> Markdown version of [/jobs/ext/2024414-information-systems-security-engineer-isse](https://www.wearedevelopers.com/jobs/ext/2024414-information-systems-security-engineer-isse). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Engineer (ISSE) - **Company:** AnaVation, LLC - **Location:** San Antonio, TX, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Agile Methodology, Amazon Web Services, Software System Penetration Testing, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, OpenShift, Systems Development Life Cycle, Cloud Services, Zero Trust Network Access, Software Engineering, Software Factory, Systems Integration, Software Vulnerability Management, Cloud Platform System, Spring Cloud, Containerization, Kubernetes, Information Technology, CIS Benchmarks, Cyber Warfare, Devsecops, Security Orchestration, Automation & Response - **Published:** August 11, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/87995768/1 ## About the Role * Clearance: U.S. Citizen, TS/SCI cleared within last 2 years; CI Polygraph within last 5 years * Education: Bachelor's degree in Cybersecurity, Computer Science, Engineering, Information Technology, or related field * Certification: One or more of the following: CISSP, CCSP, AWS Security Specialty or Equivalent DoD 8140 certification * Location: Full-time on-site in San Antonio, TX. * Experience and knowledge: + Nine or more years supporting Department of Defense or Intelligence Community cybersecurity missions. + Nine or more years of cybersecurity engineering, information assurance, RMF, DevSecOps, or cloud security experience. + Experience implementing cybersecurity controls within cloud-native or containerized environments. + Experience supporting RMF implementation and security engineering activities. + Working knowledge of NIST SP 800-53, RMF, STIG implementation, vulnerability management, and continuous monitoring. + Experience integrating cybersecurity into Agile software development environments. + Experience supporting Kubernetes, OpenShift, containers, or cloud platforms. + Excellent written and verbal communication skills. + Ability to work collaboratively across multidisciplinary engineering teams., * Clearance: TS/SCI w/CI Poly * Education: Advanced degree in Cybersecurity, Computer Science, Engineering, Information Assurance, or related field. * Certification: One or more of the following: CISSP, Sec+, CASP, CySA, Certified Cloud Security Professional (CCSP). * Experience an Knowledge: + Nine or more years supporting DoD cybersecurity engineering missions. + Experience implementing Zero Trust architectures. + Experience supporting Continuous Authority to Operate (cATO). + Experience securing Kubernetes, OpenShift, containers, or cloud-native platforms. + Experience implementing DevSecOps security automation and Infrastructure-as-Code. + Experience supporting IL4/IL5/IL6 cloud environments. + Experience supporting Cyber Operations Teams or penetration testing organizations. + Experience supporting software factory environments across multiple security domains. ## Description AnaVation is seeking a highly motivated Information Systems Security Engineer(ISSE) to support a high-visible contract and will be responsible for delivering cybersecurity engineering, secure software development, DevSecOps integration, and Risk Management Framework (RMF) implementation across Department of Defense. The ISSE will serve as an embedded cybersecurity engineer working alongside Government engineers, Cyber Operations Teams (COT), Cyber Penetration Teams (CPT), software developers, cloud engineers, and DevSecOps personnel to engineer, implement, automate, and continuously improve cybersecurity controls supporting mission applications and cloud services. This position supports secure capability delivery across multiple value streams and classification levels while enabling Continuous Authority to Operate (cATO), Zero Trust, and cloud-native cybersecurity initiatives., Position Responsibilities: The Information Systems Security Engineer (ISSE) provides cybersecurity engineering expertise throughout the system development lifecycle by designing, implementing, testing, and sustaining security controls that enable secure software delivery within agile and DevSecOps environments. Responsibilities include: * Integrate cybersecurity requirements into cloud-native applications, Kubernetes/OpenShift platforms, CI/CD pipelines, and containerized workloads throughout the software development lifecycle. * Engineer and implement security controls supporting Risk Management Framework (RMF) authorization, Continuous Authority to Operate (cATO), and continuous monitoring objectives. * Identify, assess, and remediate cybersecurity vulnerabilities through vulnerability management, security engineering, and technical risk mitigation activities. * Design and implement Zero Trust security architectures, container hardening, and cloud security best practices across mission environments. * Collaborate daily with Government leadership, Cyber Operations Teams (COT), Cyber Penetration Teams (CPT), software developers, cloud engineers, and cybersecurity assessors to integrate security into Agile and DevSecOps workflows. * Support cybersecurity assessments, penetration testing, security control validation, and remediation of assessment findings. * Implement and maintain Security Technical Implementation Guides (STIGs), security baselines, and secure configuration standards across development, testing, staging, production, and classified environments. * Evaluate cybersecurity risks and develop technical security solutions that balance mission requirements with enterprise security objectives. * Implement cybersecurity automation, improving engineering efficiencies, and strengthening the overall security posture. * Enable the delivery of resilient, mission-ready software capabilities that support secure operations and accelerate capability delivery to the warfighter. * Serve as the cybersecurity lead supporting all contract value streams. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [This Is Not Your Father's .NET](https://www.wearedevelopers.com/videos/967-this-is-not-your-father-s-net) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)