Information Systems Security Engineer (ISSE)

Reposted 4 Days Ago
Easy Apply
Be an Early Applicant
Woburn, MA
In-Office
Mid level
Machine Learning • Security • Software • Analytics • Defense
STR Harnesses the power of technology to solve the nation's hardest problems.
The Role
As an ISSE, you'll ensure compliance in cybersecurity, support RMF documentation, manage configuration changes, and apply security controls for classified programs.
Summary Generated by Built In

About the Team: 

The Security team at STR is comprised of highly skilled professionals who are responsible for maintaining compliance with Government protocol and directives.   

The Classified Cybersecurity (CCS) team consists of a collaborative group of ISSM’s, ISSO’s, and ISSE’s who are passionate about national security and take great pride in maintaining Confidentiality, Integrity, and Availability of our Information Systems and enable execution of STRs portfolio of programs across a vast customer base.   

The Role: 

STR has an exciting opportunity for a well-rounded cybersecurity professional to join our Cybersecurity/Risk Management Framework (RMF) program as a key contributor for classified programs.  

 In this dynamic position, you will interface and collaborate with other Cybersecurity professionals (ISSMs, ISSOs), Security professionals (CPSOs, FSOs), and System Administrators from our Classified Information Technology (CIT) organization. Your responsibilities will include ensuring overall compliance, managing configuration changes, supporting security architecture, and staying abreast of current and future technologies.  

Please note…this is not a remote and/or hybrid role and requires you to be onsite.  

Responsibilities: 

  • Conduct both vulnerability and compliance scans of Information Systems.  
  • Support the development of Risk Management Framework (RMF) documentation and control validation testing for Authority to Operate (ATO) accreditations.  
  • Develop cybersecurity requirements, design, and architecture for current and emerging program needs.  
  • Implement Information Assurance and Information Security protections and requirements in program development and execution environments.  
  • Apply required security controls to networking devices, databases, operating systems, and hardware/software components.  
  • Assist ISSMs and ISSOs in monitoring and resolving Plan of Action and Milestones (POA&M) to mitigate system vulnerabilities.  
  • Conduct reviews and technical inspections to identify and mitigate potential security weaknesses, ensuring all security features are implemented and functional.  
  • Support the completion of Continuous Monitoring requirements in accordance with RMF and NIST SP800-53 standards.  
  • Perform other tasks as assigned by the manager.  

Who you Are:  

  • Security Clearance: Active Top Secret security clearance with the ability to obtain SAP and SCI access (U.S. citizenship required).  
  • Experience: 3-5 years of technical (hands-on) experience in Information Assurance/Cyber Engineering, including requirements development and implementation.  
  • Certification: DoD 8570 IAM Level III certification (CISA, CISM, CISSP, etc.) or the ability to obtain within 6 months of hire.  
  • Familiarity: Knowledge of the DCSA Authorization and Assessment Process Manual (DAAPM) and the Joint Special Access Implementation Guide (JSIG). 
  • Technical Skills:
    • Configuration, certification, and auditing/analysis of Windows/Linux operating systems and system virtualization in peer-to-peer, LAN & WAN networks. 
    • Managing and implementing DISA STIGs and benchmarks in various operating systems (Windows, RHEL, Ubuntu). 
    • Using IA vulnerability/compliance scanning tools (e.g., NMap, ACAS, Nessus, Security Content Automation Protocol (SCAP)). 
    • Maintaining/managing Security Incident and Event Management (SIEM) and centralized auditing tools (e.g., Splunk, PowerStrux). 
    • Familiarity with Microsoft Deployment Toolkit (MDT). 
    • Supporting the hardening of new builds of Information Systems (IS) and ensuring full functionality before deployment. 
    • Scripting in Windows and/or Linux. 
    • Using McAfee/Trellix ePO, including familiarity with DLP components. 
    • Experience in one or more of following technical areas Artificial Intelligence, DevSecOps, Cloud or Containerization. 
    • Experience with NIST SP800-53 technical control implementation and assessment. 
  • Attributes: Excellent communication skills, detail-oriented, self-starter with a focus on understanding STR CCS and CIT processes and procedures. A desire for continuous improvement while working in a team environment and the ability to handle multiple fast-changing priorities/projects effectively.  

STR is a growing technology company with locations near Boston, MA, Arlington, VA, Dayton, OH, Melbourne, FL, and Carlsbad, CA. We specialize in advanced research and development for defense, intelligence, and national security in: cyber; next generation sensors, radar, sonar, communications, electronic warfare; artificial intelligence algorithms and advanced analytics to make sense of the complexity around us. 

STR is committed to creating a collaborative learning environment that supports deep technical understanding and recognizes the contributions and achievements of all team members. Our work is challenging, and we go home at night knowing that we pushed the envelope of technology and made the world safer. 

STR is not just any company. Our people, culture, and attitude along with their unique set of skills, experiences, and perspectives put us on a trajectory to change the world. We can't do it alone, though - we need fellow trailblazers. If you are one, join our team and help to keep our society safe! Visit us at www.str.us for more info. 

I'm thinking this format, pasted in at the bottom (after the requirements, but before the company description, EEO statement etc.)... but I'm waiting for Cristy to tell me if she likes that or not 

Pay Information
Full-Time Salary Range: $136,000 - $170,000

The salary range listed is based on external market data. Offers are based on factors, such as but not limited to, the candidate’s experience, education, training, key skills/critical skills, security clearances, and prevailing market and business conditions.

STR is a growing technology company with locations near Boston, MA, Arlington, VA, near Dayton, OH, Melbourne, FL, and Carlsbad, CA. We specialize in advanced research and development for defense, intelligence, and national security in: cyber; next generation sensors, radar, sonar, communications, and electronic warfare; and artificial intelligence algorithms and analytics to make sense of the complexity that is exploding around us.

STR is committed to creating a collaborative learning environment that supports deep technical understanding and recognizes the contributions and achievements of all team members. Our work is challenging, and we go home at night knowing that we pushed the envelope of technology and made the world safer.

STR is not just any company. Our people, culture, and attitude along with their unique set of skills, experiences, and perspectives put us on a trajectory to change the world. We can't do it alone, though - we need fellow trailblazers. If you are one, join our team and help to keep our society safe! Visit us at www.str.us for more info.


STR is an equal opportunity employer. We are fully dedicated to hiring the most qualified candidate regardless of race, color, religion, sex (including gender identity, sexual orientation and pregnancy), marital status, national origin, age, veteran status, disability, genetic information or any other characteristic protected by federal, state or local laws.

If you need a reasonable accommodation for any portion of the employment process, email us at [email protected] and provide your contact info.

Pursuant to applicable federal law and regulations, positions at STR require employees to obtain national security clearances and satisfy the requirements for compliance with export control and other applicable laws.

Top Skills

Acas
Artificial Intelligence
Cloud
Containerization
Devsecops
Disa Stigs
Linux
Microsoft Deployment Toolkit (Mdt)
Nessus
Nist Sp800-53
Nmap
Powerstrux
Security Content Automation Protocol (Scap)
Splunk
Windows

What the Team is Saying

Obinna
Noam
Erez
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Woburn, MA
800 Employees
Year Founded: 2010

What We Do

STR makes the world a safer place by developing technology and applying it to solve emerging national security challenges.

Why Work With Us

We believe in a people-first culture. Yes, we are scientists, engineers, and researchers, but first, we are people. Our environment is designed to foster innovation by encouraging our employees to work collaboratively on things they are passionate about. We also really like to have fun. We believe that working hard and playing hard go hand in hand.

Gallery

Gallery
Gallery
Gallery
Gallery

STR Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: Not Specified
HQWoburn, MA
Arlington, VA
Dayton, OH
San Diego, CA
Melbourne, FL
Learn more

Similar Jobs

STR Logo STR

Principal Algorithm & Signal Processing Researcher

Machine Learning • Security • Software • Analytics • Defense
Easy Apply
In-Office
Woburn, MA, USA
800 Employees

STR Logo STR

All-Source Analyst

Machine Learning • Security • Software • Analytics • Defense
Easy Apply
In-Office
Woburn, MA, USA
800 Employees

STR Logo STR

Software Engineer

Machine Learning • Security • Software • Analytics • Defense
Easy Apply
In-Office
Woburn, MA, USA
800 Employees

STR Logo STR

Human Resources Intern

Machine Learning • Security • Software • Analytics • Defense
Easy Apply
In-Office
Woburn, MA, USA
800 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account