Information System Security Engineer; ISSE - Senior
Listed on 2026-01-31
-
IT/Tech
Cybersecurity, Systems Engineer
Overview
We are seeking an Information System Security Engineer (ISSE) to join our team supporting a government customer. Tek Synap is a fast-growing high-tech company that emphasizes security within a comprehensive information management environment. The ISSE is the Subject Matter Expert for identifying security risks and contributing to the strategic planning of Information Security controls at a government agency. The role involves designing, developing, and integrating secure information systems, threat modeling, implementing security architectures, and validating system compliance with applicable standards such as NIST, RMF, and DoD directives.
The ISSE works with architects, developers, and security teams to embed security requirements throughout the system lifecycle—from design to deployment and maintenance. The ISSE bridges cybersecurity policy and technical implementation.
- Lead, mentor, and supervise a team of security professionals responsible for the end-to-end implementation of the RMF lifecycle for IT systems.
- Oversee and coordinate activities within the Prepare step, defining and maintaining roles, responsibilities, and risk management strategies.
- Guide system categorization efforts to ensure information systems are classified based on mission/business impact and regulatory requirements.
- Direct the selection, tailoring, and documentation of security controls aligned with system categorizations, risk appetite, and compliance requirements.
- Oversee the implementation of technical, operational, and management controls throughout system and application life cycles, focusing on deliverable quality and completeness.
- Ensure comprehensive security control assessments are planned, executed, and documented to validate implemented safeguards.
- Prepare risk management documentation for system authorization and executive decision-making.
- Direct ongoing monitoring and continuous assessment activities, collecting metrics to adjust security strategies and sustain compliance.
- Serve as a principal technical advisor on cybersecurity, contributing to risk analysis, incident response, system remediation, and audit support.
- Foster a culture of security awareness by providing technical guidance and training to team members and stakeholders.
- Track, report, and communicate status, risks, and improvement opportunities related to security engineering activities to leadership and stakeholders.
- Maintain up-to-date knowledge of RMF, NIST guidance, and industry best practices to support continuous process improvement.
- Required
- Security Clearance:
Must hold an active Top Secret clearance with the ability to obtain SCI. - Technical
Skills:
Familiarity with the use and operation of security tools, including but not limited to: - Tenable Nessus and/or Security Center
- IBM Guardium
- HP Web Inspect
- Network Mapper (NMAP)
- Comparable security assessment and monitoring tools
- Experience:
Minimum of 8 years of relevant experience, or an equivalent combination of education and experience, such as: - Doctorate plus 6 years of experience
- Master’s plus 6 years of experience
- Associate’s degree plus 10 years of experience
- High school diploma or GED plus 14 years of experience
- Preferred Qualifications
- Frameworks & Tools:
Experience with Joint Cybersecurity Authorization Management (JCAM) and/or Xacta. - Certifications:
One or more of the following certifications:- CISSP
- GISP
- CASP
- CSSLP
- CISSP–ISSEP (Information Systems Security Engineering Professional)
- CISSP–ISSAP (Information Systems Security Architecture Professional)
- Other certifications aligned with DoD Instruction 8570.1, IAM Level II
- Education:
Bachelor’s or advanced degree in Computer Science, Cybersecurity, or a related IT discipline.
Position Responsibilities:
Services to support Information System Engineering performed by the Information System Security Engineer (ISSE) include the following activities:
- Lead, mentor, and supervise a team of security professionals responsible for the end-to-end implementation of the RMF lifecycle for IT systems.
- Oversee and coordinate activities within the Prepare step, ensuring roles, responsibilities, and risk management strategies are…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).