Subject Matter Expert III - Information Systems Security Engineer

OneZero Solutions
Arlington, VA, United States
18 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Systems Engineering Cloud Engineering Configuration Management Cyber Security DevOps Information Systems Security Architecture Professional Information Systems Security Engineering Professional Power BI Policy as Code SC Clearance
+5 more
Information Technology Api Design Software Coding Restful APIs Devsecops

Requirements

We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance. Additional details are available on our website: https://www.onezerollc.com/careers/Position Title: Subject Matter Expert III - Information Systems Security EngineerLocation: Arlington, VA or Mechanicsburg, PAClearance: SecretJob Summary:The Subject Matter Expert III is key personnel serving as the lead Information Systems Security Engineer (ISSE). The role is the lead technical authority for designing, building, and sustaining DSCA’s layered security automation architecture in AWS infrastructure provisioning, configuration management, Policy-as-Code compliance validation, and orchestration and for translating DoW regulatory requirements into functional, automated, operational code. Education and Experience:Bachelor’s degree from an accredited institution in Information Technology, Computer Science, Engineering, or a related technical discipline.One of the following certifications: AWS Certified DevOps Engineer - Professional; AWS Certified Solutions Architect - Professional; AWS Certified Security - Specialty; or (ISC)2 CISSP, preferably with an engineering or architecture concentration (ISSEP/ISSAP).Twelve (12) years of demonstrated experience in systems engineering and cybersecurity, with at least seven (7) of those years focused on security automation, cloud engineering, and architecture.Five (5) years of demonstrated experience serving as a lead technical authority on enterprise-level projects, responsible for designing and implementing security solutions, not just assessing them.Five (5) years of demonstrated experience translating complex regulatory requirements (RMF, NIST, DISA STIGs) and architectural diagrams into functional, automated, and operational code.Active Secret clearance; U.S. citizenship required.Essential Duties: Serving as the lead Information Systems Security Engineer, developing and integrating cybersecurity designs for systems and networks.Designing, building, and maintaining the layered automation architecture.Infrastructure Provisioning Layer: developing and maintaining a library of approved, secure Infrastructure-as-Code templates.Configuration Management Layer: implementing solutions such as AWS Systems Manager to sustain secure configurations.Compliance Validation Layer: implementing Policy-as-Code capabilities by translating DoW control requirements into automated checks.Orchestration and Workflow Layer: delivering orchestration to coordinate complex, multi-step security workflows.Developing and managing the Compliance-as-Code (CaC) framework.Integrating AWS-native security services for continuous monitoring.Providing technical support for dashboard and API development, including Power BI dashboards and RESTful APIs that expose standardized, reusable compliance metrics.Knowledge, Skill and Abilities:Expert-level AWS engineering skill, including AWS-native security services and Systems Manager.Infrastructure-as-Code and secure baseline template development for repeatable, compliant provisioning.Policy-as-Code and Compliance-as-Code development, translating DoW control requirements into automated checks.Security orchestration and workflow automation across multi-step, multi-system processes.Dashboard and API engineering (e.g., Microsoft Power BI, RESTful APIs) to expose standardized, reusable compliance metrics.Deep working knowledge of RMF, NIST standards, and DISA STIGs in a DevSecOps delivery model.Ability to act as lead technical

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:24 min

Moving the semantic layer upstream to avoid vendor lock-in

Piotr Menclewicz Piotr Menclewicz · Europe 2026 Virtual

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all