Information Systems Security Engineer - Intermediate (ISSE) - Secret Clearance Required

Akima
Norfolk, VA, United States
20 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$155,000.0 - $165,000.0
Working hours
Regular working hours
Job source

Tech stack

Comptia Cloud+ Xacta Cloud Computing Security Cyber Security Information Systems Computer Networks Software Engineering Software Vulnerability Management Malware SC Clearance Information Technology Plan of Action and Milestones
+1 more
Vulnerability Analysis

Job description

AMO is looking for a Information Systems Security Engineer - Journeyman (ISSE) to work in support of Naval Air Warfare Center Training Systems Division (NAWCTSD) in Norfolk, Virginia., * Plan, implement, monitor, and maintain cybersecurity controls to protect computer networks, systems, and information across classified and unclassified environments.

  • Perform vulnerability scanning and assessment activities using tools such as ACAS and Evaluate-STIG, ensuring accurate configuration, execution, validation, and reporting of results.
  • May support systems undergoing the acquisition lifecycle by assessing cybersecurity risks, identifying vulnerabilities, and recommending mitigation strategies in accordance with RMF and NAVAIR guidance.
  • May execute cybersecurity testing and validation activities for systems undergoing Assess and Authorize (A&A).
  • Develop, review, and maintain RMF artifacts and supporting documentation to ensure compliance with DoD and NAVAIR cybersecurity requirements.
  • Assess risks to IT assets using available threat and vulnerability intelligence and provide clear, actionable risk recommendations.
  • Provide technical expertise to identify security-related issues affecting current and planned systems, networks, and architectures within the NAVAIR enterprise and RDT&E environments.
  • Respond to and assist with the investigation of cybersecurity incidents, vulnerabilities, and malware events as required.
  • Serve as the primary and sole on-site cybersecurity resource, independently managing assigned tasks, priorities, and deliverables while coordinating with off-site team members and government stakeholders.
  • Ensure cybersecurity deliverables are accurate, current, and usable on first submission, requiring minimal rework.
  • Maintain awareness of emerging cybersecurity threats, tools, and best practices, and provide documented recommendations when appropriate.
  • Maintain required training, certifications, and technical proficiency to adapt to evolving cyber threat landscapes and mission needs.

Requirements

  • Active DoD Secret clearance.
  • Minimum 3 years of hands-on cybersecurity experience implementing, upgrading and monitoring security measures for the protection of computer networks and information.
  • Demonstrated experience performing vulnerability scanning and compliance assessments using tools such as ACAS and/or Evaluate-STIG.
  • Experience supporting RMF / A&A processes, including development, maintenance, or review of cybersecurity documentation and artifacts.
  • Experience identifying, assessing, and documenting cybersecurity risks and mitigation strategies.
  • Ability to work independently as the sole on-site cybersecurity resource, managing workload, priorities, and task execution with minimal supervision.
  • Strong attention to detail and ability to produce accurate, first-pass cybersecurity deliverables.
  • One or more of the following DoD 8140 qualifications:
  • Certified Cloud Security Professional (CCSP)
  • CompTIA Cloud+ CompTIA SecurityX (Formerly CASP+)
  • BS degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Data Science, or Software Engineering.

Desired Qualifications:

  • Experience supporting NAVAIR, Navy, or DoD RDT&E environments.
  • Hands-on experience with ACAS scan configuration, execution, validation, and reporting.
  • Hands-on experience using Evaluate-STIG for STIG assessments, compliance tracking, and remediation support.
  • Experience working with eMASSTER, Xacta, or similar RMF tools.
  • Experience supporting systems across classified and unclassified networks.
  • Familiarity with STIG implementation, POA&M development, and vulnerability remediation tracking.
  • Experience supporting cybersecurity efforts during system acquisition, testing, and A&A phases.
  • Demonstrated ability to operate autonomously while maintaining effective communication with remote teams and government stakeholders.

Benefits & conditions

Regular - The company offers a comprehensive benefits program, including medical, dental, vision, life insurance, 401(k) and a range of other voluntary benefits. Paid Time Off (PTO) is offered to regular full-time and part-time employees.

About the company

Work Where it Matters

Akima Mission Optimization (AMO), an Akima company, is not just another federal logistics contractor. As an Alaska Native Corporation (ANC), our mission and purpose extend beyond our exciting federal projects as we support our shareholder communities in Alaska.

At AMO, the work you do every day makes a difference in the lives of our 15,000 Iñupiat shareholders, a group of Alaska natives from one of the most remote and harshest environments in the United States.

For our shareholders , AMO provides support and employment opportunities and contributes to the survival of a culture that has thrived above the Arctic Circle for more than 10,000 years.

For our government customers , AMO delivers innovative administrative support services that streamline operations, and enhance productivity.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:55 min

Executing secure deployments with verified compliance and data residency

Alex Laubscher Alex Laubscher · WWC 2025

1:27 min

Differences between autonomous AI agents and traditional malware

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

Videos

See all

Related articles

See all