×
Register Here to Apply for Jobs or Post Jobs. X

Information System Security Engineer

Job in Lexington, Fayette County, Kentucky, 40598, USA
Listing for: Cyber Defense Technologies
Full Time position
Listed on 2026-08-04
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Information Security & Data Protection, Network Security
Salary/Wage Range or Industry Benchmark: 90000 - 140000 USD Yearly USD 90000.00 140000.00 YEAR
Job Description & How to Apply Below

Overview

Cyber Defense Technologies (CDT) is seeking a proactive Information Systems Security Engineer (ISSE) to support Risk Management Framework (RMF) compliance, system hardening, and security engineering across a diverse portfolio of systems. This role requires independent ownership of complex security challenges— from vulnerability assessment and remediation through continuous monitoring—while ensuring alignment with DoW and USSOCOM security policies.

Clearance Requirements

An active Secret clearance is required, TS/SCI preferred. All candidates must be U.S. Citizens. Applicants who do not meet these requirements will not be considered.

Responsibilities include but are not limited to
  • Perform security design, configuration, hardening, testing, and monitoring of advanced information systems independently or as part of a team.
  • Conduct vulnerability testing and apply current compliance standards and technical controls across Windows, Linux, Android, iOS, and related platforms.
  • Support security architecture development; enforce trusted relationships with external systems; assess and mitigate security threats/risks throughout the program lifecycle.
  • Assist vendors and system developers in implementing DoW/USSOCOM security functionality and enterprise solutions.
  • Contribute to security planning, assessment, risk analysis, risk management, certification, and awareness activities.
  • Review Assessment & Authorization (A&A;) documentation for completeness and compliance.
  • Support rapid Fielding and Deployment Release processes by ensuring RMF and Authorization to Operate (ATO) requirements are met.
  • Create and maintain IA policy documentation and RMF artifacts, including System Security Plans (SSP), Security Assessment Reports, Risk Assessments, POA&Ms, Control Implementation/Validation documents, Ports/Protocols/Services matrices, network/architecture diagrams, and accreditation boundaries.
  • Execute cross-platform patch management and system imaging.
  • Map NIST 800-53 controls and DISA CCIs to system capabilities in support of ATO maintenance and renewals.
  • Engage customer technical points of contact as needed during architecture and implementation activities.
Technical Areas of Expertise
  • Experience with RMF process and requirements (NIST 800-53)
  • Experience with virtualized and standalone environments (VMware)
  • Experience with patch management solutions
  • Experience with standard forensic practices, imaging software, tools, and techniques
  • Experience with Security Technical Implementation Guide (STIG) experience
  • Experience with Vulnerability Management (Nessus, Nex Pose, OpenVAS, etc)
  • ELINT, Radio Frequency, Electronic Warfare, and/or SIGINT experience a plus
  • Translating technical customer requirements into business process and tasking
  • Technical consulting both buyer and end user customer personnel in a complex environment
  • System Administration experience with Linux and Windows
  • Experience with administration and forensic practices with mobile platforms is a plus
REQUIRED QUALIFICATIONS
  • Bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related technical field; or work relevant work experience equivalent.
  • Minimum 4 years of information security-related experience in areas such as security operations, vulnerability management, security testing, system patching, log analysis, intrusion detection, or security device administration.
  • Knowledge of RMF, Windows/Linux operating systems, STIGs, ACAS, HBSS, and/or related technologies.
  • Demonstrated ability to work independently, analyze root causes, and drive solutions from identification through resolution.
  • U.S. Citizenship and active Secret clearance (or higher), clearable to TS/SCI.
PREFERRED QUALIFICATIONS
  • Active DoD 8570 IAT Level II (or higher) certification preferred at time of hire (e.g., Security+ CE, CASP+, CISSP).
  • Hands-on experience with vulnerability assessment tools (ACAS, Nessus, SCAP), VMware, image deployment/orchestration, and multi-platform hardening.
  • Technology-specific certifications (Cisco, VMware, Microsoft, etc.) relevant to the environment.
  • Experience supporting rapid ATO processes and continuous monitoring in DoD/IC environments.
Travel

CON…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary