Information System Security Engineering (ISSE) Onsite with Security Clearance
Why This Role Stands Out
Leverage your Risk Management Framework expertise in this impactful Information System Security Engineering role, offering a competitive salary and hybrid flexibility while you contribute to critical Department of Defense missions. You'll thrive here if you possess strong analytical skills and a passion for safeguarding classified information systems, so seize this opportunity to advance your career with a reputable organization.
Quick Overview
Job Description
About us: BDR Solutions, LLC, (BDR) supports the U.S. Federal Government in successfully achieving its mission and goals. Our service and solution delivery starts with understanding each client’s end-state, and then seamlessly integrating within each Agency’s organization to improve and enhance business and technical operations and deployments. (Military Veterans are highly encouraged to apply) BDR Solutions is seeking a highly motivated Information Systems Security Engineer (ISSE) to support a mission-critical Department of Defense customer.
The ISSE will play a key role in the implementation, assessment, and maintenance of cybersecurity controls across classified information systems and networks. This individual will work closely with government stakeholders, system owners, developers, network administrators, and cybersecurity professionals to ensure systems comply with DoD cybersecurity requirements and maintain authorization to operate (ATO).
The ideal candidate brings strong Risk Management Framework (RMF) expertise, hands-on experience with NIST 800-53 security controls, and a proven ability to develop authorization documentation and security solutions within secure DoD environments. Responsibilities
- Support the implementation and maintenance of cybersecurity requirements throughout the system development lifecycle.
- Apply Risk Management Framework (RMF) principles and processes to support system authorization and continuous monitoring activities.
- Develop, maintain, and update cybersecurity documentation, including:
- System Security Plans (SSPs)
- Security Assessment Reports (SARs)
- Plans of Action & Milestones (POA&Ms)
- Security Control Traceability documentation
- Continuous Monitoring artifacts
- Assist with the preparation and maintenance of Authority to Operate (ATO) packages.
- Analyze systems and architectures to identify security risks, vulnerabilities, and compliance gaps.
- Implement and validate security controls in accordance with NIST SP 800-53 requirements.
- Conduct security assessments and recommend mitigation strategies to reduce cybersecurity risks.
- Evaluate vulnerability scan results and coordinate remediation efforts with technical teams.
- Support implementation and compliance activities related to:
- DISA Security Technical Implementation Guides (STIGs)
- Security Requirements Guides (SRGs)
- DoD cybersecurity policies and directives
- Collaborate with developers, engineers, ISSOs, and system administrators to ensure security requirements are integrated into system designs.
- Participate in cybersecurity working groups, audits, inspections, and compliance reviews.
- Support continuous monitoring activities and maintain cybersecurity posture across authorized systems.
- Provide security engineering recommendations for new technologies, applications, and infrastructure changes.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Assurance, or related field.
- 4-6 years of Information Systems Security Engineering, Cybersecurity, or Information Assurance experience supporting DoD or Federal Government environments.
- Strong experience implementing and supporting the Risk Management Framework (RMF).
- Demonstrated experience applying NIST SP 800-53 security controls.
- Experience developing and maintaining:
- System Security Plans (SSPs)
- Security Assessment Reports (SARs)
- Plans of Action & Milestones (POA&Ms)
- Experience supporting Authority to Operate (ATO) processes.
- Working knowledge of DoD cybersecurity policies, procedures, and compliance requirements.
- Experience reviewing, implementing, and validating DISA STIGs and SRGs.
- Strong analytical and problem-solving skills.
- Excellent written and verbal communication skills.
- Ability to work effectively in a collaborative, mission-focused environment.
- Security+ CE
- CISSP
- CASP+
- CYSA+
- Other DoD-approved equivalent certification
Preferred Qualifications
- Experience supporting Intelligence Community (IC), DoD, or classified federal programs.
- Experience with eMASS.
- Experience with ACAS, Nessus, or other vulnerability assessment tools.
- Experience supporting Continuous Monitoring (ConMon) programs.
- Knowledge of cloud security principles (Azure Government, AWS GovCloud, etc.).
- Familiarity with security architecture design and system engineering practices.
- Experience supporting DevSecOps and secure software development initiatives.
The compensation range for this position is $160,000-175,000. Compensation decisions depend on a wide range of factors, including but not limited to location, skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs. In addition, U.S Citizenship is required. Applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information and be able to obtain a government-granted security clearance.
Individuals may also be subject to a background investigation including, but not limited to criminal history, employment and education verification, drug testing, and creditworthiness. Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. For individuals with disabilities who would like to request an accommodation, please contact .
Similar jobs
- RA
Systems Security Engineer I – Anti-Tamper / Program Protection (On-site)
NewRaytheon
Orlando, FL🇺🇸$57.2k - $108.8k/yrHybrid23 hours agoEmbedded SystemsTechnology - RA
Embedded Security Software Engineer I (Onsite)
NewRaytheon
San Diego, CA🇺🇸$57.2k - $108.8k/yrHybrid23 hours agoScrumAgileC+++3Technology - RA
Embedded Security Software Engineer II (Onsite)
NewRaytheon
Los Angeles, CA🇺🇸$68.9k - $131.1k/yrHybrid23 hours agoScrumAgileC+++3Technology - NG
Industrial Security Analyst-2 with Security Clearance
NewNorthrop Grumman
San Diego, CA🇺🇸$75.8k - $113.8k/yrHybrid23 hours agoTechnology - SA
Information Security Engineer, Agentic AI
NewStaffRight Associates, LLC
New York, NY🇺🇸Hybrid23 hours agoMachine LearningPenetration TestingTechnology - MA
Senior Network Security Engineer – Akamai CDN / WAF
NewMailMigrationSupport LLC
United States🇺🇸Hybrid23 hours agoTCP/IPCDNDNS+4Technology - TI
Cybersecurity Engineer
Auto ApplyTillster
San Diego Office🇺🇸$80k - $110k/yrHybrid7 weeks agoDockerGCPAWS+18Technology - TE
Information Systems Security Manager (ISSM)
NewTekSynap
Fort Belvoir, Virginia🇺🇸$130k - $150k/yrHybrid8 hours agoData EntryTechnology - FO
Cyber Security Analyst
NewFedEx Office
Memphis, TN🇺🇸$7.1k/moHybrid23 hours agoExpressMFAMachine Learning+11Technology - FO
Sr Cyber Security Analyst
FedEx Office
Memphis, TN🇺🇸$9.2k - $16.6k/yrOn-site1 week agoSAFeDockerExpress+15Technology - SE
Security Watch Center Analyst
NewSecuritas
Los Angeles, CA🇺🇸Hybrid2 days agoSchedulingAdministrative - SE
Global Security Operations Center Threat Monitoring Specialist
NewSecuritas
San Jose, CA🇺🇸Hybrid2 days agoMicrosoft OfficeTechnology