More jobs:
ISSO/Systems Security Engineer
Job in
Dahlgren, King George County, Virginia, 22448, USA
Listed on 2026-01-12
Listing for:
UIC Arctic Response Services, LLC
Full Time
position Listed on 2026-01-12
Job specializations:
-
IT/Tech
Cybersecurity
Job Description & How to Apply Below
Overview
ISSO/SYSTEMS SECURITY ENGINEER (RDTE)
Bowhead is seeking a skilled full-time ISSO/Systems Security Engineer to join our team in Dahlgren, VA. The ideal candidate will assure all Information Systems (IS), Government desktops, and corporate network components, unclassified and classified, adhere to and are certified in accordance with the latest versions of guidance such as NAVSEA, DoN, DoD, US CYBERCOM, and other relevant guidance, such as DoD 8500 series, NAVSEAINST 5239.1, and DOD Inst.
5200.40.
Key Responsibilities:
- Using DoD network analysis tools to identify vulnerabilities (e.g., ACAS, HBSS, etc.).
- Provide technical assistance to the Government in assuring compliance with all policies, guidance, and recommendations stipulated and promulgated by the NSWCDD ISSM.
- Recommend and develop draft IA and system security procedures and practices, in accordance with the NSWCDD Information Assurance and Compliance Office standards and administer approved procedures and practices.
- Identify security vulnerabilities and recommend corrective security measures for network access points.
- Working knowledge in Risk Assessment (RA), Risk Management Framework (RMF) which outlines the Steps to Risk Management Process for Federal Information Systems in order to assist the business areas in completion of the Business Impact Analysis, and subsequent creation of Security Documentations like System Security Plan (SSP), Security Assessment Report (SAR) and Plans of Action and Milestones (POA&M).
- Ensure RMF packages are updated and accredited during the regular three-year Authority to Operate (ATO) cycles.
- Experience with NIST 800 SPs to include but not limited to NIST SPs 800-37, 800-53 & 53A, 800-60, FIPS (199 & 200).
- Develop PDS Approval Request packages for new PDSs and update PDS Daily Inspection Procedures.
- Ceate a Plan of Actions and Milestones (POA&M) and Standard Operating Procedures (SOPs)
- Ability to analyze Security Technical Implementation Guides (STIGs), Security Content Automation Protocol (SCAP) and Assured Compliance Assessment Solution (ACAS) scanning results
- Developing a variety of IA related documentation, to include but not be limited to, Platform Information Technology (PIT) designation requests, PIT Risk Assessment requests
Required Skills:
- Skill in conducting vulnerability scans and recognizing vulnerabilities in security systems.
- Skill in using DoD network analysis tools to identify vulnerabilities (e.g., ACAS, HBSS, etc.).
- Skill in system, network, and OS hardening techniques (e.g., remove unnecessary services, password policies, network segmentation, enable logging, least privilege, etc.).
- Skill in conducting application vulnerability assessments.
- Ability to identify systemic security issues based on the analysis of vulnerability and configuration data.
- Ability to share meaningful insights about the context of an organization’s threat environment that improve its risk management posture.
- Ability to cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation). Tenable Assured Compliance Assessment Solution (ACAS)
- Trellix Endpoint Security System (ESS), previously known as McAfee Host Based Security System (HBSS)
- Skill in applying host/network access controls (e.g., access control list).
- Skill in using Virtual Private Network (VPN) devices and encryption.
- Skill in securing network communications.
- Skill in protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters).
- Skill in troubleshooting and diagnosing cyber defense infrastructure anomalies and work through resolution.
- Skill in performing impact/risk assessments.
- Skill to develop insights about the context of an organization’s threat environment
- Skill to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
Required:
- High School Diploma required. Bachelors Degree preferred.
- A minimum of to five (5) years of experience in systems design, development and integration preferred.
- Must…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×