> Markdown version of [/jobs/ext/2282103-trellix-cybersecurity-engineer-rmf-isso-ts-sci](https://www.wearedevelopers.com/jobs/ext/2282103-trellix-cybersecurity-engineer-rmf-isso-ts-sci). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Trellix Cybersecurity Engineer/RMF ISSO - TS/SCI - **Company:** Cornerstone Barricades - **Location:** Falls Church, VA, United States - **Experience:** Expert - **Salary:** $160,000.0 - $190,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing Security, Configuration Management, Cyber Security, Databases, Data Security, Data Systems, Linux, Information Security Management, Intrusion Detection and Prevention, McAfee VirusScan, Microsoft SQL Server, Security Content Automation Protocol, Security Information and Event Management, Software Vulnerability Management, SARS Software Products, Information Technology, Machine Learning Operations, Network Server, Vulnerability Analysis - **Published:** August 28, 2026 - **Apply:** https://ztisolutions.betterteam.com/senior-trellix-cybersecurity-engineer-rmf-isso-ts-sci-3/apply ## About the Role * 11-13 years of cybersecurity engineering experience, with significant hands-on expertise in Trellix (McAfee) architecture and administration. * Bachelor's Degree in Computer Science, Cybersecurity, or related field. * Active TS/SCI Clearance required. * 8570 IAT II compliant certification (e.g., Security+, CCNA Security, CySA+, GICSP, GSEC, SSCP). * Cloud Security Certification (e.g., AWS Certified Security - Specialty, CCSK, CCSP, Azure Security Engineer Associate). * Expert-level knowledge in deploying and managing Trellix ePO, Threat Prevention, DLP, and associated modules in DoD environments. * Demonstrated experience setting up Trellix from scratch, including policy configuration, system deployment, and integration with Microsoft SQL databases. * Strong understanding of DoD STIG compliance, vulnerability management, and security hardening for Windows and Linux systems. * Experience performing RMF ISSO responsibilities within classified environments. * Strong communication and collaboration skills, with experience working in cross-functional mission-focused teams. * U.S. Citizenship required due to contract requirements., * Trellix/McAfee Certified Product Specialist or similar vendor certifications. * Familiarity with SIEM integrations involving Trellix and enterprise logging solutions. * Experience with STIG compliance automation tools (e.g., SCAP, DISA STIG Viewer). * Prior experience supporting CDAO, AI/ML development environments, or advanced data security initiatives. * Ability to develop security engineering solutions in alignment with RMF, NIST, and DoD cybersecurity frameworks. ## Description ZTI is seeking a Senior Trellix Cybersecurity Engineer with RMF ISSO expertise to architect, implement, and manage a comprehensive Trellix security environment while supporting RMF compliance activities for a high-visibility Chief Digital and Artificial Intelligence Office (CDAO) mission focused on AI/ML development and securing advanced data systems. This role requires expertise in deploying Trellix from the ground up, configuring and managing all modules, performing STIG compliance across integrated devices including Microsoft SQL, and ensuring cybersecurity compliance through direct ISSO responsibilities. The candidate will support AI/ML development environments to ensure their security posture meets DoD and CDAO mission objectives., * Architect, install, configure, and manage Trellix ePO and associated modules from initial deployment to operational sustainment. * Integrate Trellix with Microsoft SQL databases, ensuring optimal performance, availability, and security compliance. * Develop and implement STIG hardening for all systems associated with Trellix deployment, including endpoints, servers, and databases. * Configure and manage endpoint security, DLP, threat prevention, and advanced Trellix modules to support CDAO AI/ML mission security requirements. * Conduct vulnerability assessments and remediate findings to maintain system compliance with DoD and CDAO security standards. * Develop operational documentation, SOPs, and as-built configurations for sustainment. * Collaborate with security teams, system administrators, and data engineers to integrate Trellix into AI/ML workflows securely. * Provide Tier III support and subject matter expertise for all Trellix-related issues and projects. Additional Duties - RMF ISSO Roles & Responsibilities: * Serve as Information System Security Officer (ISSO) for assigned AI/ML systems. * Support development, implementation, and maintenance of RMF packages, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POA&Ms). * Conduct continuous monitoring activities, vulnerability scanning, and security control assessments. * Coordinate with the Information System Security Manager (ISSM) and Authorizing Official (AO) to maintain system Authorization to Operate (ATO) status. * Ensure security requirements are integrated into system designs supporting AI/ML operations. * Maintain knowledge of evolving DoD, RMF, and CDAO cybersecurity policies to ensure compliance and proactive risk management. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Kubernetes and Microservices with Multi-Model Databases](https://www.wearedevelopers.com/videos/382-kubernetes-and-microservices-with-multi-model-databases) - [From Messy Queries to Scalable Systems - How Data Engineering actually works](https://www.wearedevelopers.com/videos/100203-from-messy-queries-to-scalable-systems-how-data-engineering-actually-works) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j)