> Markdown version of [/jobs/ext/2983910-information-systems-security-engineering-isse](https://www.wearedevelopers.com/jobs/ext/2983910-information-systems-security-engineering-isse). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Engineering (ISSE) - **Company:** NexGen Data Systems Inc - **Location:** Charleston, SC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Configuration Management, Cyber Security, Computer Networks, Data Systems, Network Architecture, SAP (Applications), Information Technology, CIS Benchmarks, Plan of Action and Milestones - **Published:** September 18, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9173258/information-systems-security-engineering-isse ## About the Role * Active Department of Defense Secret security clearance required * DoD Approved 8570 / 8140 baseline certification required * Bachelor of Science Degree in an IT or Computer Related field required. * 10+ years performing Navy A&A responsibilities including policy development, control testing, POA&M management, and Configuration Management * 10+ years' experience supporting an IT Enterprise environment in a cyber, system administration, engineering or management capacity. * REQUIRED: Current active access to SIPRNET and eMASS-C * REQUIRED: Experience developing RMF packages for Classified systems * Experience working with security engineers to review compliance scans * Experience performing cybersecurity assessments using standards such as CIS Benchmarks, DISA STIGS, etc. * Excellent customer service and organization skills * Excellent verbal and written communication skills * Ability to work both independently and as a member of a team ## Description NexGen Data Systems is seeking an Information Systems Security Engineer (ISSE) to manage Navy-required Risk Management Framework (RMF) efforts for multiple Navy Enterprise Network (NMCI in particular) projects. This role will work collaboratively with Information Technology (IT) Engineers and System Administrators to conduct Cyber Security (CS) analysis, mitigation, remediation, and monitoring to ensure compliance with applicable DoD and Department of the Navy (DON) policies, procedures, and regulations. This position includes all activities associated with obtaining and maintaining RMF Authority to Operate (ATO) for systems within the customer's multi-faceted network infrastructure, which includes multiple platforms residing on multiple security enclaves. This role will be a Package Owner and responsible for execution of a package with the team's support. Roles & Responsibilities: * Conduct certification and testing in accordance with the Risk Management Framework (RMF) and National Institute of Standards and Technology (NIST) policy; identify deficiencies and providing recommendations of risk mitigation to customer. * Support the Government to resolve conflicting system security engineering requirements. * Create the Security Authorization Package's (SAP), required Body of Evidence (SSP, SCTM, SAP, SAR, RAR, and POA&M) for Enterprise Network Systems * Manage processes to record Assessment and Authorization (A&A) activities in the Enterprise Mission Assurance Security System (eMASS) * Monitor corrective actions until all POA&M actions are closed Other Duties: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. ## Related Videos - [A practical guide to writing secure Dockerfiles](https://www.wearedevelopers.com/videos/109-a-practical-guide-to-writing-secure-dockerfiles) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [From Messy Queries to Scalable Systems - How Data Engineering actually works](https://www.wearedevelopers.com/videos/100203-from-messy-queries-to-scalable-systems-how-data-engineering-actually-works) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [OPA for the cloud natives](https://www.wearedevelopers.com/videos/713-opa-for-the-cloud-natives) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [What is Software Engineering?](https://www.wearedevelopers.com/magazine/289-what-is-software-engineering) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)