Information System Security Engineer (ISSE)

Shadowgate Partners, Inc.
Fairfax, VA, United States
about 1 month ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$150,000.0 - $210,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Systems Engineering Audit Trail Unix Cloud Computing Configuration Management Cyber Security Information Systems System Configuration Relational Databases Linux Monitoring of Systems
+30 more
Apache Hypertext Transfer Protocol Server Information Security Management Networking Hardware Network Security MySQL Network Architecture Nmap Oracle (Applications) Public Key Infrastructure Systems Development Life Cycle Red Hat Enterprise Linux Ansible Subversion Tripwire Software Vulnerability Management Diagnostic Tools Grafana Firewalls (Computer Science) Gitlab Git Build Management Kubernetes Information Technology Bare Metal Nessus Puppet Software Version Control Cisco Servicenow Vmware

Job description

The role of the ISSE is to bridge the gap between high-level security policies/requirements and the technical/operational implementation of those requirements. Candidates should have an in-depth understanding of cybersecurity policies and procedures for Government (DoD, Intelligence Community) sector information systems, along with sufficient technical knowledge and experience to implement them. The ISSE will work closely and effectively with the Information System Security Manager (ISSM) and the Program Manager on all aspects of their development and implementation programs.

The ISSE will provide guidance, standards, and oversight to program/development teams as they work toward accreditation and then to maintain it. The candidate will contribute to the team’s Assessment and Authorization (A&A) process activities (ICD-503 RMF) and related documentation such as security concept of operations, systems security plans, security control assessments, contingency plans, configuration management plans, incident response plans, plans of action and milestones, risk management plans, vulnerability and compliance scanning, and/or vulnerability management plans.

The ISSE will be an experienced System Administrator and Cyber Security Expert, supporting a larger team of developers, engineers, and analysts charged with expanding, operating, and maintaining information systems built on hundreds of Linux instances across virtual and bare-metal hardware. Team responsibilities include Linux system build automation, network architecture and implementation, all facets of cybersecurity compliance, and deployment and management of core subsystems and services. The ISSE will assume responsibility for the ICD-503 RMF process across multiple information systems, including patching, scans, reports, documentation, coordinating plans of action and milestones, audit log reviews, and other related duties.

Requirements

The ISSE will help determine and recommend appropriate solutions and implementations to meet program needs. Candidates must be able to communicate effectively and be flexible, adaptable, and willing to take ownership of projects. Depending on experience, candidates will have several technical areas of primary responsibility and will be expected to cross-train and support other areas as needed. Superior attention to detail is required, along with a positive attitude and strong customer service skills in sometimes stressful situations, such as outage troubleshooting and resolution., Information Assurance (IA) and Information Security (InfoSec) experience working with Intelligence Community (IC) customers, including developing and reviewing security concept of operations, systems security plans, security control assessments, contingency plans, configuration management plans, incident response plans, plans of action and milestones, risk management plans, vulnerability and compliance scanning, and/or vulnerability management plans. Must have significant expertise in the ICD-503 A&A process and documentation preparation.

  • Security engineering experience, including systems engineering principles, configuration management, supply chain, requirements analysis, system development (software and hardware), network security architecture concepts (topology, protocols, components), and/or IT security principles and methods (firewalls, demilitarized zones, encryption).
  • Required experience with ICD-503 security frameworks, including A&A process and documentation preparation. Experience with NIST SP 800-37, CNSS publications, and other Risk Management Framework (RMF) processes is also desired.
  • Experience providing continuous monitoring support for information systems, including expertise in USG security compliance processes, scan tools, and systems (NESSUS, NMAP, Trivy, ICD-503 RMF, SNOW).
  • Advanced problem-solving skills - able to apply prior experience and knowledge to new situations, especially during client interactions.
  • Experience providing assistance to A&A test and evaluation activities.
  • Proficiency with Red Hat Linux/Unix and Kubernetes environments, including Red Hat Certified System Engineer (RHCSE) or equivalent skills. 5+ years of experience as a Linux system engineer/admin.
  • Real, hands-on Linux technical background - near system administrator level, not just familiarity.
  • Working knowledge of various Cross Domain Service (CDS) technologies and implementations.
  • Demonstrated advanced analytical skills - able to seamlessly incorporate new knowledge during client interactions.
  • Demonstrated ability to work seamlessly with program and development teams to communicate security practices tied to development requirements.
  • Ability to evaluate proposed security architectures and designs and assess their adequacy against required security compliance objectives.
  • Security certification (Security+ or CISSP).

Desired Skills

  • Current or former Cisco Certified Network Associate (CCNA) and CCNA Security, or equivalent skills and experience
  • Proficient, efficient, and confident writing and deploying Linux/UNIX scripts for system administration and file management
  • Experience with Puppet and/or Ansible
  • Experience with SNOW and ServiceNow
  • Experience configuring, securing, managing, and troubleshooting Linux/Unix systems
  • Familiarity with source code control tools such as Git, GitLab, CVS, SVN
  • Experience with log aggregation tools for audit log purposes across Linux, networking equipment, and applications
  • Experience with public key infrastructure (PKI), SSH configuration and troubleshooting, sssd, httpd
  • Experience with Amazon Web Services or other cloud technologies
  • Experience deploying enterprise monitoring tools such as Grafana
  • Experience with VMware
  • Experience with relational database technologies such as Oracle and MySQL
  • Advanced writing skills - able to clearly articulate ideas for both executive and technical audiences, Bachelor’s Degree in Computer Science, Information Technology, or a related field, plus 10 years of experience desired.

Security Clearance

TS/SCI with CI polygraph

Benefits & conditions

Our Client offers an incredible benefits package including a 25% 401(k) company contribution, an additional 25% Individual Benefits Account (IBA) contribution covering health insurance premiums, 8 weeks of PTO, and 100% tuition and books reimbursement.

About the company

Shadowgate Partners is seeking an Information System Security Engineer (ISSE) for our client, a leading provider of Signals Intelligence (SIGINT) and specialized communications systems to the Intelligence Community, with over 40 years of deep expertise across strategic and tactical missions.

This is a fully funded position with the client serving as prime on the contract, available for immediate start. This role is 100% onsite at the client’s facility either in Fairfax, VA or Denver, CO.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann Chris Heilmann +2 · LIVE

7:01 min

Initial reconnaissance and port scanning execution

Antonio De Mello +1 · LIVE

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

6:24 min

Common information security tools and terminologies

Antonio De Mello +1 · LIVE

2:04 min

Defining timestamps and the international standard format

Denny Biasiolli Denny Biasiolli · Europe 2026 Virtual

Videos

See all

Related articles

See all