Information Systems Security Engineer (ISSE)

Open Systems Inc.
Annapolis Junction, MD, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Xacta Cyber Security Information Security Management Package Development Process Red Hat Enterprise Linux Security Software Software Vulnerability Management Cloud Platform System Tenable Nessus Vulnerability Analysis

Job description

Open Systems Technologies Corporation (OST) is seeking Information System Security Engineers (ISSEs) to support mission-critical Government programs. This role focuses on integrating cybersecurity engineering principles across system design, implementation, accreditation, and sustainment activities within complex classified environments.

The ISSE will support full Risk Management Framework (RMF) execution, Assessment & Authorization (A&A) activities, and continuous cybersecurity compliance efforts while working closely with system administrators, ISSOs, ISSMs, and system owners., * Support the full RMF lifecycle for classified systems

  • Assist with A&A package development and Authority to Operate (ATO) maintenance
  • Implement, assess, and validate security controls
  • Perform Security Control Traceability and technical validation
  • Support system boundary definition and security architecture documentation
  • Develop and maintain RMF artifacts and body of evidence packages
  • Conduct compliance and vulnerability scanning analysis
  • Validate findings including false positive identification and remediation verification
  • Support STIG implementation and configuration hardening
  • Manage patch validation and security compliance efforts
  • Participate in Continuous Monitoring (ConMon) activities

Core ISSE Skill Areas

  • Assessment & Authorization (A&A) execution and support
  • Security Control implementation and validation
  • RMF documentation and artifact development
  • System boundary definition and architecture support
  • Vulnerability management and remediation tracking
  • STIG implementation and compliance validation
  • Technical security assessment and risk analysis
  • Continuous Monitoring (ConMon) support

Requirements

  • Active TS/SCI with Polygraph security clearance
  • U.S. Citizenship
  • DoD 8570/8140 IASAE Level II compliant certification required
  • Strong understanding of the Risk Management Framework (RMF)
  • Experience supporting Assessment & Authorization (A&A) and Authority to Operate (ATO) processes
  • Experience with security control implementation, validation, and continuous monitoring
  • Familiarity with NIST SP 800-37 and NIST SP 800-53 (Rev. 3 and/or Rev. 5)
  • Experience with RMF and cybersecurity tools such as:
  • LATTEART
  • XACTA
  • BISCOTTI
  • WATCHCAT
  • STE
  • Experience with compliance and configuration scanning tools
  • Strong analytical, troubleshooting, and documentation skills, * Experience in classified Government cybersecurity environments
  • Familiarity with enterprise Linux, network, or cloud systems
  • Experience working with ISSOs, ISSMs, SCAs, and System Owners
  • Understanding of vulnerability management and cybersecurity automation tools
  • Experience supporting large-scale enterprise or mission systems

Benefits & conditions

OST has been supporting Government missions since 1996 and offers a comprehensive benefits package including:

  • 3 Weeks Paid Time Off
  • 11 Federal Holidays
  • Medical and Dental Coverage
  • Short-Term Disability (STD)
  • Long-Term Disability (LTD)
  • Life Insurance
  • AD&D Coverage
  • 401(k) with up to 4% Company Match

About OST

Open Systems Technologies Corporation (OST) is an Equal Opportunity Employer providing innovative cybersecurity and engineering solutions to support critical Government missions. We value technical excellence, collaboration, and continuous professional growth.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · WWC 2023

Videos

See all

Related articles

See all