Information Systems Security Engineer
Job Description
Join System One for a purpose-driven cybersecurity role in a classified environment. This onsite Information Systems Security Engineer position in Clarksburg, MD centers on RMF and A&A, security controls, and continuous monitoring. It requires active TS/SCI with Polygraph and IASAE Level II certification, and it offers a comprehensive benefits package along with clear opportunities for professional growth.
Benefits
- Medical
- Dental
- Vision
- Spending accounts
- Life insurance
- Voluntary plans
- 401(k) plan
Role overview
As an Information Systems Security Engineer, you will support mission-critical work in a classified environment. The role focuses on applying cybersecurity engineering best practices across the design, implementation, authorization, and ongoing compliance of systems, ensuring robust security posture throughout the lifecycle.
Responsibilities
- Provide support for the full RMF lifecycle of classified systems, from planning through continuous monitoring
- Contribute to A&A packages and help sustain ATOs over time
- Implement, assess, and validate security controls and technical requirements
- Build and maintain RMF documentation and evidence artifacts
- Assist with system boundary definition and security architecture documentation
- Run and analyze compliance and vulnerability scans; validate results, including addressing false positives
- Support STIG implementation, configuration hardening, and remediation verification
- Aid in patch validation and ongoing security compliance activities
- Participate in Continuous Monitoring activities and reporting
Requirements
- Active TS/SCI with Polygraph security clearance
- IASAE Level II compliant certification (DoD 8570/8140) is required
- Strong working knowledge of RMF
- Experience supporting A&A activities and ATO processes
- Experience implementing and validating security controls and supporting continuous monitoring
- Familiarity with NIST SP 800-37 and SP 800-53 (Rev. 3 and/or Rev. 5)
- Experience with RMF and cybersecurity tools such as LATTEART, XACTA, BISCOTTI, WATCHCAT, STE
- Experience using compliance and configuration scanning tools
- Strong documentation, analytical, and troubleshooting skills
Certifications (IASAE Level II)
- CISSP
- CASP+
- CCSP
- CSSLP
Nice to have
- Experience in classified cybersecurity environments
- Familiarity with enterprise Linux, networking, and cloud environments
- Experience partnering with ISSOs, ISSMs, SCAs, and System Owners
- Experience supporting large-scale enterprise or mission systems
- Exposure to vulnerability management automation and reporting workflows
Technologies
- LATTEART
- XACTA
- BISCOTTI
- WATCHCAT
- STE