Senior Information Systems Security Engineer; ISSE
Listed on 2026-08-25
-
IT/Tech
Cybersecurity
Your Impact:
We are seeking a highly skilled and experienced Principal Information System Security Engineer to join our team. The successful candidate will bring extensive knowledge and hands‑on experience in cybersecurity engineering, risk management frameworks, and secure software development lifecycle management. This role involves leading and managing accreditation efforts, conducting risk assessments, and collaborating with cross-functional teams to ensure the highest standards of information security across our applications and systems.
Responsibilities:- Oversee cybersecurity measures for applications within an agile software environment.
- Manage the assessment and authorization (A&A) efforts for accrediting and reaccrediting system authorizations.
- Utilize common control provider (CCP) knowledge to secure authorization for applications on new platforms.
- Work closely with stakeholders to ensure seamless decommissioning and accreditation of replacement systems with no downtime.
- Conduct technical exchange meetings (TEMs) and liaise with key departments to facilitate A&A efforts.
- Track and manage Plan of Action and Milestones (POAMs) across all systems, ensuring completion and recommending remediation steps.
- Conduct system self‑scans to support initial, update, and reaccreditation efforts.
- Perform technical planning, system integration, verification and validation, and risk assessments.
- Create Basis of Estimate (BOE) documentation and other critical artifacts for system A&A efforts.
- Develop and document security evaluation of test plans and procedures.
- Provide documentation and recommendations for security best practices and risk management framework (RMF) accreditation.
- Drive application security and secure software development life cycles, including containerization security as per NIST SP 800190.
- Conduct hands‑on security testing, analyze test results, and recommend countermeasures.
- Provide guidance on cloud computing services, deployment architecture, and network management tools.
- Review project requirements and assist in the development and tracking of project tasks and client deliverables.
- Communicate with clients on project specific activities and manage project related deliverables.
- Facilitate process working groups to analyze existing processes and create new business strategies.
- Bachelor's Degree in Security and Intelligence, or a related field.
- Security+ CE, AWS Advanced Architect, and Splunk Fundamentals 1 and 2 certifications.
- Extensive experience in information system security engineering, risk assessment, and vulnerability management.
- Strong understanding of cloud computing services, secure software development life cycles, and containerization security.
- Proficient in creating and maintaining security documentation and Standard Operating Procedures (SOPs).
- Demonstrated experience in leading technical exchange meetings, managing project deliverables, and ensuring compliance with security standards and policies.
- TS/SCI w/ poly
- B.S. in Mathematics and/or Security and Intelligence, or a related field.
Experience:
- 8
- Excellent technical writing and documentation skills
- Proven ability to collaborate with multidisciplinary teams
#javelin
This position is not designated as a safety sensitive position.
As part of our commitment to maintaining a safe and compliant work environment, Amentum is a drug‑free workplace and requires all personnel to comply with company drug and alcohol policies as a condition of employment. Employment is contingent upon successful completion of the drug screening process. Please note that this may include pre‑hire screening for marijuana, as well as other federally controlled substances due to Amentum’s role as a federal contractor and trusted partner to the US Government.
Other Responsibilities:Safety - Amentum enforces a safety culture whereby all employees have the responsibility for continuously developing and maintaining a safe work environment. As appropriate, each employee is responsible for completing all training requirements and fulfilling all self‑aid/buddy aid responsibilities, participating in emergency…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).