Information System Security Engineer, (ISSE)

Cinteot Inc.
Fort Meade, MD, United States
27 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Computing Platforms CompTIA Security+ Cyber Security Federal Information Processing Standards (FIPS) Information Security Management Networking Hardware Virtual Private Networks (VPN) Information Systems Security Architecture Professional Network Security Network Diagrams Information Technology CIS Benchmarks
+1 more
Vulnerability Analysis

Job description

  • Facilitate sub-projects as they go through the Risk Management Framework (RMF) accreditation life cycle.
  • Support the periodic system security scans as required by policy and the RMF.
  • Validate and verify system security requirement definitions and analyze system security designs.
  • Perform technical security assessments of computing environments to identify points of vulnerability, and then recommend mitigation strategies for those that do not comply with established Information Assurance (IA) standards.
  • Experience manually reviewing network diagrams, network device configurations, termination points for VPNs, and a working knowledge of software TLS security.
  • Able to maintain a flexible and non-traditional RMF review of secure networks to assess and prescribe countermeasures for secure communications e.g. analog radio, mobile cellular, remote kits, software/hardware-based VPN solutions and VDI technologies.
  • Familiar with applying different standards and security frameworks to include CIS benchmarks, FIPS 140-2, DISA Stigs, CNSA cryptographic suite compliance, etc.
  • Participated as a security engineering representative on engineering teams for the design, development, implementation and/or integration of secure networking, computing, and enclave environments.
  • Participated as a security engineering representative on engineering teams for the design, development, implementation and/or integration of IA architectures, systems, or system components.
  • Supported the Government in the enforcement of the design and implementation of trusted relationships among external systems and architectures.
  • Applied knowledge of IA policy, procedures, and workforce structure to design, develop, and implement secure networking, computing, and enclave environments
  • Supported security planning, assessment, risk analysis, and risk management.
  • Identified overall security requirements for the proper handling of Government data.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, or related field.
  • Must hold and maintain an appropriate DoD 8140.03 / 8570.01-M certification baseline for this labor category (e.g., Security+, CISSP, CISM, or equivalent as required).
  • At least 7 years of experience in cybersecurity engineering, RMF/DIACAP accreditation, and compliance documentation in DoD environments.
  • Expertise in the application of DISA STIGs/SRGs, ACAS/HBSS vulnerability analysis, and eMASS package preparation.
  • Strong written and verbal communication skills, with demonstrated experience producing accreditation documentation and presenting risk findings to senior stakeholders.

Desired Qualifications

  • Master’s degree in Cybersecurity or related discipline.
  • Experience supporting DISA programs and preparing for CCRI inspections.
  • Advanced certifications such as CISSP-ISSAP or CISM.

Clearance Requirement

  • Active Top Secret clearance

Benefits & conditions

Pulled from the full job description Tuition reimbursement 401(k) Health insurance Paid time off Vision insurance Dental insurance, * Complete Insurance Coverage

  • Blue Cross Medical, Delta Dental, Vision, Life
  • 401k with Company Contribution
  • Tuition Reimbursement
  • Generous Paid Time Off (including your birthday!)

About the company

Cinteot Inc. is a small IT services company that specializes in cybersecurity, Big Data/databases, software development, systems testing, STIG Compliance training, closed-circuit television/security cameras and access controls, and construction/facilities.

We are a Woman-owned, SBA Certified 8(a), and HUBZone company.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:15 min

Auditing container configurations against CIS benchmark security standards

Madhu Akula · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:16 min

Securing internal pod communication with network security policies

Marc Nimmerrichter · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:39 min

Validating data queries and infrastructure security configurations

Philipp Krenn · World Congress 2023

Videos

See all

Related articles

See all