More jobs:
ISSO/Systems Security Engineer
Job in
Dahlgren, King George County, Virginia, 22448, USA
Listed on 2025-12-23
Listing for:
UICGS / Bowhead Family of Companies
Full Time
position Listed on 2025-12-23
Job specializations:
-
IT/Tech
Cybersecurity, Network Security
Job Description & How to Apply Below
ISSO/SYSTEMS SECURITY ENGINEER (RDTE)
Bowhead is seeking a skilled full-time ISSO/Systems Security Engineer to join our team in Dahlgren, VA. The ideal candidate will ensure all Information Systems (IS), Government desktops, and corporate network components—both unclassified and classified—adhere to and are certified in accordance with the latest guidance such as NAVSEA, DoN, DoD, US CYBERCOM, DoD 8500 series, NAVSEAINST 5239.1, and DOD Inst. 5200.40.
Key Responsibilities- Using DoD network analysis tools to identify vulnerabilities (e.g., ACAS, HBSS, etc.).
- Provide technical assistance to the Government in assuring compliance with all policies, guidance, and recommendations stipulated by the NSWCDD ISSM.
- Recommend and develop draft IA and system security procedures and practices in accordance with the NSWCDD Information Assurance and Compliance Office standards, and administer approved procedures.
- Identify security vulnerabilities and recommend corrective security measures for network access points.
- Work with Risk Assessment (RA) and Risk Management Framework (RMF) to assist business areas in completing Business Impact Analyses and creating Security Documentations such as System Security Plan (SSP), Security Assessment Report (SAR), and Plans of Action and Milestones (POA&M).
- Ensure RMF packages are updated and accredited during the regular three‑year Authority to Operate (ATO) cycles.
- Experience with NIST 800 series (A–C) including 800‑37, 800‑53, 800‑53A, 800‑60, and FIPS 199 & 200.
- Develop PDS Approval Request packages for new PDSs and update PDS Daily Inspection Procedures.
- Create a Plan of Actions and Milestones (POA&M) and Standard Operating Procedures (SOPs).
- Analyze Security Technical Implementation Guides (STIGs), Security Content Automation Protocol (SCAP), and ACAS scanning results.
- Develop various IA‑related documentation, including but not limited to Platform Information Technology (PIT) designation requests and PIT Risk Assessment requests.
- Conduct vulnerability scans and recognize vulnerabilities in security systems.
- Use DoD network analysis tools to identify vulnerabilities (e.g., ACAS, HBSS, etc.).
- Apply system, network, and OS hardening techniques (e.g., remove unnecessary services, password policies, network segmentation, enable logging, least privilege, etc.).
- Conduct application vulnerability assessments.
- Identify systemic security issues based on vulnerability and configuration data.
- Share meaningful insights about the organization’s threat environment to improve risk management posture.
- Apply cybersecurity and privacy principles to organizational requirements (confidentiality, integrity, availability, authentication, non‑repudiation).
- Use Tenable ACAS and Trellix ESS (previously HBSS).
- Apply host/network access controls (e.g., ACLs).
- Use VPN devices and encryption.
- Secure network communications and protect against malware (e.g., NIPS, anti‑malware, spam filters).
- Troubleshoot and diagnose cyber defense infrastructure anomalies and work through resolution.
- Perform impact/risk assessments.
- Develop insights about the organization’s threat environment.
- High School Diploma required;
Bachelor’s Degree preferred. - Minimum of five (5) years of experience in systems design, development, and integration.
- DoDD 8140 IAM Level II Certification required.
- Knowledgeable with DoD security and IA requirements as outlined in DoDI 8500.2 and DISA STIG.
- Experience with basic to advanced UNIX, Windows, and other OS administration; knowledge of DoD PPS, PKI, and IAVM.
- Knowledge of computer networking concepts, protocols, and security methodologies.
- Knowledge of network security architecture (topology, protocols, components, defense‑in‑depth principles, zero trust).
- Knowledge of system, network, and OS hardening, IDS/IPS tools, TCP/IP, DNS, DHCP, directory services.
- Knowledge of application vulnerabilities and general system administration concepts.
- Experience with eMASS or managing DoD/DoN IA portfolios.
- Working knowledge of STIG Viewer, ACAS, eMASSter, and Excel.
- Knowledge of RDT&E and/or tactical systems.
- Knowledge of cyber threats, vulnerabilities, and…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×