> Markdown version of [/jobs/ext/1273174-information-systems-security-engineer-isse](https://www.wearedevelopers.com/jobs/ext/1273174-information-systems-security-engineer-isse). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Engineer (ISSE) - **Company:** CACI International Inc. - **Location:** Sterling, VA, United States - **Experience:** Expert - **Salary:** $120,800.0 - $265,800.0 - **Contract:** Permanent contract - **Skills:** Xacta, Bash Shell, Cisco PIX, Cyber Security, Computer Networks, Customer Data Management, Data Security, Domain Name System (DNS), Hypertext Transfer Protocols (HTTP), Information Security Management, Intrusion Detection Systems, Virtual Private Networks (VPN), Python (Programming Language), Network Architecture, Network Segmentation, Network Protocols, Windows PowerShell, Ansible, Zero Trust Network Access, SAP Sales and Distribution, Security Content Automation Protocol, Security Information and Event Management, Systems Architecture, Systems Integration, TCP/IP, Software Vulnerability Management, Scripting, Identity Services Engine, Juniper, Information Technology, Palo Alto Networks, Nessus, Enterprise Integration, Fortinet, Cisco - **Published:** July 15, 2026 - **Apply:** https://dejobs.org/x/x/EEE380839DA344F9945199793B17CDB8/job/ ## About the Role Required: * Education: Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field, or equivalent experience. * Experience: 10+ years of related work experience with demonstrated ISSE/ISSO responsibilities, preferably within the Intelligence Community or DoD environment. * Clearance: Current TS/SCI with Polygraph (Required). * Certifications: Must meet DoD 8570/8140 IASAE Level II requirements (e.g., CISSP, CASP+, or CSSLP). * Compliance Knowledge: Working knowledge of NIST 800-53 security controls and experience with RMF processes. * Technical Skills: Understanding of network protocols (TCP/IP, DNS, HTTP) and security concepts including VPNs, IDS/IPS, and DMZ configurations. * Tooling Experience: Experience with A&A tracking tools such as Xacta or eMASS. * Communication: Strong analytical, problem-solving, and communication skills with the ability to document technical security findings clearly. Desired: * Security Certifications: CISM, Security+, CCSP, or GSLC. * Networking Certifications: CCNP Enterprise with the SD WAN, CCIE Security, JNCIS-ENT, JNCIP-ENT, or JNCIE-ENT * Platform Experience: Exposure to major firewall platforms (e.g., Palo Alto, Cisco ASA, Fortinet). * Tools Experience: Cisco Identity Services Engine (ISE), Juniper Contrail, Cisco DevNet, Juniper Automation, or other networking orchestration tool. * Scripting: Basic proficiency in Ansible, Python, PowerShell, or Bash for task automation. * SIEM Experience ## Description We are seeking a technically proficient Information Systems Security Engineer to support the security posture of our Network Infrastructure. In this role, you will implement and maintain comprehensive security measures to protect customer data, systems, and networks. This position plays an important role in ensuring security is integrated throughout the system lifecycle, from design through operation, supporting the mission while maintaining strong defensive measures. Responsibilities: * Security Architecture Support: Contribute to the design and documentation of secure system architectures that meet mission requirements and security standards. * RMF Process Execution: Support Risk Management Framework (RMF) activities (Steps 1-6), assisting Information System Security Officers (ISSOs) in taking systems from initial categorization through Authorization to Operate (ATO). * Security Documentation: Develop and maintain Assessment & Authorization (A&A) documentation, including Systems Security Plans (SSP), Security Control Traceability Matrix (SCTM), and Body of Evidence (BoE). * Security Engineering: Designs security architectures from requirements phase, defining system security requirements, and integrating capabilities including Zero Trust Architecture Software Defined Networking (SDN), macro/micro-segmentation, and software-defined perimeter controls to enable continuous verification and minimize network attack surfaces. * Security Evaluation: Participate in formal and informal design reviews to identify potential security weaknesses, deficiencies, and/or vulnerabilities in the design - evaluating designs for security impacts before implementation. * Compliance Implementation: Ensure hardware and software comply with Government Security Certification Officer (SCO) requirements and align with NIST SP 800-53, ICD 503, and CNSSI 1253 standards. * Continuous Monitoring: Implement and maintain continuous monitoring (ConMon) activities using automated tools to track system health and compliance status. * Vulnerability Management: Perform risk assessments and security audits; use tools like Nessus (ACAS) and SCAP to identify, track, and remediate vulnerabilities. * Incident Response Support: Assist with incident response activities and participate in on-call rotation for security incidents. * Network Integration Support: Provide support for network mapping activities and system interdependencies to ensure secure data flow across the enterprise. ## Related Videos - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [Your Infrastructure Is Not a Playground: AI Agents for Infra Done Right](https://www.wearedevelopers.com/videos/2084-your-infrastructure-is-not-a-playground-ai-agents-for-infra-done-right) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)