
Information System Security Engineer – ISSE
Posted 14 hours ago

Posted 14 hours ago
This is a fully remote position, open to applicants in Ohio.
• Assist in the development and security enhancement of a DevSecOps cloud environment in accordance with DoD RMF, NIST SP 800-53 Rev. 5, and CMMC 2.0 standards.
• Provide support for cybersecurity governance and compliance within a DoD DevSecOps framework on an Azure-based cloud infrastructure.
• Aid in the comprehensive lifecycle of Assessment and Authorization processes.
• Sustain ongoing Authority to Operate compliance.
• Ensure the accuracy, completeness, and integrity of security artifacts within eMASS.
• Create, implement, and enforce cybersecurity policies.
• Supervise control inheritance and modifications to system boundaries.
• Conduct risk assessments and advise engineering teams on aligning configurations with RMF controls, Zero Trust principles, and DoD Cloud SRG requirements.
• Act as a liaison for government stakeholders, authorizing officials, mission partners, auditors, and cross-functional engineering teams.
• Organize security briefings and coordinate remediation efforts.
• Lead collaborations with development and operations teams.
• Design and deliver security awareness training programs.
• Monitor and respond to security incidents and threats.
• Oversee security audits and assessments.
• Maintain effective working relationships with the ISO, AO, SCA, and other IS cybersecurity engineers.
• Keep abreast of security trends and emerging technologies.
• Perform additional duties as assigned.
• Must be a U.S. citizen.
• Active Secret security clearance required.
• Bachelor’s degree in cybersecurity, computer science, engineering, or a related field (or equivalent experience).
• 3+ years of cybersecurity engineering experience in support of DoD, federal, or regulated environments.
• Experience with eMASS is mandatory.
• Proficient in Azure security tools, including the Microsoft Defender suite, Sentinel, Purview, and Azure Policy.
• Strong understanding of FedRAMP requirements and their implementations.
• In-depth knowledge of DoD RMF, NIST SP 800-53 Rev. 5 controls, and associated security assessment/evidence requirements.
• Experience with the implementation of CMMC 2.0 or NIST SP 800-171 controls, including documentation, continuous monitoring, and audit readiness.
• Skilled in vulnerability management tools, remediation processes, and risk-based prioritization.
• Familiar with threat intelligence platforms, adversary TTP analysis, and constructing threat-informed security detections.
• Successful completion of a background investigation, including criminal history and identity verification.
• Competitive benefits package aligned with industry standards.
• Awards and recognition program.
• Personalized support from ARS Senior Managers.
• Work/life balance.
• Opportunities for career development and support.
• Flexible remote work arrangements.
OpenLoop
Funcional Health Tech
Salesforce
CNO Financial Group
Get handpicked remote jobs straight to your inbox weekly.