Senior Cloud Information System Security Engineer (ISSE)

Anonymous Employer
Washington, DC, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Software as a Service Cloud Computing Cloud Computing Security Cyber Security Infrastructure as a Service (IaaS) Identity and Access Management Information Security Management Information Systems Security Architecture Professional Information Systems Security Engineering Professional Nmap
+7 more
Platform as a Service (PAAS) Zero Trust Network Access Data Logging Software Security Information Technology Tenable Nessus Vulnerability Analysis

Job description

Tygart Technology is seeking a Senior Cloud Information System Security Engineer (ISSE) to support the design, development, and integration of secure systems across cloud and hybrid environments. In this role, you’ll work closely with architects, developers, and cybersecurity teams to ensure security is built into every phase of the system lifecycle, from initial design through deployment and ongoing operations.

You’ll lead efforts around threat modeling, security architecture, and compliance, helping systems meet standards such as NIST, RMF, and DoD requirements. This position plays a key role in translating cybersecurity policy into practical, technical solutions., Lead and mentor a team responsible for implementing the full RMF lifecycle across client systems Oversee planning activities, ensuring clear roles, responsibilities, and risk management strategies Guide system categorization based on mission impact and regulatory requirements Direct the selection, tailoring, and documentation of security controls Analyze vulnerability scan results and provide risk-based recommendations for mitigation Oversee implementation of technical, operational, and management controls across system lifecycles Ensure security control assessments are properly planned, executed, and documented Prepare risk management documentation to support system authorization decisions Lead continuous monitoring efforts, using metrics to refine and improve security posture Serve as a senior technical advisor for cybersecurity, including incident response, remediation, and audit support Promote security awareness by providing guidance and training to teams and stakeholders Track and communicate security status, risks, and improvement opportunities to leadership Stay current on RMF, NIST guidance, and industry best practices Design and evaluate secure cloud and hybrid architectures (IaaS, PaaS, SaaS) Apply Zero Trust principles in cloud environments Support FedRAMP authorization packages and cloud ATO processes Design and assess IAM, encryption, logging, and continuous monitoring in cloud platforms Support secure cloud migration and modernization initiatives

Requirements

Active Top Secret clearance Bachelor’s degree in Computer Science, Cybersecurity, or a related field 8+ years of relevant experience in cybersecurity or information assurance Experience with security tools such as Tenable Nessus, SecurityCenter, IBM Guardium, Nmap, or similar One or more of the following certifications: Certified Information Systems Security Professional (CISSP) (or Associate) CompTIA Advanced Security Practitioner (CASP) Certified Secure Software Lifecycle Professional (CSSLP) CISSP- Information System Security Engineering Professional (ISSEP) CISSP- Information System Security Architecture Professional (ISSAP) Experience leading cross-functional cybersecurity or engineering teams Strong program management experience, including budgeting, reporting, and subcontract oversight Hands-on experience applying the NIST RMF in enterprise or government environments Experience developing security documentation (SOPs, compliance artifacts, QA programs) Background supporting federal cybersecurity initiatives and system assessments Experience with AWS, Azure, or GCP (including GovCloud environments) Familiarity with FedRAMP, Zero Trust, and shared responsibility models Understanding of CI/CD pipelines and cloud-native security practices Experience with Infrastructure-as-Code security and automation, CISM certification Advanced degree in Computer Science, Cybersecurity, or a related field

Benefits & conditions

Why Join Tygart Technology? At Tygart Technology, we value innovation, integrity, and technical excellence. You’ll join a team of dedicated professionals who deliver mission-critical solutions to our government partners. We offer competitive compensation, benefits, and the opportunity to grow your career while supporting impactful work.

About the company

Tygart Technology, Inc. is a premier professional services and software development organization providing a broad range of Information Technology (IT) services to public and commercial sector customers. Founded in 1992, Tygart’s customer first mind set and agile development methodology have led to our continued success. Tygart supports the Department of Defense, Federal Bureau of Investigation, Intelligence Community, Federal Election Commission, Pension Benefit Guaranty Corporation, and various other Federal and State organizations and maintains offices in West Virginia and Northern Virginia.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · WWC Europe 2026

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · WWC 2023

Videos

See all

Related articles

See all