Cyber ISSE Top Secret
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
An Insight Global client is seeking a Senior Information Systems Security Engineer (ISSE) to support cybersecurity and information assurance efforts for Department of Defense (DoD) programs at Hanscom Air Force Base. This individual will play a critical role in ensuring cybersecurity compliance, supporting Risk Management Framework (RMF) activities, advising program teams on security strategy, and reducing risk across complex weapon systems and information technology environments.
The ideal candidate will have extensive experience in DoD cybersecurity, RMF implementation, system security engineering, and security compliance activities throughout the system lifecycle.
Day-to-Day Responsibilities
Support system and application Authorization & Accreditation (A&A) efforts for weapon systems and Platform IT (PIT) systems.
Provide RMF guidance and oversight to ensure compliance with DoD and Air Force cybersecurity requirements.
Advise program teams on cybersecurity requirements, risk management strategies, and authorization activities throughout the acquisition lifecycle.
Review and assess system architectures and recommend cybersecurity solutions for both developmental and legacy environments.
Evaluate security threats, identify vulnerabilities, and recommend mitigation strategies to reduce overall program risk.
Translate program and system requirements into effective cybersecurity architectures and technical solutions.
Collaborate with engineering and development teams throughout the system lifecycle to integrate security into system design and implementation.
Support DevSecOps initiatives by identifying security flaws and vulnerabilities during code reviews and development activities.
Develop, implement, and maintain cybersecurity strategies and program protection documentation, including Program Protection Plans (PPP).
Conduct Critical Program Information (CPI) and Critical Components (CC) assessments.
Review and recommend system security contingency plans, disaster recovery plans, and TEMPEST requirements.
Utilize security compliance and vulnerability assessment tools including STIGs, Nessus, ACAS, SCC, and SCAP.
Review cybersecurity-related Contract Data Requirements Lists (CDRLs) and provide recommendations to program management teams regarding compliance and technical adequacy.
Promote cybersecurity awareness and best practices across cross-functional stakeholders.
Perform additional duties as assigned.
Requirements
Active Top Secret Clearance/ ability to obtain SAP access
RMF experience
5+ years supporting DoD programs
Experience with vulnerability/compliance tools (Nessus, ACAS, STIGs, SCC/SCAP)
Cybersecurity engineering experience supporting system authorization and accreditation efforts
Experience working with weapon systems, defense acquisition programs, or Platform IT systems
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
The Overflow: Security and Privacy
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Understanding and Mitigating Common Web Vulnerabilities
Walking Into The Era of Supply Chain Risks