> Markdown version of [/jobs/ext/2842877-information-system-security-engineer-isse-team-lead-navy-rmf-cybersecurity](https://www.wearedevelopers.com/jobs/ext/2842877-information-system-security-engineer-isse-team-lead-navy-rmf-cybersecurity). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Engineer (ISSE) Team Lead (Navy RMF / Cybersecurity) - **Company:** Jfl Consulting, Llc - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $150,000.0 - $165,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Software System Penetration Testing, Cyber Security, Linux, Information Security Management, Systems Architecture, Software Vulnerability Management, Information Technology, Scap Compliance Checker, Plan of Action and Milestones - **Published:** September 11, 2026 - **Apply:** https://www.thejobnetwork.com/job/95dd81af-e226-472c-8cdd-0ff851d12bda/information-system-security-engineer-isse-team-lead ## About the Role We are seeking a hands-on ISSE Team Lead to support cybersecurity and Risk Management Framework (RMF) activities for Navy systems and programs. This role leads system security engineering, authorization (ATO) efforts, and continuous monitoring in compliance with DoD and Department of the Navy (DON) cybersecurity policies. The ideal candidate has strong experience with eMASS, STIG implementation, RMF lifecycle management, and DoD security authorization processes, along with the ability to communicate cybersecurity risk to leadership., * 8+ years of cybersecurity / RMF experience (Navy or DoD preferred) * Experience supporting DoD system authorization (ATO) efforts * Strong knowledge of RMF, NIST SP 800-53, STIGs, and DoD cybersecurity policies * Hands-on experience with eMASS (required) * Experience with SCAP Compliance Checker (SCC) and STIG Viewer * Experience with vulnerability management and POA&M tracking * Background in Windows and Linux system security hardening * Experience in ISSE, ISSO, ISSM, or related cybersecurity engineering roles * Ability to communicate technical risk to leadership Preferred Qualifications * Prior Navy or DON cybersecurity experience * Experience supporting authorization boards and greenfield system deployments * Experience integrating penetration test results into RMF processes * Leadership or team lead experience in cybersecurity environments * Strong secure system architecture background Certifications * DoD 8140 / 8570 IAT Level II required (e.g., Security+, CySA+, GCIH, CISSP) * CISSP or CASP+ preferred Education * Bachelor's degree in Cybersecurity, IT, Computer Science, or related field preferred * Equivalent experience may be considered ## Description * Lead cybersecurity and RMF activities across Navy systems throughout the full lifecycle * Develop and maintain System Security Plans (SSPs) and ATO/Security Authorization Packages * Manage systems in eMASS, including artifact management and RMF workflow execution * Define and implement security controls, baselines, and overlays (NIST SP 800-53) * Conduct Security Control Assessments (SCA) support and validation activities * Ensure compliance with DoD, DON, NIST, and STIG security requirements * Manage POA&M tracking, vulnerability remediation, and risk mitigation activities * Support continuous monitoring (FISMA) and annual security reviews * Integrate penetration test and assessment findings into RMF documentation and risk tracking * Validate user access and ensure clearance/training compliance * Brief leadership on system security posture and risk ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Fake or News: Translating Dog Barks, Notepad Gets an Upgrade and Michelin-Star Robots - Paul Tregoing](https://www.wearedevelopers.com/videos/1802-fake-or-news-translating-dog-barks-notepad-gets-an-upgrade-and-michelin-star-robots-paul-tregoing) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [How Lufthansa Industry Solutions is preparing for the Quantum Age! ](https://www.wearedevelopers.com/videos/1443-how-lufthansa-industry-solutions-is-preparing-for-the-quantum-age) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)