Jobs · Information Technology · Virginia

Cybersecurity Information System Security Engineer - Clearance Required

LMI · Fort Belvoir, VA · 1 mo ago
Information Technology$92k–$158k/yrFull-time

Responsibilities

  • Collaborate with system engineers, program managers, and Authorizing Officials (or their delegates) to define and implement system security requirements.
  • Lead efforts to ensure continuous monitoring and verification of cybersecurity requirements throughout the system lifecycle.
  • Serve as a trusted cybersecurity advisor, providing guidance and recommendations to government stakeholders and contractor teams.
  • Design, review, and refine system security architectures for cloud, on-premises, and hybrid environments.
  • Support the Risk Management Framework (RMF) process to achieve and maintain Authority to Operate (ATO) approvals.
  • Identify, track, and mitigate security control gaps and areas of non-compliance, ensuring alignment with security standards.
  • Conduct risk assessments, vulnerability assessments, and develop and maintain critical documentation, such as System Security Plans (SSPs).
  • Manage and facilitate Interim Authority to Test (IATT) activities, risk assessments, and all ATO-related processes.
  • Analyze and interpret security control deficiencies to assess their impact on enterprise risk levels and cybersecurity program effectiveness.
  • Partner with the Information System Security Manager (ISSM) and product teams to identify control gaps, propose mitigations, and prepare Program of Action and Milestone (POAM) plans for ATO submission.
  • Guide system engineers on the mitigation of vulnerability findings using state-of-the-art security scanning tools, DoD policies, and industry best practices.
  • Provide cybersecurity engineering expertise in evaluating alternatives, assessing trade-offs, and recommending risk treatment strategies.
  • Collaborate with cross-functional teams to ensure the delivery of secure and dependable systems.
  • Develop and maintain dashboards to monitor platform system controls, logs, and compliance status, ensuring seamless reporting.
  • Demonstrate expertise in implementing cloud cybersecurity solutions and practices.
  • Apply NIST SP 800-53 Revision 4 or 5 security controls and security assessment procedures from NIST SP 800-53A.

Qualifications

  • Active SECRET security clearance (minimum requirement).
  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, Information Systems, Data Science, or Software Engineering from an ABET-accredited or NCAE-C designated institution.
  • 5+ years of hands-on experience in system and/or security engineering within U.S. Government systems.
  • Practical experience working within government cloud platforms (e.g., Azure, Amazon C2S, Commercial Cloud, or GovCloud), including secure implementation of security planning, design, and operations.
  • Proven ability to develop and maintain Risk Management Framework (RMF) documentation, including System Security Plans (SSPs) and Plans of Action and Milestone (POAMs).
  • Experience working with DoD technologies, systems, and command & control policies and procedures.
  • Hands-on experience utilizing Enterprise Mission Assurance Support Service (eMASS) for compliance management and reporting.
  • Familiarity with federal IT security requirements, including DoD cyber regulations, FedRAMP, and FISMA compliance.
  • Knowledge of DoD STIGs, SRGs, and security requirements outlined in NIST SP 800-53 and its corresponding assessment procedures.
  • Strong communication and interpersonal skills, capable of effectively interacting with both technical teams and non-technical stakeholders.
  • One or more of the following certifications: GISF, Security+, CASP+, CSSP, Cloud+, CSSLP, GSEC, or GSEC-equivalent. (If not currently held, must obtain within the first 30 days of employment).

Target salary range

$92,075 - $158,138.39

Disclaimer

The salary range displayed represents the typical salary range for this position and is not a guarantee of compensation. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualifications, such as education, experience, skills, and security clearances. Applicants must meet eligibility requirements for a U.S. Government security clearance. Only US Citizens are eligible for a security clearance. For this position, LMI will only consider applicants with security clearances or applicants who are eligible for security clearances, due to the nature of the work.

Similar jobs