Cyber ISSE Top Secret

Insight Global
Lincoln, MA, United States
8 days ago
Apply on www.businessworkforce.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$114,400.0 - $135,200.0
Working hours
Regular working hours

Tech stack

Code Review Cyber Security SAP (Applications) Security Content Automation Protocol Software Requirements Analysis Cisco Discovery Protocol Information Technology Nessus Devsecops Vulnerability Analysis

Job description

An Insight Global client is seeking a Senior Information Systems Security Engineer (ISSE) to support cybersecurity and information assurance efforts for Department of Defense (DoD) programs at Hanscom Air Force Base. This individual will play a critical role in ensuring cybersecurity compliance, supporting Risk Management Framework (RMF) activities, advising program teams on security strategy, and reducing risk across complex weapon systems and information technology environments.

The ideal candidate will have extensive experience in DoD cybersecurity, RMF implementation, system security engineering, and security compliance activities throughout the system lifecycle.

Day-to-Day Responsibilities

Support system and application Authorization & Accreditation (A&A) efforts for weapon systems and Platform IT (PIT) systems.

Provide RMF guidance and oversight to ensure compliance with DoD and Air Force cybersecurity requirements.

Advise program teams on cybersecurity requirements, risk management strategies, and authorization activities throughout the acquisition lifecycle.

Review and assess system architectures and recommend cybersecurity solutions for both developmental and legacy environments.

Evaluate security threats, identify vulnerabilities, and recommend mitigation strategies to reduce overall program risk.

Translate program and system requirements into effective cybersecurity architectures and technical solutions.

Collaborate with engineering and development teams throughout the system lifecycle to integrate security into system design and implementation.

Support DevSecOps initiatives by identifying security flaws and vulnerabilities during code reviews and development activities.

Develop, implement, and maintain cybersecurity strategies and program protection documentation, including Program Protection Plans (PPP).

Conduct Critical Program Information (CPI) and Critical Components (CC) assessments.

Review and recommend system security contingency plans, disaster recovery plans, and TEMPEST requirements.

Utilize security compliance and vulnerability assessment tools including STIGs, Nessus, ACAS, SCC, and SCAP.

Review cybersecurity-related Contract Data Requirements Lists (CDRLs) and provide recommendations to program management teams regarding compliance and technical adequacy.

Promote cybersecurity awareness and best practices across cross-functional stakeholders.

Perform additional duties as assigned.

Requirements

Active Top Secret Clearance/ ability to obtain SAP access

RMF experience

5+ years supporting DoD programs

Experience with vulnerability/compliance tools (Nessus, ACAS, STIGs, SCC/SCAP)

Cybersecurity engineering experience supporting system authorization and accreditation efforts

Experience working with weapon systems, defense acquisition programs, or Platform IT systems

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.businessworkforce.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Integrating automated security and vulnerability scanning

Alexandra Petri · World Congress 2023

3:39 min

Addressing code review surrender and process exploitation

Laura Tacho Laura Tacho · World Congress 2026 Europe

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

56 sec

The hidden costs of delayed peer code reviews

Tim Gilboy Tim Gilboy

Videos

See all

Related articles

See all