Senior Information Systems Security Engineer (ISSE) - TS/SCI

Dark Horse Technologies LLC
Long Beach, MS, United States
19 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$57,850.0 - $104,575.0
Working hours
Regular working hours

Tech stack

Xacta CompTIA Security+ Cyber Security Operational Systems Plan of Action and Milestones

Job description

Dark Horse Technologies is seeking a Senior Information Systems Security Engineer (ISSE) with extensive experience supporting Risk Management Framework (RMF) accreditation activities within the Intelligence Community (IC). This position will support a focused, approximately one-year effort to transition existing operational Cross Domain Solution (CDS) RMF authorization packages into Xacta for ongoing management by the Government. The successful candidate must bring direct, hands-on experience using Xacta 360 or legacy Xacta IA Manager to develop, process, maintain, and support RMF authorization packages for IC environments. This is an on-site position at CNMOC Headquarters and requires an active TS/SCI clearance., * Lead and support the transition of existing operational CDS RMF packages into Xacta 360.

  • Develop, update, review, and maintain RMF authorization documentation within Xacta.
  • Evaluate existing security authorization packages and determine required updates or remediation to align with IC RMF requirements.
  • Apply applicable Intelligence Community overlays, security controls, and assessment requirements.
  • Support RMF activities throughout the authorization lifecycle, including control implementation, assessment, remediation, authorization, and continuous monitoring.
  • Review and validate security control implementation against NIST SP 800-53 Rev. 4 and Rev. 5 requirements.
  • Develop and maintain artifacts including Security Plans, control implementation statements, assessment evidence, POA&Ms, risk documentation, and supporting authorization materials.
  • Coordinate with system owners, cybersecurity personnel, engineers, ISSMs, ISSOs, security control assessors, and Government stakeholders to resolve RMF deficiencies.
  • Support RMF accreditation and authorization activities for systems operating within JWICS and Intelligence Community environments.
  • Identify gaps between existing Navy RMF documentation and IC/Xacta requirements and develop an efficient transition approach.
  • Ensure authorization packages are organized and documented so they can be effectively transitioned to Government personnel for continued lifecycle management.
  • Provide knowledge transfer and technical guidance to Government cybersecurity personnel responsible for sustaining the packages following completion of the transition effort.

Requirements

  • Minimum of five (5) years of direct, hands-on experience using Xacta 360 or legacy Xacta IA Manager to process RMF packages for Intelligence Community agencies.
  • Demonstrated experience developing and managing RMF authorization packages within IC environments.
  • Strong understanding of JWICS security requirements and operating environments.
  • Demonstrated knowledge of applicable Intelligence Community security overlays and RMF requirements.
  • Thorough knowledge of NIST SP 800-53 Rev. 4 and/or Rev. 5 security controls.
  • Experience supporting system authorization, accreditation, assessment, POA&M management, and continuous monitoring activities.
  • Ability to interpret cybersecurity requirements and translate them into appropriate RMF documentation and implementation guidance.
  • Strong written and verbal communication skills with the ability to work directly with technical and Government stakeholders.
  • Ability to work independently and drive RMF packages through completion within established timelines.

Clearance Requirement

  • Active Top Secret clearance with SCI eligibility/access required., * Experience supporting Cross Domain Solutions (CDS) or other highly controlled classified systems.
  • Experience transitioning RMF packages between different governance, risk, and compliance platforms.
  • Familiarity with Navy cybersecurity environments and the differences between eMASS-based Navy RMF processes and Xacta-based IC processes.
  • Experience supporting operational DoD or IC systems through authorization and continuous monitoring.
  • Relevant cybersecurity certifications such as CISSP, CAP/CGRC, CASP+/SecurityX, or equivalent., The ideal candidate is not simply an RMF practitioner. We are specifically seeking an experienced Xacta practitioner who has personally developed and processed authorization packages for Intelligence Community customers and can immediately begin working within an IC RMF environment. This role is particularly well suited for an experienced ISSE, ISSM, cybersecurity engineer, or RMF specialist who understands both the technical and documentation requirements associated with moving operational systems through the IC authorization process.

Benefits & conditions

  • $107,900-195,050 per year Looking for an opportunity to make an impact? At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers…

  • 29 days ago +

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

Videos

See all

Related articles

See all