> Markdown version of [/jobs/ext/3088683-cybersecurity-systems-engineer-information-systems-security-engineer](https://www.wearedevelopers.com/jobs/ext/3088683-cybersecurity-systems-engineer-information-systems-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Systems Engineer/Information Systems Security Engineer - **Company:** General Dynamics Information Technology - **Location:** Washington, DC, United States (Remote available) - **Experience:** Expert - **Salary:** $164,382.0 - $207,000.0 - **Contract:** Contract - **Skills:** Information Security Management, Plan of Action and Milestones - **Published:** September 26, 2026 - **Apply:** https://www.dice.com/job-detail/f07c467a-b785-4539-bb03-8fdaec283282 ## About the Role Information System Security, Plan of Action and Milestones (POA&M), Risk Assessments, 10 + years of related experience, * Required Education and Experience: Technical Training, Certification(s) or Degree + 10 years * Certifications: DoD Manual 8570.01-M at the Information Assurance System Architects & Engineer (IASAE) Level II role * Security Clearance Level: TS/SCI clearance and ability to obtain and maintain a Polygraph * Location: On Customer Site ## Description * Lead Accreditation and Authorization (A&A) reviews by Group level ISSMs and Security Controls Assessors (SCA) * Documents the various security control implementations as well as gather the artifacts that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation for the various Assessment and Authorization (A&A) efforts * Document and obtain a general understanding of the architecture being developed or that was developed for each project in order to write the Systems Security Plans (SSP) / CONOPS * Gather the information by working with various systems owners, project managers, and engineering team members in order to write various additional A&A related documents such as Contingency Plan (CP), General User Guide (GUG), Privileged User Guide (PUG), Standard Operating Procedures (SOP' s), etc. * Document the Plans of Actions and Milestones (POA&Ms) implementation responses or mitigations, as well as provide all required artifacts (i.e evidence gathering from the system owners, PMs, and engineering teams) * Coordinating with various contractor and customer personnel to obtain the A&A content, as well as working with various customer security organizations to navigate the customer's A&A process in order to achieve Authority to Develop (A TD), Interim Authority to Test (IA TT), and Authority to Operate (ATO) for each of the primary and secondary assigned systems * Monitor each of the various A&A projects within the customer's A&A process and be able to fluently discuss the status at all levels * Support audit liaison activities, and compliance oversight activities to strengthen the security program and promote compliance with the Risk Management Framework (RMF) * Perform technical content reviews and edits as part of the document updates as part of the Annual ISCM and OA Strategy Plan Update * Conduct a technical review and update of the control volatility section of the plan considering emerging threats, changes to the agency security posture, the latest IC guidance, agency policy, federal laws, standards, and guidance, et., and based on information profile (e.g., High Value Asset (HVA), TS (SCI), Secret, etc.) * Provide audit liaison support for internal and external audits and data calls for external reporting. Document and provide concise and actionable recommendations and process improvements reports ## Related Videos - [Don't Be A Naive Developer: How To Avoid Basic Cybersecurity Mistakes](https://www.wearedevelopers.com/videos/498-don-t-be-a-naive-developer-how-to-avoid-basic-cybersecurity-mistakes) - [Beyond the Numbers: Engineering Recruiting Excellence Through Quality, Data, and Team Empowerment](https://www.wearedevelopers.com/videos/1491-beyond-the-numbers-engineering-recruiting-excellence-through-quality-data-and-team-empowerment) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [From Prototype to Production: Build Better Agents with IBM Bob](https://www.wearedevelopers.com/videos/100390-from-prototype-to-production-build-better-agents-with-ibm-bob) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries)