Senior Information System Security Engineer in Chantilly, Virginia at Redhorse
Explore Related Opportunities
Job Description
About the Role
Redhorse transforms the way government uses data and technology. To support this mission, we are seeking a Senior Information System Security Engineer (ISSE) to provide expert technical and programmatic Information Assurance (IA) services. In this role, you will be the cornerstone of security for our nation's most critical network and information systems. You will bridge the gap between complex technical requirements and business processes, ensuring that as we innovate, we remain compliant, secure, and resilient against evolving threats. Your work will directly impact the security posture of systems that handle vital government data.
- Provide technical and programmatic Information Assurance services to internal and external customers to support network and information security systems.
- Design, develop, and implement security requirements within the organization’s business processes.
- Prepare comprehensive security documentation utilizing accepted guidelines such as DITSCAP, DIACAP, and NIST SP 800-37.
- Develop and execute Security Test and Evaluation (ST&E) plans to verify the efficacy of security controls.
- Conduct complex risk and vulnerability assessments to identify system weaknesses and recommend mitigation strategies.
- Analyze existing policies and procedures against Federal laws and regulations, providing strategic recommendations to close compliance gaps.
- Develop, test, and integrate computer and network security tools to enhance system defense.
- Manage and complete System Security Plans (SSP) and Contingency Plans to ensure operational continuity.
- Perform vulnerability assessments and develop risk mitigation strategies to address identified deficiencies.
- Secure system configurations, install security tools, and scan systems to determine and report compliance results.
- Conduct security program audits and develop solutions to lessen identified risks.
- Provide IA support for the development and implementation of security architectures to meet new and evolving requirements.
- Assist in computer incident investigations and perform root cause analysis.
- Develop strategies to comply with privacy, risk management, and e-authentication requirements.
- Must have an active TS/SCI with FS Poly security clearance
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- 8+ years of related experience performing information assurance and information systems security engineering duties.
- Demonstrated experience in the certification and accreditation (C&A) of information systems.
- Direct experience with NIST SP 800-37 (RMF), DIACAP, NIACAP, or DCID 6/3 frameworks.
- Proficiency in developing System Security Plans (SSP) and performing vulnerability scans.
We encourage all candidates who meet the basic requirements to apply, even if you do not have any of the following experience:
- Professional certifications such as CISSP, ISSEP, or CISM.
- Experience with modern cloud security environments (AWS, Azure, or Google Cloud).
- Familiarity with automated compliance tools and DevSecOps pipelines.
- Operational experience with DataBricks, GitLab, or Jira in a secure environment.
- Experience leading a team of junior security analysts or engineers.
$140,000 - $160,000 a year