Job Requirements
Reston, VA
Top Secret/SCI CI Polygraph
Mid Level Career (5+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries
Job Description
BT-451 – Information Systems Security Engineer
Skill Level: Senior Principal
Location: Reston, VA
Required Skills:
• Demonstrated experience engineering, implementing, and assessing security controls for cloud-hosted information systems in accordance with RMF, ICD 503, NIST guidance, and agency assessment and authorization (A&A) processes.
• Proven hands-on experience securing Cloud environments across identity, network, compute, storage, database, logging, monitoring, encryption, secrets management, and privileged-access capabilities.
• Experience translating security requirements, system architectures, data flows, and mission use cases into implementable technical controls and documented security designs.
• Experience developing and maintaining A&A artifacts, including system security plans, control implementation statements, architecture diagrams, security assessment plans and procedures, POA&Ms, continuous-monitoring plans, and evidence packages.
• Ability to assess control implementation and effectiveness; identify security gaps and residual risk; recommend remediation; and track corrective actions to closure with technical teams and stakeholders.
• Experience applying Zero Trust principles, least privilege, defense in depth, segmentation, encryption, auditability, and secure configuration practices to cloud and hybrid architectures.
• Experience performing security engineering activities across the system lifecycle, including requirements analysis, architecture and design reviews, implementation oversight, vulnerability remediation, testing, deployment, and operational transition.
• Ability to collaborate effectively with cloud, network, application, database, cybersecurity, Oracle, and Government stakeholders and communicate technical security risks, decisions, and compliance status clearly.
• Strong written and verbal communication skills, including the ability to produce security designs, test plans, evidence matrices, remediation plans, operating procedures, and executive-ready status briefings.
• 8+ years relevant experience to this position
Desired Skills:
• Associate- or Professional-level cloud certification in Security, Architect, Networking, or Cloud Operations.
• Experience supporting classified, Intelligence Community, Government, or other highly regulated systems with TS/SCI security requirements.
• Experience with vulnerability-management, configuration-compliance, SIEM, SOAR, endpoint-security, and cloud-security-posture-management tools and processes.
• Experience with infrastructure as code and automated security configuration, including Terraform, OCI Resource Manager, Ansible, APIs, or scripting.
• Experience supporting security assessments, authorization decisions, control validation, audit readiness, and continuous-monitoring activities in an agency environment.
Skill Level: Senior Principal
Location: Reston, VA
Required Skills:
• Demonstrated experience engineering, implementing, and assessing security controls for cloud-hosted information systems in accordance with RMF, ICD 503, NIST guidance, and agency assessment and authorization (A&A) processes.
• Proven hands-on experience securing Cloud environments across identity, network, compute, storage, database, logging, monitoring, encryption, secrets management, and privileged-access capabilities.
• Experience translating security requirements, system architectures, data flows, and mission use cases into implementable technical controls and documented security designs.
• Experience developing and maintaining A&A artifacts, including system security plans, control implementation statements, architecture diagrams, security assessment plans and procedures, POA&Ms, continuous-monitoring plans, and evidence packages.
• Ability to assess control implementation and effectiveness; identify security gaps and residual risk; recommend remediation; and track corrective actions to closure with technical teams and stakeholders.
• Experience applying Zero Trust principles, least privilege, defense in depth, segmentation, encryption, auditability, and secure configuration practices to cloud and hybrid architectures.
• Experience performing security engineering activities across the system lifecycle, including requirements analysis, architecture and design reviews, implementation oversight, vulnerability remediation, testing, deployment, and operational transition.
• Ability to collaborate effectively with cloud, network, application, database, cybersecurity, Oracle, and Government stakeholders and communicate technical security risks, decisions, and compliance status clearly.
• Strong written and verbal communication skills, including the ability to produce security designs, test plans, evidence matrices, remediation plans, operating procedures, and executive-ready status briefings.
• 8+ years relevant experience to this position
Desired Skills:
• Associate- or Professional-level cloud certification in Security, Architect, Networking, or Cloud Operations.
• Experience supporting classified, Intelligence Community, Government, or other highly regulated systems with TS/SCI security requirements.
• Experience with vulnerability-management, configuration-compliance, SIEM, SOAR, endpoint-security, and cloud-security-posture-management tools and processes.
• Experience with infrastructure as code and automated security configuration, including Terraform, OCI Resource Manager, Ansible, APIs, or scripting.
• Experience supporting security assessments, authorization decisions, control validation, audit readiness, and continuous-monitoring activities in an agency environment.
group id: 91103972