Information Systems Security Engineer III - (W2PE)

Trace3, Inc.
Colorado Springs, CO, United States
14 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$14,000.0 - $155,000.0
Working hours
Regular working hours

Tech stack

Kubernetes Security Microsoft Windows Amazon Web Services Systems Engineering Cyber Security System Configuration Linux Information Security Management Information Systems Security Architecture Professional Information Systems Security Engineering Professional Key Management Network Architecture
+11 more
Zero Trust Network Access Security Content Automation Protocol Software Vulnerability Management Cloud Platform System Kubernetes Information Technology Nessus Devsecops Docker Plan of Action and Milestones Vulnerability Analysis

Job description

We are flexible and resilient in a fast-changing environment. We continuously innovate and drive constructive change while keeping a focus on the “big picture.” We exercise sound business judgment in making high-quality decisions in a timely and cost-effective manner. We are highly creative and can dig deep within ourselves to find positive solutions to different problems.

Juice - The “Stuff” it takes to be a Needle Mover

We get things done and drive results. We lead without a title, empowering others through a can-do attitude. We look forward to the goal, mentally mapping out every checkpoint on the pathway to success, and visualizing what the final destination looks and feels like.

Teamwork - Humble, Hungry and Smart

We are humble individuals who understand how our job impacts the company’s mission. We treat others with respect, admit mistakes, give credit where it’s due and demonstrate transparency. We “bring the weather” by exhibiting positive leadership and solution-focused thinking. We hug people in their trials, struggles, and failures - not just their success. We appreciate the individuality of the people around us.

*This position will be hybrid remote, with 1-3 days on-site in Colorado Springs, CO required, some travel to client sites may be required Active (or active within 24months) Secret Security Clearance required, can hold TS, The Information System Security Engineer III (ISSE III) serves as a key technical leader responsible for integrating cybersecurity across the full lifecycle of complex information systems. This role acts as the primary liaison between systems engineering teams and security compliance stakeholders, ensuring security requirements are effectively implemented without compromising mission or operational objectives., Security Architecture & Engineering
  • Design, develop, and implement secure architectures across multi-level systems, cloud environments (AWS), and on-premise networks
  • Integrate security controls into system design aligned with NIST 800-53 and DoD requirements

Risk Management Framework (RMF) Leadership

  • Lead RMF lifecycle activities, including system categorization, control selection, implementation, and continuous monitoring
  • Tailor security controls based on system risk, mission needs, and operational constraints

Assessment & Authorization (A&A)

  • Develop and maintain Body of Evidence (BoE) documentation, including:

  • System Security Plans (SSP)
  • Security Assessment Reports (SAR)
  • Plan of Action & Milestones (POA&M)

Support assessment activities and coordinate with Authorizing Officials and assessors Vulnerability Management & System Hardening

  • Conduct vulnerability scans using tools such as Nessus, ACAS, and SCAP
  • Analyze findings, prioritize risks, and drive remediation efforts with engineering teams
  • Implement and validate system hardening in accordance with DoD and industry standards

Stakeholder Engagement & Security Advisory

  • Serve as a trusted advisor to engineering teams and leadership on cybersecurity risks and mitigation strategies
  • Translate technical vulnerabilities into mission and business risk for senior stakeholders
  • Provide security guidance on system changes, architecture decisions, and engineering trade-offs, * Remain in a stationary position for extended periods of time.
  • Operate a computer, keyboard, and other office equipment using hands and fingers.
  • Communicate effectively in person, over the phone, and through electronic means.
  • Occasionally move about the office to access files, office equipment, and meeting spaces.
  • Lift and/or move up to 15 pounds as needed.
  • Maintain specific vision abilities, including close vision and the ability to adjust focus.

Requirements

  • Minimum of 5 years of experience in cybersecurity, systems engineering, or information assurance
  • Experience implementing the DoD Risk Management Framework (RMF) in regulated or classified environments
  • Active certification meeting DoD 8570 / 8140 requirements (e.g., CISSP, CASP+, or equivalent)
  • Strong understanding of:

  • Network architecture and protocols
  • Encryption and key management
  • Secure system configuration (Windows and Linux)

Experience with vulnerability assessment tools (e.g., Nessus, ACAS, SCAP)

Ability to communicate complex technical risks to non-technical stakeholders, * CISSP-ISSEP or advanced cybersecurity certification

  • Experience working in AWS classified or GovCloud environments
  • Familiarity with DevSecOps pipelines and CI/CD security integration
  • Experience with container security (Docker, Kubernetes)
  • Knowledge of Zero Trust Architecture (ZTA)
  • Experience with compliance-as-code and automation tools

Benefits & conditions

Actual salary will be based on a variety of factors, including location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base salary.

Estimated Pay Range

$14,000 - $155,000 USD

The Perks

  • Comprehensive medical, dental and vision plans for you and your dependents
  • 401(k) Retirement Plan with Employer Match, 529 College Savings Plan, Health Savings Account, Life Insurance, and Long-Term Disability
  • Competitive Compensation
  • Training and development programs
  • Major offices stocked with snacks and beverages
  • Collaborative and cool culture
  • Work-life balance and generous paid time off

Our Commitment

At the core of Trace3’s DNA is our people. We are a diverse group of talented individuals who understand the importance of teamwork and demonstrating leadership, character, and passion in all that we do.

We’re committed to fostering an inclusive workplace where everyone feels respected, valued, and empowered to grow. We recognize that embracing diversity drives innovation, improves outcomes, fosters collaboration, boosts teammate satisfaction, and builds a more inclusive culture.

About the company

Trace3 is a leading Transformative IT Authority, providing unique technology solutions and consulting services to our clients. Equipped with elite engineering and dynamic innovation, we empower IT executives and their organizations to achieve competitive advantage through a process of Integrate, Automate, Innovate.

Our culture at Trace3 embodies the spirit of a startup with the advantage of a scalable business. Employees can grow their career and have fun while doing it!

Trace3 is headquartered in Irvine, California. We employ more than 1,200 people all over the United States. Our major field office locations include Denver, Indianapolis, Grand Rapids, Lexington, Los Angeles, Louisville, Texas, San Francisco.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:34 min

Docker sandbox architecture and microVM environment integration

Manuel de la Peña Manuel de la Peña · World Congress 2026 Europe

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

4:40 min

Assessing common Kubernetes security incidents and misconfigurations

Rico Komenda Rico Komenda · World Congress 2025

Videos

See all

Related articles

See all