> Markdown version of [/jobs/ext/1786319-senior-information-systems-security-engineer-isse](https://www.wearedevelopers.com/jobs/ext/1786319-senior-information-systems-security-engineer-isse). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information Systems Security Engineer (ISSE) - **Company:** ASEC Inc - **Location:** Virginia Beach, VA, United States - **Experience:** Expert - **Salary:** $160,000.0 - $180,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, Identity and Access Management, Live Virtual and Constructive, Security Content Automation Protocol, Systems Integration, Software Vulnerability Management, Information Technology, Enterprise Integration, Vulnerability Analysis - **Published:** July 13, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9028380/senior-information-systems-security-engineer-isse ## About the Role What You'll Bring, * Candidates must hold a current IAM-III certification (e.g., CISM, CISSP, or GSLC) as defined by DoD 8570.01-M. Please upload copies of any relevant IT certifications as part of your application. These documents help us verify qualifications during the initial screening process., * Ability to build positive, collaborative relationships across teams and with external partners. * Effective communicator with strong verbal and written skills. * Proactive, self-directed work style with the ability to operate independently. * Analytical thinker with proven problem-solving capabilities. * Highly organized, with the ability to balance competing priorities in a fast-paced environment. ## Description As the Senior Information Systems Security Engineer (ISSE), you will play a critical role in maintaining the cybersecurity posture of advanced Live, Virtual, and Constructive (LVC) training environments that support warfighter readiness. You will oversee continuous monitoring activities, vulnerability management, security compliance, and RMF sustainment efforts across complex training systems and networks. Working closely with system administrators, network engineers, cybersecurity professionals, and government stakeholders, you will help ensure mission systems remain secure, compliant, and available to support realistic, high-fidelity combat training., * Maintain cybersecurity compliance for simulation, modeling, and training systems. * Support accreditation of systems that connect live platforms, virtual simulators, and constructive training environments. * Ensure training networks and supporting infrastructure remain compliant and authorized for operation. * Coordinate cybersecurity requirements for major training exercises and distributed events. * Assess security impacts of new training capabilities, software updates, and system integrations. * Support all phases of the Risk Management Framework (RMF) lifecycle for assigned systems and enclaves. * Maintain cybersecurity documentation, including System Security Plans (SSPs), security control implementation statements, POA&Ms, and authorization artifacts. * Track and manage system authorization status and accreditation milestones. * Execute continuous monitoring activities in accordance with RMF requirements. * Review and assess security controls to ensure ongoing effectiveness. * Support annual security reviews and cybersecurity inspections. * Review vulnerability scan results from ACAS, SCAP, and other assessment tools. * Track vulnerabilities through remediation and closure. * Maintain Plans of Action and Milestones (POA&Ms) and provide status reporting to Support to LVC Training Systems. * This position may require up to 25% annual travel. This description outlines the general nature and scope of the role. Additional duties may be assigned as necessary., * Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Information Technology, Engineering, or a related technical field and ten (10) years of progressively responsible experience supporting cybersecurity compliance for Department of Defense (DoD) information systems. Additional directly related experience may be substituted for a degree. * Demonstrated experience implementing and maintaining the DoD Risk Management Framework (RMF) in accordance with DoDI 8510.01, including development and maintenance of System Security Plans (SSPs), security control implementation documentation, authorization packages, and Authority to Operate (ATO) artifacts. * Experience conducting continuous monitoring activities, managing system authorization status, supporting annual cybersecurity reviews and inspections, and maintaining Plans of Action and Milestones (POA&Ms). * Experience reviewing and remediating cybersecurity vulnerabilities using ACAS, SCAP, DISA Security Technical Implementation Guides (STIGs), and other security assessment tools to maintain compliance with DoD cybersecurity requirements. * Experience assessing cybersecurity impacts associated with system modifications, software updates, and new capabilities while supporting secure integration of mission systems, networks, and training environments. * Experience supporting Navy, NAVAIR, or other DoD programs involving classified information systems, simulation, modeling, or Live, Virtual, and Constructive (LVC) training environments is highly desired. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Microservices? Monoliths? An Annoying Discussion!](https://www.wearedevelopers.com/videos/970-microservices-monoliths-an-annoying-discussion) - [AI Agents & Agentic AI](https://www.wearedevelopers.com/videos/2017-ai-agents-agentic-ai) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [SRE Methods In an Agency Environment](https://www.wearedevelopers.com/videos/348-sre-methods-in-an-agency-environment) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries)