cleared Cybersecurity Information System Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+31 more
Job description
As part of the Leidos Cybersecurity Engineering Team, the Cybersecurity Information System Security Engineer (ISSE) will serve as a cybersecurity engineering contributor responsible for designing, integrating, assessing, and maturing cybersecurity solutions across mission systems, software/hardware designs, lab environments, and operational test configurations. The ISSE will work closely with system owners, software engineers, hardware engineers, network engineers, test teams, ISSMs, and program leadership to ensure cybersecurity requirements are engineered into system architectures, implemented through technical controls and secure configurations, validated through testing, and documented in support of RMF authorization activities.
- Engineer cybersecurity solutions into mission systems, software applications, networks, lab environments, and integrated hardware/software platforms throughout the system lifecycle.
- Translate cybersecurity requirements, NIST SP 800-53 controls, RMF objectives, customer requirements, and mission needs into implementable technical designs, configurations, and verification methods.
- Develop, review, and maintain cybersecurity architecture artifacts, including security design descriptions, network/security boundary diagrams, data flow diagrams, control implementation details, interface descriptions, and system hardening approaches.
- Support cybersecurity design decisions for tactical networking and communications environments, including boundary protection, segmentation, authentication, encryption considerations, logging visibility, and performance or storage tradeoffs in constrained environments.
- Partner with software, hardware, network, and systems engineering teams to design and implement secure configurations, authentication and authorization mechanisms, logging/auditing, encryption, boundary protections, vulnerability mitigations, and secure system interfaces.
- Support secure system integration in Software Integration Laboratory and test environments, including Linux system hardening, scripting/automation, vulnerability remediation, tool integration, and security configuration management.
- Perform technical security assessments of systems, components, and configurations to identify design gaps, implementation weaknesses, vulnerabilities, and cyber risk; recommend and implement engineering-based remediation plans.
- Lead or support vulnerability management activities, including interpreting Tenable Nessus, SCAP, STIG, ACAS, or similar scan results; validating findings; developing technical fixes; coordinating remediation with engineers; and verifying closure.
- Design and implement mitigations for vulnerabilities discovered during system scans, security audits, integration events, ground testing, and flight-test preparation.
- Support implementation and validation of security controls, including documenting how controls are technically satisfied, identifying residual risk, and providing objective evidence for RMF authorization packages.
- Participate in design reviews, engineering review boards, configuration control boards, cyber risk reviews, and test readiness events to ensure cybersecurity considerations are addressed before system deployment.
- Develop or contribute to cybersecurity test procedures, security verification methods, risk assessments, and technical inputs for RMF artifacts, POA&Ms, system security plans, and authorization documentation.
- Assess cybersecurity events, anomalies, and system deficiencies to determine technical impact, root cause, mission risk, and corrective actions.
- Collaborate with ISSMs, ISSOs, system owners, and customer stakeholders to align technical cybersecurity implementation with program compliance, authorization, and operational objectives.
- Support continuous improvement of cybersecurity engineering practices, including automation, secure configuration baselines, vulnerability remediation playbooks, and repeatable lab/test environment security processes.
Requirements
Linux Splunk Nessus Syslog Auditd Writing Rsyslog Auditing Research NIST 800 Equities Scripting Hardening Leadership Automation Innovation Encryption Cyber Risk Market Data Test Design NIST 800-53 Coordinating Multitasking Cryptography Communication Risk Analysis Cyber Security Systems Design Flight Testing Key Management Authentications Software Design Confidentiality Ancient History Computer Science Network Security Security Controls Agile Methodology CompTIA Security+ Cyber Engineering Data Flow Diagram Laboratory Testing Systems Engineering Systems Integration Information Systems Computing Platforms Remediation Systems Software Engineering Lifecycle Management Top Secret Clearance Atlassian Confluence Vulnerability Scanning Linux Security Modules Security Configuration Communications Security Cyber Security Policies Configuration Management IT Security Architecture Vulnerability Management Vulnerability Assessments Bash (Scripting Language) Authorization (Computing) Laboratory Experimentation Information Systems Security Scrum (Software Development) Battle Management Technology Continuous Improvement Process Plan Of Action And Milestones (POA&M) Security Onion (Intrusion Detection System) Security Information And Event Management (SIEM) Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) Command Control Communications Computers Intelligence Surveillance And Reconnaissance (C4ISR), * Bachelor’s degree in computer science, IT, cybersecurity or closely related field with 4+ years of experience in the Cybersecurity ISSE technical/professional discipline. An additional 4 years of experience may be considered in lieu of a degree
- Must be a US Citizen
- Must have an active DoD Top Secret clearance with the ability to obtain and maintain TS/SCI
- Possess a Security+ 8570 certification
- Experience working in a Software Integration Laboratory environment
- Strong understanding of Linux systems. Ability to write bash scripts and alter Linux security configurations
- Strong understanding of information security and cybersecurity policies, principles, and practices in the delivery of all IT services
- Well versed in the understanding and implementation of security controls within the NIST SP 800-53A
- Experienced with policies and procedures to ensure information systems confidentiality, integrity, and accessibility
- Experience in risk and vulnerability assessments of information systems to identify vulnerabilities, risks, and protection needs
- Experience in documenting system deficiencies and recommending solutions for remediation
- Familiar with automated vulnerability scans using Tenable Nessus, SCAP, or other similar applications
- Experience with participating in security evaluations, audits, and reviews
- Be able to learn and apply new technologies, tools, and engineering practices that support ISSE responsibilities, including secure system design, security control implementation, vulnerability remediation, system hardening, and cybersecurity test/validation activities. Strong desire to grow and learn new technologies
- Ability to communicate effectively in writing and verbally from informal one-on-one discussions or in a small group environment
- Ability to work within a dynamic work environment, ability to handle multiple tasks at once (multi-task)
Preferred Qualifications:
- Familiar with Agile Methodologies, preferably SCRUM or Kanban
- Experience with Atlassian tools such as JIRA, Confluence, Bitbucket
- Experienced with Splunk, Tenable Nessus, SCAP applications and tools
- Experience supporting airborne, tactical networking, C2/C3/C4ISR, battle-management, embedded, or other integrated mission-system environments
- Experience engineering centralized audit logging, syslog, SIEM, or network security monitoring solutions using tools such as Splunk, Elastic, Security Onion, Zeek, Suricata, rsyslog, syslog-ng, auditd, or similar
- Familiarity with DoD cryptographic protection concepts, including COMSEC, TRANSEC, key management, secure communications interfaces, and data-at-rest protection, Linux Splunk Nessus Syslog Auditd Writing Rsyslog Auditing Research NIST 800 Equities Scripting Hardening Leadership Automation Innovation Encryption Cyber Risk Market Data Test Design NIST 800-53 Coordinating Multitasking Cryptography Communication Risk Analysis Cyber Security Systems Design Flight Testing Key Management Authentications Software Design Confidentiality Ancient History Computer Science Network Security Security Controls Agile Methodology CompTIA Security+ Cyber Engineering Data Flow Diagram Laboratory Testing Systems Engineering Systems Integration Information Systems Computing Platforms Remediation Systems Software Engineering Lifecycle Management Top Secret Clearance Atlassian Confluence Vulnerability Scanning Linux Security Modules Security Configuration Communications Security Cyber Security Policies Configuration Management IT Security Architecture Vulnerability Management Vulnerability Assessments Bash (Scripting Language) Authorization (Computing) Laboratory Experimentation Information Systems Security Scrum (Software Development) Battle Management Technology Continuous Improvement Process Plan Of Action And Milestones (POA&M) Security Onion (Intrusion Detection System) Security Information And Event Management (SIEM) Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) Command Control Communications Computers Intelligence Surveillance And Reconnaissance (C4ISR) +0
Google IT Automation with Python
Benefits & conditions
Pay and benefits are fundamental to any career decision. That’s why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .
About the company
Leidos is dedicated to making the world a safer place. This starts with helping our customers in the Defense Industry achieve their critical missions. Our dedicated Defense Group employees are solving critical challenges across the globe. At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business., If you’re looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 - and moving faster than anyone else dares., Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com .
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.careercircle.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
7 Important Tips That Every Software Developer Should Know
Dev Digest 138 - Are you secure about this?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.