Senior Information Systems Security Engineer (ISSE
Job in
Rockville, Montgomery County, Maryland, 20849, USA
Listed on 2026-08-08
Listing for:
The Amatriot Group
Full Time
position Listed on 2026-08-08
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security, Information Security & Data Protection
Job Description & How to Apply Below
Location: Annapolis Junction, MD
Security Clearance: Active TS/SCI [Required]
Job Type: Full-Time
Target Salary Range*:$150,000 - $210,000
- This represents the potential salary range for this position depending on education level, years of experience and/or certifications in addition to other position specific requirements which may impact salary
The Senior Information Systems Security Engineer designs, implements, and maintains enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies. This role performs security engineering across the system development lifecycle, supports vulnerability management, integrates cybersecurity requirements across enterprise environments, and ensures development and operational systems are functional and secure.
Key Responsibilities- Security Architecture and Engineering
Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies. - Security Engineering across the system development lifecycle
Perform security engineering activities across the system development lifecycle, including requirements analysis, system design reviews, security testing, and accreditation support. - Integration of cybersecurity requirements
Integrate cybersecurity requirements into Windows and Linux server environments, cloud infrastructure, virtualization platforms, and containerized applications. - DoD IA architectures and systems
Responsible for the design, development, implementation, and integration of DoD IA architectures, systems, or system components for use within computing, network, and enclave environments. - Architecture and design assurance
Ensure the architecture and design of development and operational systems are functional and secure. - Program of record systems and interconnectivity
Support designs for program of record systems and special purpose processing nodes with platform IT interconnectivity.
- Implement vulnerability management processes using Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate system vulnerabilities.
- Remediation collaboration
Collaborate with system administrators, network engineers, ISSOs, and application teams to remediate security findings and implement secure configuration baselines. - Security impact analysis
Perform security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure continued compliance and operational security. - Security requirements evaluation
Determine security requirements by evaluating business strategies and requirements, researching information security standards, conducting system security and vulnerability analyses and risk assessments, studying architecture and platforms, identifying integration issues, and preparing cost estimates. - Cyber risk measurement framework
Establish a framework by which cyber risk can be measured and quantified in the marketplace.
- Incident response and forensics
Support incident response and forensic investigations by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise. - Cyber event monitoring
Monitor, analyze, and detect cyber events and incidents within information systems and networks under general supervision. - Integrated cyber defense
Assist with integrated, dynamic cyber defense. - Security toolsets and continuous monitoring
Coordinate and maintain security toolsets to support continuous monitoring and ongoing authorization programs. - Evaluate cybersecurity tools
Evaluate and implement cybersecurity tools and technologies to improve system security posture, continuous monitoring, and threat detection capabilities.
- Automation scripting
Develop automation scripts using Power Shell, Bash, and Python to streamline vulnerability remediation, account auditing, compliance reporting, and security monitoring tasks. - Endpoint protection and hardening
Engineer endpoint protection and hardening solutions using Trellix ePO On-Prem, host-based firewalls, and application whitelisting technologies. - Security systems implementation
Implement security systems by specifying intrusion detection methodologies and equipment, directing equipment and software installation and calibration, preparing preventive and reactive measures, creating, transmitting, and maintaining keys, providing technical support, and completing documentation. - Test scripts and verification
Verify security systems by developing and implementing test scripts. - Cyber Ark administration
Administer, configure, and troubleshoot Cyber Ark core modules, including Enterprise Password Vault, Password Vault Web Access, Central Policy Manager, and Privileged Session Manager.
- Technical security documentation
Produce technical security documentation,…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×