Information System Security Engineer, (ISSE)
Cinteot Inc. · Fort Meade, MD · 2 wk ago
On-siteOTHRFull-time
Cinteot Inc. is a small IT services company specializing in cybersecurity, Big Data/databases, software development, systems testing, STIG Compliance training, closed-circuit television/security cameras, access controls, and construction/facilities. We are a Woman-owned, SBA Certified 8(a), and HUBZone company.
About the role
As an Information Systems Security Engineer (ISSE), you will facilitate sub-projects through the Risk Management Framework (RMF) accreditation life cycle and support periodic system security scans as required by policy and RMF.
Responsibilities
- Facilitate sub-projects as they go through the Risk Management Framework (RMF) accreditation life cycle.
- Support periodic system security scans as required by policy and the RMF.
- Validate and verify system security requirement definitions and analyze system security designs.
- Perform technical security assessments of computing environments to identify points of vulnerability, then recommend mitigation strategies for non-compliant systems.
- Manually review network diagrams, network device configurations, and VPN termination points, with working knowledge of software TLS security.
- Maintain a flexible and non-traditional RMF review of secure networks to assess and prescribe countermeasures for secure communications (e.g., analog radio, mobile cellular, remote kits, software/hardware-based VPN solutions, and VDI technologies).
- Apply security frameworks and standards, including CIS benchmarks, FIPS 140-2, DISA STIGs, and CNSA cryptographic suite compliance.
- Serve as a security engineering representative on engineering teams for the design, development, implementation, and integration of secure networking, computing, and enclave environments.
- Support the Government in enforcing the design and implementation of trusted relationships among external systems and architectures.
- Apply knowledge of IA policy, procedures, and workforce structure to design, develop, and implement secure environments.
- Support security planning, assessment, risk analysis, and risk management.
- Identify overall security requirements for the proper handling of Government data.
Requirements
- Bachelor’s degree in Cybersecurity, Information Technology, or a related field.
- Must hold and maintain an appropriate DoD 8140.03 / 8570.01-M certification baseline (e.g., Security+, CISSP, CISM, or equivalent).
- At least 7 years of experience in cybersecurity engineering, RMF/DIACAP accreditation, and compliance documentation in DoD environments.
- Expertise in the application of DISA STIGs/SRGs, ACAS/HBSS vulnerability analysis, and eMASS package preparation.
- Strong written and verbal communication skills, with demonstrated experience producing accreditation documentation and presenting risk findings to senior stakeholders.
Qualifications
- Master’s degree in Cybersecurity or a related discipline (desired).
- Experience supporting DISA programs and preparing for CCRI inspections (desired).
- Advanced certifications such as CISSP-ISSAP or CISM (desired).
Clearance
Active Top Secret clearance required.
Benefits
- Complete insurance coverage (Blue Cross Medical, Delta Dental, Vision, Life).
- 401k with company contribution.
- Tuition reimbursement.
- Generous paid time off, including your birthday.