> Markdown version of [/jobs/ext/278151-information-systems-security-engineer-isse-journeyman](https://www.wearedevelopers.com/jobs/ext/278151-information-systems-security-engineer-isse-journeyman). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Engineer (ISSE) - Journeyman - **Company:** Goldbelt - **Location:** Mechanicsburg, PA, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Systems Engineering, Cyber Security, Information Security Management System, Information Technology - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=026627a2aef53822 ## About the Role * Familiarity with RMF, NIST 800-53 controls, and DoD cybersecurity policies, * Minimum 2 years of experience of the following: + Experience in documenting RMF Assessment and Authorization requirements. + Experience in RMF testing of all CS requirements and analysis required to complete an RMF package document for submittal and approval. + Experience performing vulnerability risk analysis on the deficiencies found during RMF testing. + Must be able to supply total number of RMF authorizations performed. + Experience with IA tools and scanners used to evaluate the security posture of the system/enclave. + Experience with DoD-specific, DoN-specific, and NAVSUP-specific RMF services (including RMF package services) and using and complying with the Navy RMF Process Guide version 4.1 (or 4.0 or the latest version) and the NAVSUP FAO RMF Business Rules version 1.0 (or latest version). + Experience with concurrently supporting over 10 RMF packages. * Must have a Tier III Level Clearance Preferred Qualifications: * Bachelor's degree in Cybersecurity, Information Technology, Engineering, or related field ## Description The Information Systems Security Engineer (ISSE) - Journeyman supports the design, implementation, and maintenance of cybersecurity architecture for systems and enclaves. This role focuses on executing RMF activities, supporting security control implementation, and assisting with system authorization efforts. Responsibilities: Essential Job Functions: * Support the development and maintenance of system cybersecurity architecture and solutions * Assist in identifying Authorizing Official (AO) and Security Control Assessor (SCA) cognizance and applicable authorization requirements (e.g., reciprocity, cross domain, overlays) * Help identify and tailor security control baselines in accordance with system categorization * Support development, maintenance, and tracking of the System Security Plan (SSP) * Assist in implementing and testing security controls * Perform vulnerability-level risk assessments and support POA&M/CAP tracking * Support execution of required security testing for Authorization & Accreditation (A&A) and annual reviews * Assist in preparing Security Assessment Plans (SAPs) with program support * Support mitigation and closure of vulnerabilities through change control processes * Execute cybersecurity testing to assess security controls and document compliance status * Ensure accurate data entry into eMASS and alignment with implementation results * Maintain traceability of vulnerabilities from assessment results to POA&M entries * Support development of the Security Assessment Report (SAR) and associated documentation * Utilize the eMASS Collaboration Board for RMF coordination and document findings in the Artifacts repository * Participate in system engineering activities to ensure cybersecurity requirements are integrated throughout the lifecycle ## Related Videos - [Model Based Systems Engineering in an Agile Product Development Process](https://www.wearedevelopers.com/videos/68-model-based-systems-engineering-in-an-agile-product-development-process) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [The Ultimate Software Engineer Career Path Guide for 2023](https://www.wearedevelopers.com/magazine/146-the-ultimate-software-engineer-career-path-guide-for-2023)