Hiring.Camp

Information Systems Security Engineer (ISSE), Level II

OneZero Solutions

Location
Baltimore, MD
Type
Full-time
Department
Engineering
Education
Master
Clearance
Not required
Source
ApplicantPro

Description

We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance. Additional details are available on our website: https://www.onezerollc.com/careers/

Position Title : Information Systems Security Engineer (ISSE), Level II

Location: USCG Surface Forces Logistics Center, 2401 Hawkins Point Road, Baltimore, MD 21226. Work may also be performed at the SFLC satellite offices at 707 East Ordnance Road, approximately one mile from the primary site, and at other sites as determined necessary by the Contracting Officer's Representative (COR).

Clearance:

  • No security clearance required. This position does not involve access to classified information or classified IT systems.
  • S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.

Position Summary

The Information Systems Security Engineer serves as the OT Security Engineer for assigned USCG SFLC Operational Technology and provides the engineering half of the cybersecurity mission on this task order. Where the ISSOs own authorization and compliance, this role owns design: security requirements, defense-in-depth architecture, segmentation and boundary protection, and technical mitigation strategies that reduce risk without breaking operational capability.

The position works across acquisition, engineering, and sustainment activities, from design reviews and change control boards through DevSecOps pipeline support, and provides independent cybersecurity engineering assessments of USCG C5ISR acquisition program deliverables.

Key Responsibilities

  • Serve as the OT Security Engineer (ISSE) for assigned SFLC Operational Technology, providing cybersecurity engineering input, recommendations, and implementation assistance.
  • Design and develop security requirements and defense-in-depth solutions that reduce cybersecurity risk while maintaining operational capability and compliance with DHS, USCG, and DoD policy.
  • Support architecture-level and implementation-level engineering activities, maintaining a system-wide view of cybersecurity functions and requirements, and recommend risk mitigation at the architecture, design, and implementation levels.
  • Evaluate newly identified threats and vulnerabilities affecting assigned OT, determine the need for additional safeguards, and recommend technical mitigation and implementation strategies.
  • Assess proposed changes to assigned OT, operating environments, and mission requirements for impacts to cybersecurity architecture, security requirements, and continued compliance; recommend technical mitigations.
  • Participate in acquisition, engineering, and system development activities including program and design reviews, Concept of Operations (CONOP) working groups, change control boards, technical exchange meetings, technical discussions, and trade studies.
  • Identify cybersecurity integration issues arising from new or modified systems within existing SFLC infrastructure and recommend mitigation or resolution options that preserve security, interoperability, and operational capability.
  • Apply cybersecurity and systems engineering principles and industry best practice to the design, development, integration, and implementation of security requirements, including secure architecture, secure design, software engineering methodologies, defense-in-depth, and secure coding techniques.
  • Provide cybersecurity engineering input to development and engineering teams responsible for design, development, integration, modernization, and upgrade of assigned OT, including legacy OT.
  • Interface with Government stakeholders to communicate cybersecurity requirements, technical risks, and mitigation options, and explain their impacts on system performance, operational capability, cost, and schedule in support of Government risk-management decisions.
  • Design and evaluate cybersecurity requirements for trusted relationships and interconnections between assigned OT and external systems or architectures; recommend safeguards to protect information exchanges.
  • Provide engineering support for the design of systems and networks spanning multiple enclaves or differing information protection requirements, and recommend security architecture, segmentation, boundary protection, and information-flow controls.
  • Evaluate current and emerging cybersecurity technologies, threats, vulnerabilities, and best practices applicable to assigned OT and provide technical recommendations to improve resilience.
  • Provide cybersecurity engineering assessments of USCG Command, Control, Communications, Computers, Cyber, Intelligence, Surveillance, and Reconnaissance (C5ISR) acquisition program deliverables in support of Independent Verification and Validation (IV&V), assessing requirements, architectures, standards, technical feasibility, and engineering content, and reporting findings and recommendations to the Government.
  • Support DevSecOps activities for assigned OT, including cybersecurity engineering support for security dashboards and development of technical recommendations for vulnerability guardrails and thresholds for software and applications.
  • Provide status reporting to the Program Manager and ISSM as required. [NOTE: unlike the four other labor CLINs, the SOW does not specify bi-weekly reporting or a monthly briefing for this position. Confirm the Government's expectation.]

Required Qualifications

  • Five (5) or more years of cybersecurity engineering experience, including at least three (3) years in a security architecture or security engineering role supporting federal systems.
  • Demonstrated experience translating security requirements into implementable technical designs and defense-in-depth architectures.
  • Experience participating in formal engineering governance: design reviews, change control boards, technical exchange meetings, or trade studies.
  • Experience designing or evaluating network segmentation, boundary protection, and information-flow controls across enclaves or differing protection levels.
  • Experience assessing technical documentation and deliverables and producing written findings and recommendations for a Government customer.

Certification

  • Must hold and maintain at least one active certification approved for Information Assurance System Architect and Engineer (IASAE) Level I or Level II. Any one of the following satisfies the requirement:
    • CISSP - Certified Information Systems Security Professional (or CISSP Associate)
    • CSSLP - Certified Secure Software Lifecycle Professional
    • CASP+ - CompTIA Advanced Security Practitioner
  • Certification requirements are subject to confirmation against COMDTINST M2620.2 (series) Appendix D, the controlling USCG certification matrix. Verify the accepted certification list with the Program Manager before extending an offer.
  • Evidence of active certification in good standing is required prior to onboarding. Waivers and exceptions to certification requirements will not be granted.
  • Certifications must remain current, active, and in good standing throughout performance. Loss, lapse, or revocation of a required certification is grounds for removal from the contract. Continuing education required to maintain certification is at the employee's and company's expense.
  • Ability to explain technical risk and mitigation trade-offs to non-engineering Government stakeholders in terms of performance, capability, cost, and schedule.
  • Ability to read, write, speak, and understand English fluently.

Preferred Qualifications

  • Prior USCG, DHS, or DoD security engineering experience on Surface Domain OT, Platform IT, or C5ISR programs.
  • Experience engineering security for OT/ICS environments with legacy components and constrained patching windows.
  • CSSLP, CASP+, or equivalent in addition to the required baseline certification.
  • Experience supporting DevSecOps pipelines, security dashboards, and automated vulnerability gating.
  • Familiarity with NIST SP 800-160 Volume 1 systems security engineering.
  • Master's degree in engineering, cybersecurity, or a related field.

Technical Skills

  • Security architecture and defense-in-depth design for OT, Platform IT, and legacy environments
  • Network segmentation, boundary protection, enclave design, and information-flow control
  • NIST SP 800-160 Vol 1, NIST SP 800-53 / 53B control selection and tailoring, NIST SP 800-37 RMF
  • Interconnection and trusted-relationship design; ISA/MOU technical content
  • DISA STIGs and Security Requirements Guides applied at the design stage
  • Secure coding practice and software engineering methodologies
  • DevSecOps tooling, security dashboards, and vulnerability guardrail/threshold design
  • Independent Verification and Validation of technical and architectural deliverables
  • DHS Systems Engineering Life Cycle (SELC) and USCG acquisition governance (MSAM / NMAP)

Security Clearance

  • No security clearance required. This position does not involve access to classified information or classified IT systems.
  • S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.
  • A favorably adjudicated Tier 1 background investigation (or higher) is required. Candidates without an existing investigation on file must complete an Electronic Application (eApp) for investigation processing.
  • Note to recruiting: per the task order, the position is not billable until the selected candidate is fully cleared, has a CAC in hand, and has reported to the work site. Fill timelines should assume 30–90 days for investigation and CAC issuance.

Education

  • Bachelor's degree in engineering, computer science, cybersecurity, information systems, or a related field.

Work Environment

  • Primarily on-site at SFLC Baltimore. On-site presence is required for the monthly status briefing to the ISSM and for participation in change management boards, technical exchange meetings, and Government working groups.
  • The Government furnishes workspace, telephone, a Standard Workstation, and copy/fax access.
  • Remote work may be authorized at the sole discretion of the Government. If authorized, compliant hardware, software, and internet service are contractor-furnished.
  • Occasional travel outside the local commuting area may be required for training and associated off-site meetings, subject to advance COR approval and reimbursed per the Federal Travel Regulations. The 707 East Ordnance Road satellite office is within the local commuting area.

OneZero Solutions, LLC is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.

To request an accommodation, please contact us at [email protected] or call (202) 987-2580.

 

Skills

CybersecurityComplianceChange ManagementCISSPCompTIA

Similar Jobs

30

Staff Information Systems Security Officer

Shieldai · Washington, DC · Onsite

Today

Information Systems Security Manager (ISSM)

Abacus Technology · Colorado Springs, CO, US

Yesterday

Senior Information Systems Security Officer (ISSO) II - El Segundo, CA

RTX · US-CA-EL SEGUNDO-E07 ~ 2012 E El Segundo Blvd ~ BLDG E07, United States of America · Onsite

Yesterday

Information Systems Security Officer (ISSO) III

Gdit · USA TX Lackland AFB - Lackland AFB (TXC010), United States of America

Yesterday

Information Systems Security Engineer

Caci · 607 CHANTILLY VA, United States of America · Onsite

Yesterday

Information Systems Security Officer (ISSO)

Caci · 999 REMOTE, United States of America +1 · Remote

Yesterday

Information Systems Security Officer (ISSO)

Caci · 999 REMOTE, United States of America +1 · Remote

Yesterday

Information Systems Security Officer (ISSO) III

GDIT · USA TX Lackland AFB - Lackland AFB (TXC010), United States of America

Yesterday

Information Systems Security Manager

Darkwolfsolutions · Dark Wolf Hub +6

Yesterday

Information Security Systems Officer

Centuria · Hanscom AFB · Onsite

Yesterday

Information Systems Security Engineer (ISSE)

E-INFOSOL · Huntsville, AL

2 days ago

Junior Information Systems Security Officer (ISSO)

Leidos · 5943 Undisclosed MD Customer Site 20701, United States of America

2 days ago

Information Systems Security Officer (ISSO)

Markon · Annapolis Junction, MD, US

2 days ago

ISSO II - Information Systems Security Officer II

Watermark Risk Management International · San Antonio, TX

2 days ago

Information Systems Security Officer ( ISSO )

VENESCO LLC · Aberdeen Proving Ground, MD · Onsite

5 days ago

Principal Information Systems Security Officer

Steampunk Inc. · McLean, VA, US

5 days ago

Information Systems Security Officer (ISSO) 2

Pae · US-MD-Hanover-3 Mile2 (MD083), United States of America · Onsite

5 days ago

Information Systems Security Manager (ISSM) - TS/SCI w/Polygraph

Gdit · USA VA McLean - Customer Proprietary (VAC393), United States of America

5 days ago

Information Systems Security Manager - TS/SCI with Polygraph

Gdit · USA VA McLean - Customer Proprietary (VAC036), United States of America

5 days ago

(ISSO) Information Systems Security Officer

Leidos · 1972 480th ISR Wing Joint Base Langley Eustis VA, United States of America · Remote, Onsite

5 days ago

Information Systems Security Manager - TS/SCI with Polygraph

GDIT · USA VA McLean - Customer Proprietary (VAC036), United States of America

5 days ago

Information Systems Security Manager (ISSM) - TS/SCI w/Polygraph

GDIT · USA VA McLean - Customer Proprietary (VAC393), United States of America

5 days ago

Information Systems Security Engineer

Markon · Annapolis Junction, MD, US · Onsite

5 days ago

Information Systems Security Officer (ISSO)

Abacus Technology · Hanscom AFB, MA, US

5 days ago

Security Information Systems Assistant

United Nations Development Programme (UNDP) · Dakar, Senegal, SN

5 days ago

Information Security Systems Officer

Centuria · Hanscom AFB · Onsite

6 days ago

Information Systems Security Officer - Greenwood Village, Colorado

York Space Systems · Greenwood Village, CO, 6060 South Willow Drive, Greenwood Village, Colorado, United States of America

6 days ago

Information Systems Security Officer - Grand Forks, North Dakota

York Space Systems · Grand Forks, 345 Tuskegee Airman Blvd, Grand Forks AFB, North Dakota, United States of America

6 days ago

Information Systems Security Officer

I2Xisys · Fairbanks, AK, US · Onsite

6 days ago

Information Systems Security Engineer

Booz Allen Hamilton · USA, GA, Warner Robins (210 Park Dr), United States of America · Hybrid

6 days ago
Information Systems Security Engineer (ISSE), Level II at OneZero Solutions | Hiring.Camp