Information Systems Security Engineer

Strategic Inc
Albuquerque, NM, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$170,000.0
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Amazon Elastic Compute Cloud Software Applications Systems Engineering Burp Suite C++ (Programming Language) CentOS Cloud Computing Cloud Computing Security Cyber Security Software Design Documents Linux
+20 more
Fault Tolerance Information Security Management Information Systems Security Architecture Professional Information Systems Security Engineering Professional Python (Programming Language) Systems Development Life Cycle Red Hat Enterprise Linux Fortify (Software) Ruby SAP (Applications) Virtualization Technology Scripting Enterprise Software Applications Software Security Information Technology Nessus Checkmarx Burpsuite Docker Vulnerability Analysis

Job description

Strategic ACI is seeking a Information Systems Security Engineer (ISSE) to serve as the Program Office’s information security professional responsible for managing all aspects of an organization’s information security system, including researching, testing, training, and implementing programs designed to safeguard sensitive information from possible compromise., This position requires travel, up to 25% per month. Works with System Engineering teams to incorporate cyber resiliency objectives, techniques, and design principles into all system engineering and development efforts throughout the systems development life cycle (SDLC). Develop and maintain documentation and diagrams for security tools, system environments, and cloud operations. Perform requirements analysis, design, and integration for complex software applications and collaboration infrastructures. Participate in the change management process, including reviewing Change Requests and assisting in the assessment of security impact of proposed changes. Write implementation and design documents describing how security features are implemented. Create and maintain information system security documentation, Standard Operating Procedures (SOP), and provide guidance on active Plans of Action and Milestones (POA&M). Conduct periodic and continuous monitoring of the system, procedures, and documentation to ensure compliance with the authorization package.

Requirements

US Citizen. Active TS/SCI Clearance and the ability to pass a CI Polygraph. Current or recent DoD SAP access. Bachelor’s degree in engineering, computer science, cybersecurity, networking, or programming. 7+ years’ technical experience in cybersecurity, information technology, or systems engineering. Experience working with Special Access Programs (SAPs). Ability to travel up to 25% per month. Strong proficiency fault tolerance, and Reliability, Maintainability, Availability (RMA) subject matter. Excellent analytical skills and be capable of quantifying risk to enterprise systems and level of compliance with security policy. Excellent verbal and written communication skills. Hands on experience with scripting. Experience in DOD Information Technology Security Certification and Accreditation Process (DITSCAP), DOD Information Assurance Certification and Accreditation Process (DIACAP), or Risk Management Framework (RMF). Advanced knowledge in one or more of the following areas: Java, Python, Ruby and/or C++ Linux Expertise (RedHat/RHEL or CentOS preferred) Dynamic & Static Application Security Scanning (e.g., Arachni, OWASP ZAP, BurpSuite, Fortify, Checkmarx, etc.) Virtualization and containers (EC2, Docker) Infrastructure Security Scanning, Vulnerability Scanning (Twistlock, ACAS/Nessus)

Certification requirements in one or more of the following: Certified Information Systems Security Professional (CISSP). Certified Cloud Security Professional (CCSP). Information Systems Security Engineering Professional (ISSEP)

Benefits & conditions

Tuition reimbursement, 401(k) matching, Paid time off, Vision insurance, 401(k) 5% Match, Dental insurance, Life insurance, Disability insurance, This policy applies to all aspects of employment, including hiring, promotion, demotion, compensation, training, working conditions, transfer, job assignments, benefits, layoff, and termination. Applicants can learn more about the company’s status as an equal opportunity employer by viewing the federal EEO is the Law poster. Why choose a career with Strategic ACI? Strategic ACI believes that our greatest asset is our employees. Our goal is not to meet our staff’s expectations, but to exceed them. Competitive salaries, work-life balance, industry leading benefits packages, and family first values are at the core of Strategic ACI’s culture.

Where benefits meet your needs: Competitive salary 100% benefits paid (Includes: Health, Dental, and Vision premiums) for all full-time employees, and their families 401(k) with 5% match vested at day one PTO - 3 weeks and 3 days per year, increasing at 5 years service 11 Company Paid Holidays (aligned with Federal Government) Long term/Short term disability 1.5x salary Life Insurance $100 per month Cellular Device and IT Resource Benefit $6,000 Cash in Lieu of Benefits per year, if employee is insured elsewhere Tuition reimbursement of up to $5,250 per year for college or professional certifications Retirement Savings 401(k) Contribution - Annually calculated as percentage of salary

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

50 sec

Why developer happiness matters in web frameworks

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

3:30 min

Falling in love with Ruby and creating Basecamp

David Heinemeier Hansson David Heinemeier Hansson +1 · Coffee With Developers

Videos

See all

Related articles

See all