onsite
Information Systems Security Engineer - Expert - Nightwing
Security Engineer
Expert-level Information Systems Security Engineer responsible for implementing RMF, designing secure architectures, conducting vulnerability assessments, and integrating cloud security solutions across DoD and intelligence community environments.
About the role
Key Responsibilities
- Lead the implementation and continuous monitoring of the Risk Management Framework (RMF) for DoD and intelligence community systems.
- Design, evaluate, and harden security architectures for on‑premise, hybrid, and cloud environments (AWS, Azure).
- Conduct vulnerability assessments, penetration testing, and remediation planning to ensure compliance with DoD security standards.
- Develop and maintain security documentation, including System Security Plans (SSP), Security Assessment Reports (SAR), and POA&Ms.
- Collaborate with software development and operations teams to embed security controls into CI/CD pipelines using automation scripts (Python, PowerShell).
Requirements
- Minimum 8 years of experience in information systems security engineering, with a focus on RMF and DoD security frameworks.
- Proven expertise in security architecture design and cloud security (AWS, Azure) for high‑impact mission systems.
- Hands‑on experience with vulnerability assessment tools, penetration testing, and remediation processes.
- Strong scripting/programming skills, preferably Python, for automation of security controls and reporting.
- Active DoD Secret clearance or ability to obtain one.