ISSO / Cyber Engineer

Strategic Inc
Springfield, VA, United States
1 day ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours

Tech stack

Kubernetes Security Microsoft Azure Cloud Engineering Cloud Foundry Cyber Security Federated Identity Management Key Management Zero Trust Network Access SAP (Applications) Toolchain Software Vulnerability Management Policy as Code
+4 more
HybridCloud Data Layers Kubernetes Information Technology

Job description

Strategic ACI is seeking an ISSO / Cyber Engineer to support accreditation and cybersecurity for a Digital Engineering Ecosystem (DEE) supporting NGA from program stand-up. This role partners closely with platform engineering and the Enterprise Architect (who holds overall governance ownership for the program) to ensure the Cloud Native Platform, Data Layer, and Digital Engineering tool chain meet ATO and compliance requirements across TS/SCI and future SBU/Secret/CAP-SAP enclaves.

The position is embedded in the core delivery team from kickoff, building Zero Trust Architecture (ZTA) hardening into the Cloud Native Platform as it is stood up, and coordinates directly with government security stakeholders on boundary definitions and compliance timelines as the team scales toward FedRAMP Azure Gov and NGA CORE onboarding. As an experienced engineering role, this position ensures completion of assigned technical and compliance tasks within estimated time frames and budget constraints while meeting established quality standards., * Support Authority to Operate (ATO) and compliance activities for the DEE across the Cloud Native Platform, Data Layer, and Digital Engineering tool chain.

  • Partner with platform engineering to validate Zero Trust Architecture (ZTA) implementation, including identity/access controls, secrets management, hardened container images, and Kubernetes policy enforcement.
  • Develop and maintain security documentation (e.g., System Security Plans, POA&Ms, risk assessments) required for accreditation of DEE components.
  • Support continuous monitoring, vulnerability management, and incident response coordination for the DEE environment.
  • Assess security implications of new tool onboarding and architecture decisions, feeding into the program’s Architecture Decision Record (ADR) process.
  • Coordinate with government security stakeholders on accreditation timelines, boundary definitions, and compliance reviews as the platform scales toward external stakeholder integration.
  • Support secure onboarding processes for expanding user bases and, eventually, limited external participant access.

Requirements

  • Active TS/SCI clearance and the ability to pass a CI polygraph within 30 days.
  • Bachelor’s degree in Cybersecurity, Computer Science, or a related field, or additional relevant experience in lieu of a degree.
  • Experience supporting NGA, DoD, or Intelligence Community accreditation efforts.
  • 10+ years of information systems security / ISSO experience within IC or DoD environments.
  • Working knowledge of the Risk Management Framework (RMF) and experience supporting ATO packages for cloud-native or hybrid-cloud systems.
  • Familiarity with Zero Trust Architecture principles and associated technical controls (identity federation, secrets management, policy-as-code, hardened images).
  • DoD 8570/8140-compliant certification (e.g., Security+, CISSP, or equivalent) at time of hire or shortly thereafter.

Desired:

  • Experience serving as an ISSO or ISSM of record for an accredited IC or DoD system.
  • Familiarity with Kubernetes security tooling (Kyverno, OPA/Gatekeeper) and supply-chain security practices.
  • Experience supporting multi-enclave environments (TS/SCI, Secret, SBU, CAP/SAP) and cross-domain solution considerations.
  • CISSP, CISM, or equivalent advanced cybersecurity certification.

Benefits & conditions

Salary will be commensurate within the advertised range, based on applicable qualifications., Strategic Alliance Consulting, Inc. believes that our greatest asset is our employees. Our goal is not to meet our staff’s expectations, but to exceed them. Competitive salaries, work-life balance, industry leading benefits packages, and family first values are at the core of Strategic ACI’s culture.

We’re proud the be selected as a 2020 Best Places to Work in the Greater Washington Area by the Washington Business Journal (WBJ), as well as being 1 of 19 Virginia based companies to be awarded the prestigious HIRE Vets Gold Medallion by the Department of Labor for our commitment to veteran hiring, retention, and professional development.

Your Strategic ACI Total Rewards Compensation Package includes:

  • Competitive salary
  • 100% benefits paid (Includes; health, dental, and vision plan premiums) for all full time employees and their families
  • 401k with 5% match vested at day one!
  • Profit sharing commensurate with company growth
  • PTO - 3 weeks and 3 days per year
  • 11 Company Paid Holidays (aligned with Federal Government)
  • Long term/Short term disability
  • 1.5x salary life insurance
  • $100 per month cell phone allowance
  • $6000 cash in lieu of benefits per year if employee is insured elsewhere
  • Tuition reimbursement of up to $5,250 per year for college or professional certifications
  • Casual dress code, company lunches, flexible schedules, employee phone plan discounts

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · WWC 2022

3:12 min

Integrating toolchains to improve engineering efficiency and culture

Amir Friedman Amir Friedman +2 · WWC 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · WWC 2022

2:11 min

Promoting an open toolchain to maximize developer choice

Anu Bharadwaj Anu Bharadwaj · WWC 2023

Videos

See all

Related articles

See all