Information Systems Security Engineer

Everforth Apex
Suitland-Silver Hill, MD, United States
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$120,640.0 - $130,000.0
Working hours
Regular working hours
Job source

Tech stack

Xacta Microsoft Windows Amazon Web Services Systems Engineering User Authentication Microsoft Azure Cloud Computing Cloud Engineering Cyber Security Computer Networks Linux Github
+18 more
Identity and Access Management Information Systems Security Architecture Professional Network Security Ansible Security Information and Event Management Trusted Systems Virtualization Technology Software Vulnerability Management Software Repository SARS Software Products Cyber Threat Analysis Gitlab Containerization Kubernetes Information Technology Terraform Devsecops Docker

Job description

The ISSE will be responsible for engineering, implementing, and maintaining cybersecurity solutions across enterprise information systems and networks. This role partners closely with system engineers, architects, cybersecurity analysts, developers, and program leadership to ensure systems are designed, implemented, and maintained in accordance with Risk Management Framework (RMF) requirements, DoD cybersecurity directives, and industry security best practices., * Develop and maintain system security documentation, including:

  • System Security Plans (SSPs)
  • Security Assessment Reports (SARs)
  • Plans of Action & Milestones (POA&Ms)
  • STIG compliance documentation
  • Apply NAVINTEL ICD 503 Risk Management Framework (RMF) policies and DoD/Navy cybersecurity directives to system design and implementation.
  • Collaborate with ISSOs, ISSMs, Program Managers, and Systems Engineers to ensure security controls are effectively implemented and maintained.
  • Support system categorization, security control selection, assessment, authorization, and continuous monitoring activities in accordance with NIST SP 800-53 and RMF requirements.
  • Provide guidance on secure architecture, authentication, encryption, network security, and system hardening strategies.
  • Support vulnerability management efforts, remediation planning, and STIG compliance activities.
  • Work directly with stakeholders to resolve vulnerabilities and complete security checklists and compliance requirements.
  • Maintain awareness of cybersecurity threats, compliance requirements, and emerging security technologies.
  • Support security initiatives within cloud and enterprise environments including AWS, Azure, Windows, and Linux platforms.
  • Utilize Governance Risk and Compliance (GRC) tools such as eMASS and Xacta.

Requirements

Certification: IAT Level III certification required (see approved certifications below), * Active TS/SCI Security Clearance

  • Active IAT Level III Certification, including one of the following:
  • CISSP (or Associate of ISC )
  • CASP+
  • CCNP Security
  • CISA
  • GCED
  • GCIH
  • Bachelor’s degree in Cybersecurity, Computer Science, Engineering, Information Technology, or a related field (or equivalent experience).
  • 3-6 years of experience in cybersecurity, information assurance, or information systems security engineering.
  • Working knowledge of NAVINTEL ICD 503 RMF implementation policies and DoD/Navy cybersecurity directives.
  • Understanding of ISSO responsibilities under SECNAV M-5239.2.
  • Experience with:
  • NIST SP 800-53
  • RMF
  • DoD STIGs
  • Secure systems architecture
  • Familiarity with enterprise network architectures, Windows/Linux operating systems, and cloud platforms.
  • Strong understanding of authentication, encryption, network security, vulnerability management, and secure design principles.

Preferred Qualifications

  • Experience with DevSecOps methodologies, CI/CD pipelines, and Infrastructure as Code (Terraform, Ansible).
  • Knowledge of containerized environments and security best practices (Docker, Kubernetes).
  • Experience with enterprise security technologies including SIEM, IAM, endpoint protection, and security monitoring tools.
  • Previous support of Navy, Intelligence Community (IC), or other classified programs.
  • Knowledge of virtualization technologies and concepts.
  • Familiarity with cloud architecture, engineering, and design principles.
  • Experience using code repositories such as GitHub and GitLab.
  • Understanding of Linux operating systems and distributions.
  • Excellent written and verbal communication skills with the ability to brief technical and non-technical stakeholders.

About the company

Apex is seeking an Information Systems Security Engineer (ISSE) to support the Office of Naval Intelligence (ONI) in Suitland, Maryland. This is a 100% onsite position requiring an active TS/SCI clearance and a qualifying IAT Level III certification., Everforth Apex is a world-class IT services company that serves thousands of clients across the globe. When you join Everforth Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRateds Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico.

Everforth Apex uses a virtual recruiter as part of the application process. Click for more details. By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Everforth Apex and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:34 min

Docker sandbox architecture and microVM environment integration

Manuel de la Peña Manuel de la Peña · WWC Europe 2026

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all