Information Systems Security Engineer (ISSE)

Posted 2 Days Ago
2 Locations
In-Office
Senior level
Aerospace • Information Technology • Cybersecurity • Defense
The Role
Integrates cybersecurity into information system architectures across the lifecycle for defense and classified environments. Responsibilities include engineering NIST RMF security controls, conducting vulnerability and risk assessments, developing RMF and authorization artifacts, reviewing architectures and system changes, supporting continuous monitoring and accreditation, and advising engineering teams on secure design, Zero Trust, cloud security, and DevSecOps. The role collaborates with technical teams and government stakeholders to maintain secure configuration baselines and operational security posture.
Summary Generated by Built In
Overview/ Job Responsibilities

Entarian is seeking experienced Information System Security Engineer (ISSE) to support the Naval Information Warfare Center Atlantic (NIWC Atlantic) Expeditionary Enterprise Systems and Services (E2S2) Division. NIWC Atlantic provides design, acquisition, and sustainment services for Marine Corps Systems Command (MCSC) Information Technology (IT) systems). The ISSE is responsible for integrating cybersecurity into system architectures throughout the system lifecycle, ensuring information systems comply with applicable government policies, cybersecurity standards, and Risk Management Framework (RMF) requirements. This role works closely with systems engineers, software developers, architects, ISSM/ISSO personnel, and government stakeholders to engineer secure, resilient solutions that support mission objectives while balancing security, performance, and operational requirements.


The ideal candidate will have demonstrated experience supporting large-scale defense or space environments involving space systems, ground infrastructure, mission operations, communications networks, cloud environments, or enterprise information technology capabilities.



Key Responsibilities may include, but not limited to:

  • Integrate cybersecurity requirements into system architecture, engineering designs, interface specifications, and technical documentation throughout the system lifecycle.
  • Engineer, implement, and validate security controls in accordance with NIST RMF, NIST SP 800-53, CNSSI 1253, DoD guidance, and organizational cybersecurity policies.
  • Perform technical security analyses including architecture reviews, vulnerability assessments, threat analysis, risk assessments, attack surface analysis, and mitigation planning.
  • Participate in system architecture reviews, engineering design reviews, technical interchange meetings, and configuration control activities to ensure cybersecurity requirements are incorporated early in system development.
  • Develop and maintain technical cybersecurity documentation including System Security Plan (SSP) content, control implementation statements, security architecture diagrams, data flow diagrams, network diagrams, interface documentation, and engineering analyses.
  • Support development of Security Assessment Plans (SAPs), Security Assessment Reports (SARs), POA&Ms, continuous monitoring documentation, and other RMF artifacts supporting system authorization.
  • Identify cybersecurity gaps, architectural weaknesses, and technical risks, and develop practical engineering solutions to improve the overall security posture.
  • Collaborate with systems engineers, software developers, network engineers, cloud engineers, system administrators, and mission partners to establish and maintain secure configuration baselines.
  • Evaluate proposed system changes, software releases, technology insertions, and architecture modifications for cybersecurity impacts and accreditation implications.
  • Support vulnerability management activities including analysis of vulnerability scan results, prioritization of findings, remediation planning, and validation of corrective actions.
  • Participate in integration, testing, verification, validation, and accreditation activities to ensure implemented security controls function as intended.
  • Support continuous monitoring activities by assessing control effectiveness, monitoring security posture, and recommending improvements to maintain compliance.
  • Ensure secure integration of Commercial Off-the-Shelf (COTS), Government Off-the-Shelf (GOTS), open-source, cloud-based, and custom-developed technologies.
  • Provide technical cybersecurity guidance to engineering teams regarding secure system design, defense-in-depth strategies, Zero Trust principles, and cybersecurity best practices.
  • Prepare technical reports, engineering recommendations, risk assessments, and executive briefings supporting senior leadership and government decision-makers.
Minimum Qualifications
  • Active Secret with TS Eligibility.
  • Five (5) years with Bachelor’s degree or seven (7) years with HS/GED of practical experience demonstrating competency in Cybersecurity, Engineering, Test & Evaluation (T&E) or Assessment & Authorization (A&A)/ Certification & Accreditation (C&A) related field.
  • Individual shall demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior experience with theDefense Information Assurance & Certification Accreditation Process (DIACAP).
  • Individual shall have experience working with Information Assurance tools such as DISA Enterprise Mission Assurance Support Service (eMASS) or Assured Compliance Assessment Solution (ACAS) and may be required to hold an Interim Security Control Assessor qualification.
  • Individual shall be familiar with security policies & guidance documents to assist with the preparation and maintenance of process artifacts and traceability documents purposed for compliance with Authority to Operate (ATO) requirements. The specialist shall be capable of evaluating security solutions to ensure they meet security requirements for processing up to classified information, and supervise and/or maintain the operational security posture for an information system or program.
  • Individual shall have experience assisting or developing system security policy and ensuring compliance of change management and configuration control processes.

Desired Qualifications
  • Experience supporting Department of Defense, Intelligence Community, U.S. Space Force, or other classified government information systems
  • Demonstrated experience implementing and engineering NIST RMF security controls in accordance with NIST SP 800-37, NIST SP 800-53, CNSSI 1253, and applicable DoD cybersecurity guidance.
  • Strong understanding of secure systems engineering principles, security architecture, defense-in-depth, secure configuration management, and cybersecurity risk management.
  • Experience with operating systems, networking, virtualization, cloud technologies, identity and access management, encryption technologies, and modern cybersecurity solutions.
  • Experience conducting vulnerability assessments using tools such as ACAS, Nessus, SCAP, or comparable vulnerability management platforms.
  • Ability to produce high-quality engineering documentation, technical analyses, architecture recommendations, and RMF artifacts.
  • Security certification meeting DoD 8140 (or legacy DoD 8570) requirements, such as Security+, GSEC, CISSP, CASP+, or IASAE certifications.
  • Proficiency with Microsoft Office Suite, including Word, PowerPoint, Excel, Project, and Outlook.
  • Experience designing and implementing Zero Trust Architecture principles within enterprise or mission systems.
  • Experience supporting cloud security, hybrid cloud environments, containerized applications, Kubernetes, or DevSecOps pipelines.
  • Familiarity with Infrastructure as Code (IaC), automation, scripting, or configuration management tools such as PowerShell, Python, Ansible, or Terraform.
  • Experience performing security architecture reviews for large-scale, distributed, or systems-of-systems environments.
  • Advanced cybersecurity certifications such as CISSP-ISSEP, CCSP, CASP+, GIAC GSEC, or comparable engineering-focused certifications.
  • Experience supporting secure software development, software assurance, DevSecOps, or software factory environments.
  • Familiarity with DoD Enterprise DevSecOps Reference Design, Platform One, or cloud-native security technologies.
  • Excellent written and verbal communication skills with the ability to communicate complex cybersecurity concepts to technical teams, program leadership, and government stakeholders.
About Us

Formed through the strategic union of Sev1Tech and ERT, Entarian is a premier provider of mission-critical engineering and technology solutions. Founded on a legacy of excellence dating back to 1993, Entarian is a product of an evolved and fully diversified engineering and federal technology leader. From deep space to defense and civilian missions, Entarian delivers secure, mission-aligned digital solutions that drive national resilience and operational effectiveness. We don't just support modernization; we define it.


Join the Mission and Start your Career Journey: Apply Directly via our Careers Portal  Connect, Referrals & Inquiries? Email the team: [email protected]


Entarian is an Equal Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Skills Required

  • Active Secret security clearance with Top Secret eligibility
  • Bachelor's degree with five years of practical experience in cybersecurity, engineering, test and evaluation, or assessment and authorization; alternatively, seven years of experience with a high school diploma or GED
  • Working knowledge of the Risk Management Framework or prior DIACAP experience
  • Experience with information assurance tools such as eMASS or ACAS
  • Ability to prepare and maintain cybersecurity process artifacts and traceability documents supporting Authority to Operate requirements
  • Ability to evaluate security solutions for classified information processing and maintain an information system's operational security posture
  • Experience assisting with or developing system security policies and ensuring change management and configuration control compliance
  • Experience supporting Department of Defense, Intelligence Community, U.S. Space Force, or other classified government information systems
  • Experience implementing NIST RMF controls using NIST SP 800-37, NIST SP 800-53, CNSSI 1253, and DoD cybersecurity guidance
  • Experience with secure systems engineering, security architecture, defense-in-depth, configuration management, and cybersecurity risk management
  • Experience with operating systems, networking, virtualization, cloud technologies, identity and access management, and encryption
  • Experience conducting vulnerability assessments using ACAS, Nessus, SCAP, or comparable platforms
  • DoD 8140 or legacy DoD 8570 security certification such as Security+, GSEC, CISSP, CASP+, or IASAE
  • Proficiency with Microsoft Office Suite, including Word, PowerPoint, Excel, Project, and Outlook
  • Experience designing or implementing Zero Trust Architecture
  • Experience with cloud security, hybrid cloud environments, containerized applications, Kubernetes, or DevSecOps pipelines
  • Familiarity with Infrastructure as Code, automation, scripting, PowerShell, Python, Ansible, or Terraform
  • Experience performing security architecture reviews for distributed or systems-of-systems environments
  • Advanced cybersecurity certification such as CISSP-ISSEP, CCSP, CASP+, or GIAC GSEC
  • Experience supporting secure software development, software assurance, DevSecOps, or software factory environments
  • Familiarity with DoD Enterprise DevSecOps Reference Design, Platform One, or cloud-native security technologies
  • Excellent written and verbal communication skills
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
1,176 Employees
Year Founded: 1993

What We Do

Entarian delivers science, engineering, and technology solutions for defense and federal civilian missions. The company integrates space systems, data modeling and analysis, cybersecurity, and secure enterprise and mission environments, enabling actionable insight from the enterprise to the tactical edge. Its work supports weather data, satellite operations, search and rescue, network infrastructure, and other mission-critical government programs for national security and public safety.

Similar Jobs

BAE Systems, Inc. Logo BAE Systems, Inc.

Security Engineer

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Hybrid
Sterling, VA, USA
40000 Employees
130K-222K Annually

Peraton Logo Peraton

Security Engineer

Aerospace • Information Technology • Security • Cybersecurity • Defense
In-Office
Quantico, VA, USA
18000 Employees
146K-234K Annually
In-Office
Springfield, VA, USA
34000 Employees
In-Office
Springfield, VA, USA
34000 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account