security requirements.
Provide support to system certification activities and efforts related to system certification and accreditation.
Research, develop, integrate and distribute IS security tools and associated documentation.
Provide on-site assistance for integrating IS security tools into contractor and Government information systems.
Develop security procedures for systems and software within area of expertise to ensure consistent security policy implementation.
Provide status to Directorate Information System Security Manager (ISSM) regarding certification and accreditation of all System Program Office sponsored systems.
Provide the Information System Security Engineer (ISSE) support for IA systems concept, requirements, design, development, implementation, and/or integration from end-to-end of a system or system component as required.
Design develop, and implement network security measures that provide confidentiality, integrity, availability, authentication and no-repudiation.
Evaluate engineering change request proposals that require additional system requirements and/or possible change to system architecture and provide updated security impacts that affect the system.
Develop security plans utilizing common IA controls where possible when assessing a system for authorization.
Collaborate and work with other Subject Matter Experts (SMEs) on developing authorization packages in support of Achieving Authority to Operate (ATO) with required timelines.
Participate in IA Engineering Working Groups, ISSE forums, Integrated Product Teams (IPTs) and provide IA guidance as needed.
Clearance required to start\:
Top Secret/SCI with Polygraph.
TYPICAL EDUCATION AND EXPERIENCE\:
Bachelors and fourteen (14) years or more experience; Masters and twelve (12) years or more experience ; PhD or JD and nine (9) years or more experience.
REQUIRED EDUCATION AND EXPERIENCE:
9+ years of experience with SIGINT systems.
CISSP, ISSEP and CRISC.
Experience working with developers to support Accreditation and Authorization, ICD 503 requirements, cloud, and multi-level security.
Experience working in a satellite systems program office or a satellite development facility assessing architecture, CONOPs and security requirements.
Experience with IT/IA solutions (e.g., cross domain solutions, cloud hosting).
Skilled at critical thinking.
Excellent communication skills.
Excellent organization skills.
STEM degree.
Desired Skills\:
In-depth knowledge of Xacta or Tribal Fire.
Operational experience in mission area.
Technical Master's degree.
Experience in all phases of space systems lifecycle.
SAIC accepts applications on an ongoing basis and there is no deadline.
SAIC is a premier Fortune 500 mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, civilian and intelligence markets includes secure high-end solutions in mission IT, enterprise IT, engineering services and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.
We are approximately 24,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.5 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.
Auto-ApplyInformation Systems Security Engineer
Chantilly, VA jobs
SAIC is seeking an experienced Information Systems Security Engineer (ISSE) for a position located in Chantilly, VA. The successful candidate will leverage overall system knowledge and expertise of space systems regarding security posture in the areas of technical, network, physical, certification and accreditation and operational security.
**DESCRIPTION OF DUTIES:**
Key duties/responsibilities include, but are not limited to:
+ Provide ISSE expertise for transitioning NRO or DoD systems authorization to Intelligence Community Directive (ICD) 503 or current agency directive and provide expertise on authorization process as needed.
+ Perform system, sub-system and unit-level design analysis as necessary to determine if the design is both adequate to meet program security requirements and is cost effective.
+ Perform analysis of alternatives (AoA) for security architectures and assist Systems Engineering with the planning for significant new and emerging security requirements for information assurance, information technology and security requirements.
+ Provide support to system certification activities and efforts related to system certification and accreditation.
+ Research, develop, integrate and distribute IS security tools and associated documentation.
+ Provide on-site assistance for integrating IS security tools into contractor and Government information systems.
+ Develop security procedures for systems and software within area of expertise to ensure consistent security policy implementation.
+ Provide status to Directorate Information System Security Manager (ISSM) regarding certification and accreditation of all System Program Office sponsored systems.
+ Provide the Information System Security Engineer (ISSE) support for IA systems concept, requirements, design, development, implementation, and/or integration from end-to-end of a system or system component as required.
+ Design develop, and implement network security measures that provide confidentiality, integrity, availability, authentication and no-repudiation.
+ Evaluate engineering change request proposals that require additional system requirements and/or possible change to system architecture and provide updated security impacts that affect the system.
+ Develop security plans utilizing common IA controls where possible when assessing a system for authorization.
+ Collaborate and work with other Subject Matter Experts (SMEs) on developing authorization packages in support of Achieving Authority to Operate (ATO) with required timelines.
+ Participate in IA Engineering Working Groups, ISSE forums, Integrated Product Teams (IPTs) and provide IA guidance as needed.
**Qualifications**
**Clearance required to start:**
+ Top Secret/SCI with Polygraph.
**TYPICAL EDUCATION AND EXPERIENCE:**
+ Bachelors and fourteen (14) years or more experience; Masters and twelve (12) years or more experience ; PhD or JD and nine (9) years or more experience.
**REQUIRED EDUCATION AND EXPERIENCE:**
+ 9+ years of experience with SIGINT systems.
+ CISSP, ISSEP and CRISC.
+ Experience working with developers to support Accreditation and Authorization, ICD 503 requirements, cloud, and multi-level security.
+ Experience working in a satellite systems program office or a satellite development facility assessing architecture, CONOPs and security requirements.
+ Experience with IT/IA solutions (e.g., cross domain solutions, cloud hosting).
+ Skilled at critical thinking.
+ Excellent communication skills.
+ Excellent organization skills.
+ STEM degree.
**Desired Skills:**
+ In-depth knowledge of Xacta or Tribal Fire.
+ Operational experience in mission area.
+ Technical Master's degree.
+ Experience in all phases of space systems lifecycle.
REQNUMBER: 2508038
SAIC is a premier technology integrator, solving our nation's most complex modernization and systems engineering challenges across the defense, space, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and simulation; and training. We are a team of 23,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.5 billion. For more information, visit saic.com. For information on the benefits SAIC offers, see Working at SAIC. EOE AA M/F/Vet/Disability
Senior Information System Security Officer
Information assurance engineer job at ManTech
General information Requisition # R64665 Posting Date 12/05/2025 Security Clearance Required TS/SCI Remote Type Onsite Time Type Full time Description & Requirements Transform the future of federal services with MANTECH! Join a vibrant, energetic team committed to enhancing national security and public services through innovative tech. Since 1968, we've partnered with Federal Civilian sectors to deliver impactful solutions. Engage in exciting projects in Digital Transformation, Cybersecurity, IT, Data Analytics and more. Ignite your career and drive change. Your journey starts now-innovate and excel with MANTECH!
MANTECH seeks a motivated, career and customer-oriented Senior Information System Security Officer (ISSO) to join our team in Quantico, VA.
Responsibilities include, but are not limited to:
* Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for each IS and that selected security controls are implemented and operating as intended during all phases of the IS lifecycle
* Provide liaison support between the system owner and other IS security personnel
* Ensure that system security documentation is developed, maintained, reviewed, and updated on a continuous basis; Conduct required IS vulnerability scans according to risk assessment parameters
* Manage the risks to ISs and other FBI assets by coordinating appropriate correction or mitigation actions and oversee and track the timely completion of (POAMs). Coordinate system owner concurrence for correction or mitigation actions
* Monitor security controls for FBI ISs to maintain security Authorized to Operate (ATO); Upload all security control evidence to the Governance, Risk, and Compliance (GRC) application to support security control implementation during the monitoring phase
* Ensure that changes to an FBI IS, its environment, and/or operational needs that may affect the authorization status are reported to the system owner and IS Security Manager (ISSM)
* Ensure the removal and retirement of ISs being decommissioned in coordination with the system owner, ISSM, and ISSR; Working knowledge of the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) and ATO processes
Minimum Qualifications:
* Must meet one of the following levels of experience: A high school diploma/GED and 7 years' experience, a bachelor's degree in computer science cybersecurity or a related discipline and five years' experience, or a master's degree in computer science cybersecurity or a related discipline and 3 years' experience.
* Hold at least one of the following Information Assurance Management (IAM) Level III certifications: Certified Information Systems Security Professional (CISSP), Global Information Security Professional (GISP), or the CompTIA Advanced Security Practitioner (CASP) or equivalent certifications
* Familiarity with the use and operation of security tools including Tenable Nessus and/or Security Center, IBM Guardium, HP Weblnspect, Network Mapper (NMAP), and/or similar applications
Preferred Qualifications:
* A bachelor's or advanced degree in Computer Science, Cybersecurity, or other cyber discipline
Clearance Requirements:
* Must have a current/active Top Secret security clearance with eligibility to obtain SCI prior to starting this position.
* Selected candidate must be willing to undergo a Polygraph.
Physical Requirements:
* Must be able to remain in a stationary position 50%
* Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
* Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer
* Often positions self to maintain computers in the lab, including under the desks and in the server closet
* Frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
Auto-ApplySenior Information System Security Officer
Information assurance engineer job at ManTech
**MANTECH** seeks a motivated, career and customer-oriented **Senior Information System Security Officer (ISSO)** to join our team in **Quantico, VA.** **Responsibilities include, but are not limited to:** + Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for each IS and that selected security controls are implemented and operating as intended during all phases of the IS lifecycle
+ Provide liaison support between the system owner and other IS security personnel
+ Ensure that system security documentation is developed, maintained, reviewed, and updated on a continuous basis; Conduct required IS vulnerability scans according to risk assessment parameters
+ Manage the risks to ISs and other FBI assets by coordinating appropriate correction or mitigation actions and oversee and track the timely completion of (POAMs). Coordinate system owner concurrence for correction or mitigation actions
+ Monitor security controls for FBI ISs to maintain security Authorized to Operate (ATO); Upload all security control evidence to the Governance, Risk, and Compliance (GRC) application to support security control implementation during the monitoring phase
+ Ensure that changes to an FBI IS, its environment, and/or operational needs that may affect the authorization status are reported to the system owner and IS Security Manager (ISSM)
+ Ensure the removal and retirement of ISs being decommissioned in coordination with the system owner, ISSM, and ISSR; Working knowledge of the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) and ATO processes
**Minimum Qualifications:**
+ Must meet one of the following levels of experience: A high school diploma/GED and 7 years' experience, a bachelor's degree in computer science cybersecurity or a related discipline and five years' experience, or a master's degree in computer science cybersecurity or a related discipline and 3 years' experience.
+ Hold at least one of the following Information Assurance Management (IAM) Level III certifications: Certified Information Systems Security Professional (CISSP), Global Information Security Professional (GISP), or the CompTIA Advanced Security Practitioner (CASP) or equivalent certifications
+ Familiarity with the use and operation of security tools including Tenable Nessus and/or Security Center, IBM Guardium, HP Weblnspect, Network Mapper (NMAP), and/or similar applications
**Preferred Qualifications:**
+ A bachelor's or advanced degree in Computer Science, Cybersecurity, or other cyber discipline
**Clearance Requirements:**
+ Must have a current/active Top Secret security clearance with eligibility to obtain SCI prior to starting this position.
+ Selected candidate must be willing to undergo a Polygraph.
**Physical Requirements:**
+ Must be able to remain in a stationary position 50%
+ Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
+ Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer
+ Often positions self to maintain computers in the lab, including under the desks and in the server closet
+ Frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
Information System Security Engineer
Information assurance engineer job at ManTech
General information Requisition # R64929 Posting Date 12/19/2025 Security Clearance Required Secret Remote Type Hybrid Time Type Full time Description & Requirements Shape the future of defense with MANTECH! Join a team dedicated to safeguarding our nation through advanced tech and innovative solutions. Since 1968, we've been a trusted partner to the Department of Defense, delivering cutting-edge projects that make a real impact. Dive into exciting opportunities in Cybersecurity, IT, Data Analytics and more. Propel your career forward and be part of something extraordinary. Your journey starts now-protect and innovate with MANTECH!
MANTECH seeks a motivated, career and customer-oriented Senior Information System Security Engineer (ISSE) to join our team in Virginia Beach, VA. This is a hybrid position with 1-2 days onsite and 2-3 days remote.
As an ISSE, you will have the opportunity to work on innovative and mission-critical and national security projects. You will collaborate with a skilled team of professionals, responsible for developing accreditation packages for cloud systems in both AWS and Azure environments. This position offers great opportunities for technical growth and improved experience in Cyber Security.
Responsibilities include but are not limited to:
* Performing cyber security research under NAVSEA for cloud and network solutions
* Developing, defining, and aiding in implementing cyber security policies and processes
* Defining IS and Network Environment security requirements in accordance with applicable cybersecurity requirements
* Supporting A&A packages for multiple projects
* Applying security expertise to new modernization cyber solutions that provide confidentiality, integrity, availability, authentication, and non-repudiation for security policies and memorandum for records
* Developing Plan of Action and Milestones with proper Mitigations or Remediations, accordingly
* Developing approaches to mitigate IS and Cloud Network Environment vulnerabilities and recommend changes to network or network system components as needed
* Travel up to 25%
Minimum Qualifications:
* High School Diploma, and 8+ years of relevant experience
* 5+ years developing secure solutions for incident response, business continuity, and disaster recovery
* 3+ years implementing security controls and policies with emerging cybersecurity technologies, including access control, privileged access management, data security, network security, data loss prevention, cloud security, vulnerability management, configuration management, privacy, and audits
* Must have an active Security+ certification
* Must be familiar with the use and operation of security tools including STIG Viewer, eMASSter, and Tenable Nessus and/or Security Center
* Experience with cloud brokerages, preferably Navy
* Knowledge and experience working with federal compliance and guidance, including FISMA, RMF, Federal Enterprise Architecture Framework, DoDAF, NIST Cybersecurity Framework, NIST 800 series, FedRAMP and cloud-based security controls
Preferred Qualifications:
* Bachelor's Degree
* One of the following certifications: Certified Information Systems Security Professional (CISSP), CompTIA Advanced Security Practitioner (CASP) CE, Certified Secure Software Lifecycle Professional (CSSLP), CISSP- Information System Security Engineering Professional (ISSEP), or CISSP- Information System Security Architecture Professional (ISSAP) or an equivalent security certification
Clearance Requirements:
* Must have an active Secret security clearance.
Physical Requirements:
* The person in this position must be able to remain in a stationary position 50% of the time.
* Must be able to move around the office and operate office equipment.
* Frequently communicate with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
Auto-Apply