Information Systems Security Engineer (ISSE)
CACI International Inc · Aberdeen Proving Ground, MD · 4 days ago
OTHR$83k–$174k/yrFull-time
About the role
The Information Systems Security Engineer (ISSE) serves as a key technical cybersecurity professional supporting our US Army customer and the Next Generation Command and Control (NGC2) modernization initiatives. In this role, you will partner closely with Assistant Program Managers (APMs), Product Managers (PdMs), and engineering teams to embed security‑by‑design across modernized tactical software baselines, containerized applications, and secure hybrid cloud/on‑prem architectures. The ISSE ensures modernization efforts maintain a robust, resilient, and defensible security posture against evolving tactical threats.
Responsibilities
- Program Support & Collaboration: Partner with APMs, PdMs, lead systems engineers, and cybersecurity personnel to execute the program’s cybersecurity strategy; provide proactive technical consultation to evaluate proposed designs, architectures, and software configurations early in the lifecycle to minimize security risk.
- Cybersecurity Documentation & Artifacts: Develop, review, and maintain core program cybersecurity documentation such as the Program Protection Plan (PPP), Cybersecurity Strategy (CSS), System Security Plans (SSP), and technical cyber architecture diagrams.
- Modern Architecture & Zero Trust Support: Contribute to the design and engineering of secure, resilient architectures across hybrid cloud (IL5/IL6), virtualized, and tactical edge environments; integrate Zero Trust principles, access control mechanisms, encryption approaches, and fault‑tolerant strategies into system designs.
- Secure Engineering & Automation: Promote secure software engineering practices to reduce flaws, bugs, and weaknesses; collaborate with DevSecOps teams to implement automated security controls, container vulnerability scanning, and compliance‑as‑code within CI/CD pipelines; support automation of Windows and Linux system hardening efforts.
- Vulnerability Management & Compliance Verification: Conduct and analyze ACAS/NESSUS scans, DISA STIG/SRG compliance checks, and static/dynamic source code vulnerability assessments; assist in developing improved automated vulnerability management and patching processes.
- Governance & Remediation: Represent Cybersecurity interests on Configuration Control/Review Boards (CCB/CRB); coordinate with engineering, vendor, and contractor teams to address vulnerabilities, communicate remediation steps, and manage residual risk.
Qualifications
- Active DoD Secret clearance, with ability to obtain and maintain a Top Secret (TS).
- Bachelor’s degree in Cybersecurity, Systems Engineering, Computer Science, or related technical field — an additional 6 years of DoD cybersecurity experience may substitute for the degree.
- 5 years of hands‑on engineering experience in cybersecurity, secure systems design, or related role.
- DoD 8140/8570 IASAE Level II certification (CASP+, CISSP, or CSSLP).
- Active DoD TS clearance (desired).
- Familiarity with Army Systems Acquisition processes, milestone decision points, and associated cybersecurity artifact requirements.
- Ability to align technical solutions with Army program needs and