> Markdown version of [/jobs/ext/1457658-information-system-security-engineer-iii](https://www.wearedevelopers.com/jobs/ext/1457658-information-system-security-engineer-iii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Engineer III - **Company:** Clearedge It Solutions Llc - **Location:** Jessup, MD, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Excel, Artificial Intelligence, Software System Penetration Testing, Audit Trail, Cloud Computing Security, Cyber Security, Information Systems, Information Security Management, Role-Based Access Control, Security Software, Security Information and Event Management, Software Engineering, Systems Architecture, Software Security, Firewalls (Computer Science), Information Technology, Devsecops, Plan of Action and Milestones, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** July 27, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9059094/information-system-security-engineer-iii ## About the Role * Active TS/SCI with Polygraph clearance; U.S. citizenship * Bachelor's degree in Computer Science, Software Engineering, or related field (4 years of experience may substitute), plus 8 years of experience in information systems * 5-8 years of experience as an ISSE or Cybersecurity Engineer * Proficiency with networking, firewalls, and security monitoring tools * Knowledge of operating systems, system security design, risk analysis, and security policies * Experience with NIST Risk Management Framework (RMF) or DoD 8500 series compliance * Experience reviewing and shaping secure system architecture alongside development teams * Experience conducting vulnerability assessments and security testing Nice to Have: * Experience embedding security into CI/CD pipelines and DevSecOps workflows * Familiarity with container and cloud security tooling * Experience with automated security scanning (SAST/DAST) as part of the development lifecycle * Experience with cryptography, encryption technologies, and application security * Experience with penetration testing * Experience with physical security or facility accreditation practices, such as ICD 705 or similar frameworks ## Description Join ClearPoint as an Information System Security Engineer III, where you will lead the security engineering and accreditation work behind MERIDIAN, our AI-Enabled Secure Space Operations & Management Platform. You will work closely with internal and external stakeholders to build security into the system throughout its lifecycle, reviewing architecture, testing the system as it's built, and shaping controls alongside engineers concurrently with development and implementation. You will own the RMF package for MERIDIAN's implementation, from SSP and SAR development through POA&M management and continuous monitoring, while staying technically engaged with the platform as it evolves. You Will Excel in This Role If You Are: * Experienced leading RMF/ATO efforts for classified DoD or IC systems * Comfortable reviewing and shaping secure system architecture alongside engineers, not just documenting it after the fact * Skilled in vulnerability assessment and security testing of live systems * Familiar with NIST SP 800-53 and DoD RMF processes at an implementation level * Capable of translating security findings into concrete, actionable remediation guidance * Comfortable balancing compliance documentation with ongoing hands-on technical engagement * Experienced mentoring less experienced security staff A Day in the Life: * Develop and maintain SSP, SAR, and POA&M documentation for RMF accreditation * Review system architecture and provide security guidance to engineers during design and development * Conduct vulnerability scans and security assessments of the system as it's built * Identify security weaknesses and recommend system-level remediation * Implement and manage security controls, including identity/RBAC, audit logging, and encryption * Track and drive remediation of findings identified during security assessment * Mentor junior security staff and provide technical guidance ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Software Engineer Career: Things You Should Know](https://www.wearedevelopers.com/magazine/143-software-engineer-career-things-you-should-know)