Hiring.Camp

Principal Information Security Engineer

Clarity Innovations

·

3 days ago

Salary
$117k – $292k
Location
Fort Meade, MD · Annapolis Junction, Maryland, United States
Department
Information Security
Seniority
Lead
Experience
5+ years
Clearance
Required
Source
Greenhouse

Description

Clarity Innovations is a trusted national security partner, dedicated to safeguarding our nation’s interests and delivering innovative solutions that empower the Intelligence Community (IC) and Department of Defense (DoD) to transform data into actionable intelligence, ensuring mission success in an evolving world.

Our mission-first software and data engineering platform modernizes data operations, utilizing advanced workflows, CI/CD, and secure DevSecOps practices. We focus on challenges in Information Warfare, Cyber Operations, Operational Security, and Data Structuring, enabling end-to-end solutions that drive operational impact.

We are committed to delivering cutting-edge tools and capabilities that address the most complex national security challenges, empowering our partners to stay ahead of emerging threats and ensuring the success of their critical missions. At Clarity, we are people-focused and set on being a destination employer for top talent, offering an environment where innovation thrives, careers grow, and individuals are valued. Join us as we continue to lead innovation and tackle the most pressing challenges in national security.

Position Description

The information systems security engineer is positioned in direct support of development teams building a new IaC environment, and is responsible for driving security innovation and implementation across the project.  The role also entails the establishment and maintenance of ATO packages and their associated artifacts. Success in this position requires willingness to comfortably work in the forefront of new ideas and a desire to learn and apply automated and cutting edge practices (Classified Cloud, CI/CD, and more).

Key Responsibilities

  • Manage and develop artifacts required to obtain a government continuous authorization to operate.
  • Develop and integrate cybersecurity best practices for Kubernetes clusters and DevOps pipelines.
  • Create and update artifacts (e.g., SSP, hardware/software lists, PPSM, SCTM).
  • Maintain communication with project engineers on the implementation of security controls and policy enforcement turning Risk Management Framework security controls into technical requirements for delivery by software and platform engineers.
  • Engage with the security control assessor from the authorizing official’s office to support authorization assessments. 
  • Support the implementation of technologies into the CI/CD processes and systems to establish secure-by-default standards.
  • Recommend security solution mitigations and enhancements supporting information assurance guidelines and customer requirements.
  • Perform vulnerability/risk/security impact analysis of cloud CI/CD development systems, applications, networking, and orchestration during all phases of the system development life cycle.
  • Provide input into an audit and accountability plan containing methods, procedures, and planned reviews for the continuing accreditation.
  • Ensure that all information systems meet or exceed compliance requirements.
  • Identify, report, and ensure the resolution of security violations.
  • Monitor and review the regular updates/upgrades to equipment and procedures to maintain pace with information assurance requirements and business needs.

Qualifications

  • U.S. citizen with active TS clearance with SCI and SAP eligibility
  • Current DoDM 8570 IAT Level II or Level III certification, or DoD 8140.01 intermediate certifications under the "Security Architect" role
  • 5-8 years experience working as an network/system administrator, system engineer, or ISSE 
  • Proven RMF ability, with at least two years of specialized experience in at least one the following:  
  • Cloud (prefer Azure or AWS)
  • CI/CD
  • Government software development / DevSecOps
  • IaC
  • TS / SAP environments
  • Offensive or defensive cyberspace operations
  • Has experience with, and is confident in, auditing and performing control assessments
  • Fluent in understanding RMFas it pertains to classified systems
  • Solid understanding of the systems development life cycle
  • Exceptional verbal, written, interpersonal and presentation skills, customer relationship building skills, analytical skills and ability to lead/mentor teammates
  • Independent and diligent with their assigned work
  • Experience using scanners (e.g., ACAS, Nessus, SonarQube)
  • Experience with integrating technologies and security solutions on information systems
  • Demonstrated experience taking a package from RMF step 0-7 and being granted an ATO on at least one system

Preferred Qualifications

Any of the following:

  • Cloud Security Certifications
    • CCSP: Certified Cloud Security Professional 
    • Microsoft Certified: Azure Security Engineering Associate
    • AWS Certified Security - Specialist
  • Security Engineering/Architecture Certifications
    • CISSP-ISSAP: Certified Information Systems Security Professional – Information Systems Security Architecture Professional
    • CISSP-ISSEP: Certified Information Systems Security Professional – Information Systems Security Engineering Professional
    • GDSA: GIAC Defensible Security Architecture
    • FITSP-D: Federal IT Security Professional - Designer
  • Software Development Security Certification
    • CSSLP: Certified Secure Software Lifecycle Professional
  • Orchestration Certification
    • CKA: Certified Kubernetes Administrator 
    • Certified Container Security Expert
  • Can identify needed changes to processes and activities and help to implement continuous improvement solutions
  • Experience creating various types of vulnerability and assessment scans with multiple tools
  • Experience using eMASS / Xacta / SNOW / LATTE ART

Salary Range: $117,000 - $292,000

We are an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.

Skills

AWSAzureKubernetesCI/CDData EngineeringSAPCybersecurityDevOpsRisk ManagementComplianceAWS CertifiedCISSP

Similar Jobs

30

Information Security Principal

Bpinternational · GB: Sunbury - ICBT, United Kingdom +1 · Remote

2 weeks ago

Principal Information Security Engineer

AJ Bell · Manchester or London / Hybrid, United Kingdom · Hybrid

2 days ago

Principal Information Security Engineer - Threat Intelligence

Svb · IND - KA - Bangalore - Outer Ring Road, India · Hybrid

1 week ago

Principal Information Security Engineer - Cyber Ops

Svb · IND - KA - Bangalore - Outer Ring Road, India · Hybrid

1 week ago

Principal Information Security Analyst

Providence Health & Services · Renton, WA, United States, US · Onsite

1 week ago

Principal Information Security Engineer - Threat Intelligence

Svb · IND - KA - Bangalore - Outer Ring Road, India · Hybrid

2 weeks ago

Business Information Security Principal

Capgroup · Irvine, United States of America

2 weeks ago

Principal Information Security Engineer - Cyber Ops

Svb · IND - KA - Bangalore - Outer Ring Road, India · Hybrid

2 weeks ago

Principal Information Security Engineer

Amadeus · Sophia Antipolis, France +1 · Hybrid

2 weeks ago

The Principal Information Security Specialist, Threat Intelligence

Nttlimited · Bangalore, India · Hybrid

3 weeks ago

Principal Information Security Engineer (Identity)

Zscaler · San Jose, California, USA · Hybrid, Onsite

3 weeks ago

Principal Information Security Engineer (supporting Naval Research Lab)

ASRC Federal · Welcome, MD 20693, USA

3 weeks ago

Principal Information Security Architect - Data Security

Highmarkhealth · PA, Working at Home - Pennsylvania, United States of America +50 · Remote

3 weeks ago

Principal Information Security Engineer

AJ Bell · Manchester or London / Hybrid, United Kingdom · Hybrid

3 weeks ago

Principal Information Security Partner

Thoughtworksreferral · Singapore, Singapore +1

3 weeks ago

Principal Information Security Services Architect

Nttlimited · hyderabad, India · Hybrid

1 month ago

Principal Information Security Engineer

Mastercard · Toronto, Canada

1 month ago

Principal Information Security Engineer - Blockchain Technology

Mastercard · Dublin, Ireland

1 month ago

Principal Information Security Risk Management - AI

earlywarningservices · Scottsdale, United States of America +2 · Hybrid

1 month ago

Principal Information Security Engineer

Sentilink · United States · Remote

1 month ago

Principal Information Security Engineer- Eng

UKG · Noida, UP,IN, IN

2 months ago

Principal Information Security Engineer, Identity Security Engineering

JLL employee · Home Office - Texas - Houston Metro, United States of America · Remote

2 months ago

Principal Information Security Engineer

Fifththird · Virtual - Ohio, United States of America · Remote

3 months ago

Principal Information Security Engineer

Mastercard · Pune, India

3 months ago

Principal Information Security Engineer

Selffinancial · Austin, TX +1 · Remote

3 months ago

Information Security Principal (Environment Threat Assessment)

Salesforce · California - San Francisco, United States of America +2 · Onsite

3 months ago

Principal Information Security Consultant

Mastercard · London, England (Angel Lane), United Kingdom +2

4 months ago

Principal Information Security Strategist

Southwest Power Pool · Little Rock, AR · Remote, Hybrid, Onsite

5 months ago

Principal Information Security Officer - Mellon College of Science - Pittsburgh Supercomputing Center

Careers @ Carnegie Mellon · Pittsburgh, United States of America

6 months ago

Principal Information Security Engineer

Reyes Holdings Our Culture · Rosemont, IL, US

1+ year ago