Job Description - 1767 - Senior Information Systems Security Engineer (ISSE)
Description
Sigma Defense is seeking a Senior Information Systems Security Engineer (ISSE) to join our team in Rome, NY.
Equal Opportunity Employer/Veterans/Disabled: Sigma Defense Systems is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Requirements
8+ years of experience in information systems security engineering, cybersecurity engineering, or a closely related technical discipline.
Strong hands-on experience with ACAS, including vulnerability scanning, results analysis, remediation tracking, and validation.
Demonstrated experience implementing cybersecurity requirements under the DoD Risk Management Framework (RMF).
Strong understanding of Zero Trust architecture and security principles and their application within RMF environments.
Hands-on experience with Microsoft Azure security technologies and cloud security architecture.
Experience developing and administering Azure Policy for security, governance, and compliance enforcement.
Experience with Microsoft Defender for Cloud, including security posture management, recommendations, regulatory compliance, and workload protection.
Experience with Xacta, with an emphasis on automation, RMF workflow improvement, evidence management, or continuous authorization.
Experience with infrastructure automation and Infrastructure as Code (IaC) concepts and technologies.
Ability to translate cybersecurity requirements and security controls into technical configurations and automated enforcement mechanisms.
Strong understanding of vulnerability management, system hardening, security-control implementation, and continuous monitoring.
Must be a U.S. citizen.
Mandatory Certifications:
Required:
CompTIA Security+
Certified Information Systems Security Professional (CISSP)
ACAS Operator and Supervisor Course
Desired:
Microsoft AZ104
Microsoft AZ500
Computer Programs/Software:
ACAS
Defender for Cloud
Xacta
Personnel Clearance Level:
Candidate must possess or have the ability to obtain an active TS/SCI security clearance or higher.
Clearance may be sponsored for the right candidate.
Education Requirements:
Bachelor's degree from an accredited college or university in a Cybersecurity or related field of study.
Essential Job Duties (not all-inclusive):
Serve as a senior cybersecurity engineering resource supporting the implementation and maintenance of security controls throughout the system lifecycle.
Apply RMF principles within Zero Trust architectures, translating security and compliance requirements into practical technical controls.
Perform and support vulnerability assessment and continuous monitoring activities using Assured Compliance Assessment Solution (ACAS).
Analyze ACAS scan results, identify vulnerabilities, configuration deficiencies, and work with engineering teams to develop and validate remediation strategies.
Design, implement, and maintain security controls within Microsoft Azure environments.
Develop and manage Microsoft Azure Policy initiatives, assignments, exemptions, and compliance controls to enforce security requirements at scale.
Utilize Microsoft Defender for Cloud to assess security posture, identify vulnerabilities and misconfigurations, monitor compliance, and improve cloud workload protection.
Support the implementation of Zero Trust security principles, including identity, device, network, application, workload, and data security controls.
Develop and maintain Xacta automation capabilities to improve RMF documentation, evidence collection, control validation, and continuous authorization processes.
Automate security and compliance processes through Infrastructure as Code (IaC) and other infrastructure automation technologies.
Integrate security requirements and compliance validation into automated deployment and configuration-management workflows.
Develop repeatable methods for collecting security-control evidence and reducing manual RMF and assessment activities.
Collaborate with system architects, cloud engineers, DevSecOps teams, system administrators, ISSOs, and other cybersecurity personnel.
Provide technical guidance on system security architecture, control implementation, vulnerability remediation, and cybersecurity risk.
Support security assessments, authorization activities, continuous monitoring, and ongoing maintenance of the system's security posture.
Salary Range: $125,000 - $155,000 annually.
Benefits
Dental and Vision Insurance
Medical Insurance to Include HSA, FSA, and DFSA Plans
All Job Ads are subject to GrabJobs’s Terms of Service. We allow users to flag postings that may be in violation of those terms. Job Ads may also be flagged by GrabJobs moderation team. However, no moderation system is perfect, and flagging a posting does not ensure that it will be removed.
Be the first to receive the latest Others Full-Time Jobs in the US.
Setup your job alert:
By activating job alerts, I agree to GrabJobs Terms & Privacy Policy. I can unsubscribe to job alerts anytime.
Skip
GrabJobs is the no1 job portal in the US, connecting you to thousands of jobs fast!
Find the best jobs in the US, apply in 1 click and get a job today!