Jobs · Information Technology · Maryland

Information Systems Security Engineering (ISSE)

Abile Group, LLC · Annapolis Junction, MD · 1 mo ago
Information Technology$105k–$161k/yrFull-time

Abile Group has an exciting and challenging opportunity for an Information Systems Security Engineer (ISSE) supporting a DoD Customer's Classified Network Services. The mission includes Operations, Compliance, Cyber Security, Customer Service, and Engineering.

Responsibilities

  • Designs, implements, and maintains enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies.
  • Performs security engineering activities across system development lifecycle (SDLC), including requirements analysis, system design reviews, security testing, and accreditation support.
  • Implements vulnerability management processes utilizing Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate system vulnerabilities.
  • Integrates cybersecurity requirements into Windows and Linux server environments, cloud infrastructure, virtualization platforms, and containerized applications.
  • Supports incident response and forensic investigations by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise.
  • Develops automation scripts using PowerShell, Bash, and Python to streamline vulnerability remediation, account auditing, compliance reporting, and security monitoring tasks.
  • Collaborates with system administrators, network engineers, ISSOs, and application teams to remediate security findings and implement secure configuration baselines.
  • Performs security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure continued compliance and operational security.
  • Engineers endpoint protection and hardening solutions utilizing Trellix ePO - On-prem, host-based firewalls, and application whitelisting technologies.
  • Evaluates and implements cybersecurity tools and technologies to improve system security posture, continuous monitoring, and threat detection capabilities.
  • Produces technical security documentation, architecture diagrams, standard operating procedures (SOPs), and executive-level risk assessment reports.
  • Experience administrating, configuring, and troubleshooting core modules such as Enterprise Password Vault (EPV), Password Vault Web Access (PVWA), Central Policy Manager (CPM), and Privileged Session Manager (PSM) in CyberArk.
  • Monitors, analyzes, and detects cyber events and incidents within information systems and networks under general supervision.
  • Assists with integrated, dynamic cyber defense, coordinates and maintains security toolsets to support organizations’ continuous monitoring and ongoing authorization programs.
  • Establishes a framework by which cyber risk can be measured and quantified in the marketplace.
  • Determines security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates.
  • Implements security systems by specifying intrusion detection methodologies and equipment; directing equipment and software installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation.
  • Verifies security systems by developing and implementing test scripts.
  • Maintains security by monitoring and ensuring compliance to standards, policies, and procedures; conducting incident response analyses; developing and conducting training programs.
  • Responsible for the design, development, implementation, and integration of a DoD IA architectures, systems, or system components for use within computing, network, and enclave environments.
  • Ensures that the architecture and design of development and operational systems are functional and secure, including designs for program of record systems and special purpose processing nodes with platform IT interconnectivity.

Requirements

  • 5 to 8 years of experience with a BS/BA, 3 to 5 years with an MS/MA, or 0 to 2 years with a PhD.
  • Must hold an active TS/SCI clearance.
  • Must be DoD 8570.1-M/8140 IAT Level III certification (SecurityX (CASP), GCIH, CISA, CISSP) compliant.

Skills

  • Strong background in networking (TCP/IP, firewalls, VPNs), cloud security (AWS/Azure), Kubernetes, and DevSecOps.
  • Deep understanding of NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria, ATO package development, and cybersecurity compliance (STIGs).
  • Hands-on experience managing and deploying Tenable Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, GitLab, Microsoft Windows Server, Red Hat Enterprise Linux, and Ubuntu Linux.
  • Experience with scripting and automation using PowerShell, Python, Bash, and Ansible.
  • Proven experience in leading projects and mentoring junior ISSEs.
  • Ability to present technical briefings to leadership.

Pay

The salary range for this position is $104,814.71 - $161,320.10. Salary is determined by factors including, but not limited to, geographic location, position requirements, relevant prior work experience, specific skills and competencies, education, and certifications.

Benefits

  • Employer-subsidized Medical and Dental.
  • Generous PTO.
  • 401(k) with Employer match after 90 days of employment.
  • Annual bonuses, short- and long-term incentives, and program-specific awards.

Similar jobs