> Markdown version of [/jobs/ext/1240761-cyber-security-project-engineer-polsecx](https://www.wearedevelopers.com/jobs/ext/1240761-cyber-security-project-engineer-polsecx). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Project Engineer POLSECX - **Company:** Sabree Software Services - **Location:** Herndon, VA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Security Support Provider Interface, System Testing, Information Technology - **Published:** July 11, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=f5aea0532842f114 ## About the Role * Candidate shall possess a minimum of eight (8) years of experience in IT security, information assurance and/or engineering * Experience using Greenlight Tool * Working knowledge of Intelligence Community Information Assurance policies and regulations and how they relate to the certification and accreditation process. * Strong technical skills and analytic ability. * Good communications skills, written and oral. , Desired Skills * Experience in an ISSO /ISSE / ISSM role. * Experience authoring and maintaining systems security documentation including documentation of security mitigations and successful completion of DCID 6/3 or ICD503 accreditation process * Demonstrated experience navigating the Sponsor's security and accreditation process to include certification and accreditation of an IT system to Authority to Operate (ATO) * Candidate shall possess knowledge and experience in generating appropriate security documentation to receive proper accreditation from Directorate security personnel and correcting security shortfalls as they are identified through Agency sponsored reviews. * PMP Certification * Knowledge of Customer PMF process * Knowledge of FISMA, DCID 6/3, ICD 503 Standards * Knowledge of IT development lifecycle * Knowledge of Customer organization and processes specific to security requirements for IT systems and accreditation/certification. ## Description ISSE: Candidate shall provide expert-level security support/guidance to engineering and technical IT related activities within the organization. In addition, candidate shall provide day-to-day support and oversight of all Information Assurance, Certification & Accreditation and Assessment & Authorization activities. Responsible for managing the processing of all organizational efforts through the risk management cycle, this includes closely coordinating and track risks, accreditation status, and reporting status across project teams. Generate security plans as required and be the security advocate for all system/architecture changes. Assemble and submit C&A packages to Principal Accreditation Authority/ Designated Accreditation Authority. Coordinate C&A actions and system testing with appropriate security personnel. Maintain a document repository where C&A project documentation is stored. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [How To Test A Ball of Mud](https://www.wearedevelopers.com/videos/173-how-to-test-a-ball-of-mud) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)