Sr. Information Systems Security Engineer (ISSE) (Up to 25k Sign-on) II (6836)
Reston, VA - USA
Job Summary
We are seeking a skilled and motivated Sr. Information Systems Security Engineer (ISSE) II to join our dynamic team and play a pivotal role in safeguarding our organizations digital assets and sensitive information. The ideal candidate is a dedicated professional with a strong background in cybersecurity a deep understanding of current threats and vulnerabilities and the ability to implement robust security measures. As a Cybersecurity Engineer you will contribute to the design implementation and maintenance of our cybersecurity infrastructure while staying abreast of emerging trends in the field.
We know that you cant have great technology services without amazing people. At MetroStar we are obsessed with our people and have led a two-decade legacy of building the best and brightest teams. Because we know our future relies on our deep understanding and relentless focus on our people we live by our mission: A passion for our people. Value for our customers.
If you think you can see yourself delivering our mission and pursuing our goals with us then check out the job description below!
What youll do:
- Serve as a security engineering SME for containerized environments service mesh technologies and microservices.
- Design implement and manage security controls for containerized workloads solutions including image scanning firewalls intrusion detection/prevention systems endpoint protection and encryption mechanisms runtime protection role-based access control (RBAC) and network segmentation to ensure the organizations networks and systems remain secure.
- Integrate security into CI/CD pipelines and DevSecOps workflows ensuring compliance with RMF NIST SP 800-53 ICD 503 and FedRAMP requirements.
- Configure and optimize security monitoring and logging solutions and work with container security tools such as Prisma Cloud or similar.
- Monitor network traffic system logs and security alerts to detect and respond to potential security incidents. Analyze and investigate anomalies and security breaches taking appropriate actions to mitigate risks.
- Monitor and assess threat intelligence feeds conduct threat analysis and perform risk assessments to proactively identify emerging threats and vulnerabilities.
- Collaborate with platform engineers ISSOs and developers among other cross-functional teams to establish embed and enforce security policies standards and procedures throughout the system lifecycle.
- Conduct regular security assessments of container orchestration platforms microservices and APIs to identify vulnerabilities and weaknesses in systems networks and applications and recommend mitigations.
- Develop and implement incident response plans to effectively address security breaches incidents and other security concerns.
- Work closely with cross-functional teams including IT software development and compliance to integrate security into all phases of the development lifecycle and ensure a comprehensive approach to cybersecurity.
- Maintain thorough and accurate documentation of security architecture processes control implementation procedures configurations and continuous monitoring strategies. Prepare detailed reports on security findings incidents and actions taken.
What youll need to succeed:
- Bachelors degree in Computer Science Information Security or a related field.
- 7 years of experience as a cybersecurity engineer with a specialization in designing and building implementations of required security controls; and implementing continuous monitoring and auditing of solutions for compliance with security controls.
- Hands-on experience securing containerized/Kubernetes environments (OpenShift preferred).
- Strong skills in specifying and implementing log collection into tools such as Splunk and performing querying and analysis of aggregated logs to identify security-relevant anomalies or risks
- Strong experience with designing and building implementations of required security controls (e.g. NIST SP 800-53 RMF ICD 503 FISMA FedRAMP); and implementing continuous monitoring and auditing of solutions for compliance with security controls.
- Experience with implementing controls for cloud container and DevSecOps services and solutions within IL5 to IL6 environments.
- Strong understanding of network protocols operating systems and infrastructure components.
- Experience performing periodic (Daily Weekly Monthly) security checks to support continuous monitoring aligned with the NIST Risk Management Framework.
- Proficiency in incident response security incident handling and forensic analysis techniques.
- Experience with security tools such as Fortify Acunetix and Prisma Cloud
- Effective communication skills with the ability to convey complex technical concepts to both technical and non-technical stakeholders.
- CISSP or equivalent certification to support DoD 8140 requirements
- Active TS//SCI clearance with CI poly
SALARY RANGE: $190000 - $250000
The salary range for this position is determined based on qualifications skills and relevant experience. The final salary offered will be determined based on several factors including:
- The candidates professional background and relevant work experience
- The specific responsibilities of the role and organizational needs
- Internal equity and alignment with current team compensation
- This role is also eligible for additional compensation subject to the terms and policies of MetroStar which may include:
- Performance-based bonuses
- Company-paid training and/or certifications
- Referral bonuses
Application Deadline: Applications will be accepted on a rolling basis until the position is filled; candidates are encouraged to apply as early as possible for full consideration.
Additional Compensation: This role may also be eligible for bonuses and/or additional incentives based on individual and company performance.
Benefits: All full-time employees are eligible to participate in our benefits programs:
- Health dental and vision insurance
- 401(k) retirement plan with company match
- Paid time off (PTO) and holidays
- Parental Leave and dependent care
- Flexible work arrangements
- Professional development opportunities
- Employee assistance and wellness programs
Like we said we are big fans of our people. Thats why we offer a generous benefits package professional growth and valuable time to recharge. Learn more about our company culture code and benefits. Plus check out our accolades.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment based on merit and without regard to sex race ethnicity age national origin citizenship religion physical or mental disability medical condition genetic information pregnancy family structure marital status ancestry domestic partner status sexual orientation gender identity or expression veteran or military status status as a protected veteran or any other status protected by applicable federal state local or international law.
What we want you to know:
In compliance with federal law all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
Not ready to apply now
Sign up to join our newsletter here.
Required Experience:
Senior IC
About Company
MetroStar builds transformative and innovative technology solutions to accelerate agency missions. We're where government and tech collide.