Senior Information Systems Security Engineer (ISSE)
Lexington Park, MD - USA
Job Summary
What Youll Do:
As the Senior Information Systems Security Engineer (ISSE) you will play a critical role in maintaining the cybersecurity posture of advanced Live Virtual and Constructive (LVC) training environments that support warfighter readiness. You will oversee continuous monitoring activities vulnerability management security compliance and RMF sustainment efforts across complex training systems and networks. Working closely with system administrators network engineers cybersecurity professionals and government stakeholders you will help ensure mission systems remain secure compliant and available to support realistic high-fidelity combat training.
This position will be based fully on-site at our Lexington Park MD office. Periodic travel to the NAS Oceana Dam Neck Annex in Virginia Beach VA where the Global LVC Operations Center is located will be required. Candidates interested in relocating to the Virginia Beach area may also have the option to work from the government site.
Key Responsibilities:
- Lead cybersecurity engineering and security design activities for simulation modeling and Live Virtual and Constructive (LVC) training systems.
- Integrate cybersecurity requirements throughout the system development lifecycle (SDLC) ensuring security is incorporated into system design implementation and modernization efforts.
- Support accreditation of systems that connect live platforms virtual simulators and constructive training environments.
- Define and implement cybersecurity requirements for mission systems training networks simulators and supporting infrastructure.
- Design enclave boundaries authentication encryption auditing and cross-domain solutions.
- Ensure cybersecurity engineering activities align with DoDI 8510.01 (RMF) NIST SP 800-53 DISA Security Technical Implementation Guides (STIGs) and applicable Navy and NAVAIR cybersecurity policies.
- Coordinate cybersecurity requirements for major training exercises and distributed events.
- Assess security impacts of new training capabilities software updates and system integrations.
- Support all phases of the Risk Management Framework (RMF) lifecycle for assigned systems and enclaves.
- Maintain cybersecurity documentation including System Security Plans (SSPs) security control implementation statements POA&Ms and authorization artifacts.
- Track and manage system authorization status and accreditation milestones.
- Execute continuous monitoring activities in accordance with RMF requirements.
- Review and assess security controls to ensure ongoing effectiveness.
- Support annual security reviews and cybersecurity inspections.
- Review vulnerability scan results from ACAS SCAP and other assessment tools.
- Track vulnerabilities through remediation and closure.
- Maintain Plans of Action and Milestones (POA&Ms) and provide status reporting to Support to LVC Training Systems.
- This position may require up to 25% annual travel.
This description outlines the general nature and scope of the role. Additional duties may be assigned as necessary.
What Youll Bring:
- At least 10 years of related experience is required.
- Demonstrated experience implementing and maintaining the DoD Risk Management Framework (RMF) in accordance with DoDI 8510.01 including development and maintenance of System Security Plans (SSPs) security control implementation documentation authorization packages and Authority to Operate (ATO) artifacts.
- Experience conducting continuous monitoring activities managing system authorization status supporting annual cybersecurity reviews and inspections and maintaining Plans of Action and Milestones (POA&Ms).
- Experience reviewing and remediating cybersecurity vulnerabilities using ACAS SCAP DISA Security Technical Implementation Guides (STIGs) and other security assessment tools to maintain compliance with DoD cybersecurity requirements.
- Experience assessing cybersecurity impacts associated with system modifications software updates and new capabilities while supporting secure integration of mission systems networks and training environments.
- Experience supporting Navy NAVAIR or other DoD programs involving classified information systems simulation modeling or Live Virtual and Constructive (LVC) training environments is highly desired.
Education and Certification Requirements:
Qualified candidates should have one of the following:
- A masters degree or Ph.D. in Engineering Cybersecurity Data Science Information Systems or Information Technology or Software Engineering.
- One of the following industry certifications: CISSP-ISSMP FITSP-M GCIA GCIH GICSP GSLC
Please upload copies of any relevant certifications.
Equally Important:
- Ability to build positive collaborative relationships across teams and with external partners.
- Effective communicator with strong verbal and written skills.
- Proactive self-directed work style with the ability to operate independently.
- Analytical thinker with proven problem-solving capabilities.
- Highly organized with the ability to balance competing priorities in a fast-paced environment.
ASEC is committed to providing access and reasonable accommodation in its services activities programs and employment opportunities in accordance with the Americans with Disabilities Act and other applicable laws.
Security Clearance Requirement:
- This position requires U.S. citizenship and an active DoD Top Secret clearance. Selected candidate will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
Salary Range:
- The anticipated annual salary range for this position is $160000 - $180000 commensurate with an individuals experience qualifications and skill set. ASEC is committed to providing fair and equitable compensation.
Who We Are:
ASEC offers meaningful mission-driven work within a culture that supports your professional and personal growth. We partner with our government customers to deliver innovative solutions across engineering information technology training and logistics. Above all we are committed to doing whats right for the Warfighterplain and simple. Explore what makes ASEC different by visiting our website.
Why work at ASEC
- 100% employee-owned company. Learn more about our Employee Stock Ownership Plan (ESOP) here!
- Comprehensive benefits package including 11 paid holidays medical/dental/vision coverage HSA/FSA options disability insurance and more!
- 401(k) with company match
- Tuition assistance for undergraduate and graduate education
- Veteran-friendly employer
- Thriving employee culture
ASEC is an Equal Opportunity Employer. We recruit hire train compensate and promote employees based on qualifications merit and business needs without regard to race color religion sex national origin ancestry age marital status sexual orientation gender identity or expression disability veteran status genetic information pregnancy or related conditions (including breastfeeding) or any other status protected by law.
ASEC also complies with all applicable pay transparency laws and will not discriminate against employees or applicants for inquiring about discussing or disclosing compensation.
Required Experience:
Senior IC
About Company
ASEC is an award-winning, employee-owned small business focused on providing value and innovation in the areas of engineering, training, flight services, and more.