Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Engineer/ISSO Support

Simple Technology Solutions

Job Description

Job Description

At Simple Technology Solutions, our people are our priority. We know our team members are more than employees—they're parents, friends, volunteers, artists, and athletes. That's why we offer flexibility to help them thrive personally and professionally while delivering exceptional solutions to our Federal Government clients.

Our culture is built on collaboration, continuous learning, and excellence. We are mentors and thought leaders who share knowledge and foster growth. Recognized as a "Best Place to Work," we believe a range of perspectives helps us drive innovation and exceed customer expectations. At STS, taking care of our people isn't a perk—it's the standard.

As a HUBZone company, we also offer special incentives for team members living in qualified HUBZones. Check out the HUBZone map HERE to see if you qualify!

Simple Technology Solutions is looking for a Security Engineer/ISSO Support to add to our team.

Quick Position Overview:

  • US Citizenship is required
  • Bachelor's Degree is required
  • minimum of 6 years' position related experience is required
  • Part Time Position

The Role:

STS is looking for a Security Engineer / ISSO Support specialist to join a federal data engineering team. You will serve as the security and privacy authority on a federal data engineering program, protecting highly sensitive financial data and ensuring the platform meets the full spectrum of federal security requirements from design through production. Deep knowledge of the federal ATO process and hands-on Zero Trust implementation on AWS are prerequisites for this position.

This position is contingent upon contract award.

The Security Engineer / ISSO Support at STS will:

  • Serve as the primary point of contact and subject matter expert for all security assessment and authorization activities; work with the government team in completing the ATO process for integrating new capabilities and support the full federal Software Development Lifecycle (SDLC)
  • Implement and continuously maintain Zero Trust Architecture (ZTA) across the platform per federal Zero Trust mandates; ensure security controls are embedded at every layer of the technology stack from storage classifications through IAM roles, network controls, and application security
  • Ensure full compliance with FISMA, NIST 800-53, NIST 800-63, OWASP ASVS Level 2, federal software supply chain security requirements, and all agency-mandated security, privacy, performance, and quality requirements
  • Engage with the agency's privacy and security teams and the System Owner at the start of every new service, feature, or dataset design to assess information type, security classification, data retention, and whether a System of Records Notice (SORN), Privacy Impact Assessment (PIA), or other formal review is required
  • Identify and document what data is collected and why, how it is used and shared, how it is stored and secured, how long it is retained, and how users will be notified in the event of a security breach; ensure compliance with the Privacy Act of 1974 and the Federal Records Act
  • Ensure all code submitted to production is free of medium- and high-level static and dynamic security vulnerabilities per OWASP ASVS Level 2; integrate OWASP ZAP, SAST tools, government-provided container analysis tools, and dependency analysis into the CICD pipeline as part of the Definition of Done
  • Ensure security scans are conducted at least once per sprint; review, document, and explain all false positives; ensure scan results are visible in the team performance dashboard
  • Manage AWS IAM role configurations and naming standards; maintain Secrets Manager credential management and certificate validity across all environments
  • Use CloudWatch logging, CloudTrail, and AWS Config to ensure the production environment remains consistent, controllable, and auditable
  • Ensure compliance with federal AI governance requirements for all AI/ML platform components; ensure compliance with the Trusted Internet Connections (TIC) Initiative, Section 508, and the 21st Century Integrated Digital Experience Act
  • Collaborate with the IV&V team and agency security staff to continuously improve the platform's security posture; support resolution of all security findings within contractually required timelines
  • Participate in 2-week sprint ceremonies, quarterly PI planning, and agile delivery using JIRA and GitHub

Education and Experience:

Required

  • Bachelor's degree or higher in Cybersecurity, Information Systems, Computer Science, or a related field
  • 6+ years of experience in federal information security with demonstrated experience in an ISSO role or ATO-leadership capacity at a civilian federal agency; financial regulatory agency experience strongly preferred
  • Deep working knowledge of FISMA, NIST 800-53, NIST 800-63, and the full federal ATO/SDLC process
  • Hands-on experience implementing Zero Trust Architecture on AWS in a FedRAMP-authorized environment including IAM hardening, network segmentation, and application-layer security controls
  • Experience with OWASP ZAP, SAST/DAST tooling, dependency analysis, and container security scanning integrated into CI/CD pipelines
  • Familiarity with AWS security services: IAM, Secrets Manager, CloudWatch, CloudTrail, AWS Config, and S3 bucket policy and sensitivity classification management
  • Experience conducting or supporting Privacy Impact Assessments (PIAs) and System of Records Notices (SORNs)
  • Knowledge of the Privacy Act of 1974, Federal Records Act, Section 508, the 21st Century IDEA Act, and applicable federal Zero Trust, AI governance, software supply chain, and TIC mandates
  • Experience managing security for systems handling non-public, highly sensitive financial or regulatory data
  • Strong written and verbal communication skills; ability to produce authoritative security documentation including PIAs, ATO packages, and OWASP false positive documentation
  • Experience in agile federal environments with sprint-based delivery, JIRA, and GitHub
  • Must be able to work 8am-5pm Eastern Time regardless of home location
  • Active federal public trust suitability determination or ability to obtain one required
  • Must be a U.S. citizen

STS is committed to equal employment opportunity and merit-based employment practices. STS provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination, harassment, and retaliation in all employment practices and decisions in accordance with applicable federal, state, and local laws.


Employment decisions at STS are based on individual qualifications, performance, skills, and business needs, without regard to race, color, religion, sex, national origin, age, disability, protected veteran status, sexual orientation, gender identity, genetic information, marital status, or any other status protected by applicable law.


This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, compensation, training, transfer, discipline, termination, layoff, recall, and leaves of absence.

---

Applicants may request removal from our applicant database, or specific information about how the data is used by contacting View email address on ziprecruiter.com.

Vacancy posted 7 days ago
Similar jobs that could be interesting for youBased on the Security Engineer/ISSO Support in Washington DC vacancy
  •  ...Information System Security Engineer (ISSO) / IT Systems Engineer We are seeking an experienced Information System Security Engineer (ISSO...  ..., POA&Ms). Execute contract-specific security duties supporting legal proceedings, research operations, and government-sponsored... 
    Suggested
    Contract work

    Talent Depot

    Arlington, VA
    5 days ago
  • A technology solutions company is seeking a Staff IT Engineer to manage enterprise device lifecycle management and security tooling. This hybrid role requires over 10 years of IT engineering or systems administration experience. The ideal candidate will have deep knowledge... 
    Suggested

    Tari Labs, LLC.

    Washington DC
    5 days ago
  • $95 - $125 per hour

     ...Job Summary: Our client is seeking a Security Infrastructure Support Senior Security Engineer to join their team! This position is located in Bethesda, Maryland. Duties: Design, deploy, and maintain enterprise IT security systems across hybrid... 
    Suggested
    Local area

    KellyMitchell Group

    Bethesda, MD
    4 days ago
  • $166k - $253k

    A defense technology company in Washington is seeking a Security Software Engineer. The role focuses on developing cybersecurity tools for embedded Linux systems and Android devices. Candidates should have at least 2 years of experience in software development with skills... 
    Suggested

    Slope

    Washington DC
    2 days ago
  • IBM is seeking a professional to perform security hardening and vulnerability assessments in a Linux environment. The ideal candidate will work on configuration management, analyze security incidents, and deliver consulting services to improve security posture. A Bachelor... 
    Suggested

    IBM

    Washington DC
    4 days ago
  •  ...Senior Network Architect / Security Integration Engineer (SME) The Senior Network Architect / Security Integration Engineer (SME) serves as the...  ...developing and enforcing advanced security policies that support Zero Trust initiatives. The position serves as the senior... 

    CyKor

    Alexandria, VA
    1 day ago
  •  ...ensure compliance with DoD cybersecurity standards, and collaborate with cross-functional teams. The role requires an active secret security clearance and previous experience within a mission-critical environment. Benefits include comprehensive health insurance and... 
    Flexible hours

    Serco

    Washington DC
    1 day ago
  •  ...seeking a Cyber Systems Administrator to support the 705th CTS Distributed Mission...  ...Operations Center Infrastructure Development and Engineering (DMOC-IDE) team at Kirtland Air Force...  ...and cyber‑readiness. An Active secret security clearance is required prior to starting.... 
    Full time
    Contract work
    Part time
    Local area
    Remote work
    Flexible hours

    Serco

    Washington DC
    1 day ago
  • Responsibilities Perform security hardening and rule creation in Linux environment. This includes reviewing new and re‑evaluating existing...  ...eliminate unnecessary risk in all environments. Experience supporting federal agencies. Ability to demonstrate and explain... 

    IBM

    Washington DC
    4 days ago
  • $140k - $180k

    Overview Edgewater Federal Solutions is currently seeking a Security Support Engineer Lead to provide support to our Federal government contract. Due to the nature of the contract and customer US Citizenship is required. Responsibilities Provide management, development... 
    Contract work

    Edgewater Federal Solutions, Inc.

    Bethesda, MD
    2 days ago
  •  ...Job Description:\n\nThe Senior Network Security Engineer to design, implement, operate, maintain...  ...engineering and day-to-day operational support of assigned security platforms, including...  ...ImprovementSupport IT security, ISSO, system owner, audit, and security governance... 
    Remote work
    Night shift

    Ignite IT

    Suitland, MD
    12 days ago
  •  ...Foreign Service Security Engineering Officer Foreign Service Security Engineering Officers (SEOs) are members of the Diplomatic Security...  .... Manages accountable property. Providing Technical Support Throughout Geographic Region Serves as the security engineering... 
    Work at office
    Worldwide

    U.S. Department of State

    Washington DC
    5 days ago
  • $166k - $220k

     ...Security Engineer Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities...  ...class defensive controls protecting the infrastructure that supports our defense technology products. What You'll Do Build... 
    Full time
    Work experience placement
    Immediate start
    Remote work

    Colorwave Inc

    Washington DC
    2 days ago
  • $113k - $188k

     ...Framework (CSF) guidelines, standards, and best practices for cyber security and risk management to strengthen an organizations security...  ...key risks to government CISO and security auditors. Support risk audits and assessments, provide recommendations for application... 
    Full time
    Temporary work
    Flexible hours

    Guidehouse

    Washington DC
    3 days ago
  •  ...Senior Strategic Consultant - DOS Training Security Engineering Dexis is a dynamic professional services firm dedicated to partnering with...  ...Dexis is seeking a highly experienced Strategic Consultant to support our capture and business development efforts for upcoming... 
    Contract work
    Work at office

    Dexis Consulting Group

    Washington DC
    1 day ago
  • Tyto Athene is seeking a Lead Field Support Engineer in Washington, DC to provide hands-on support for all OIS systems at various remote healthcare locations. Key responsibilities include troubleshooting system errors, installing configurations and updating documentation... 
    Remote work

    Tyto Athene

    Washington DC
    1 day ago
  •  ...This is a high-visibility role supporting a mission-critical program...  ...thousands of users in a high-security environment. You will directly...  ...opportunities related to security engineering activities to leadership and...  ...Manager) Experience as an ISSO or ISSE with Federal... 
    Contract work
    For contractors
    Work experience placement
    Work at office
    Remote work
    Shift work

    Ideal Innovations

    Washington DC
    2 days ago
  •  ...We are seeking an Information Systems Security Engineer (ISSE) to own and drive the security posture...  ...g., SSPs, POA&Ms, control matrices) to support Authority to Operate (ATO) Tailor...  ...of experience in cybersecurity, ISSE, ISSO, ISSM, or related roles supporting DoD... 
    Full time
    For contractors
    Work at office

    RuneTech

    Arlington, VA
    3 days ago
  •  ...Information Systems Security Engineer Zetier seeks an Information Systems Security Engineer...  ...virtualization, and orchestration. You'll support, build, and secure cloud-based...  ...(Ansible, Puppet) Previous role as ISSO, ISSM, or cloud security specialist... 

    Zetier

    Arlington, VA
    1 day ago
  •  ...to our customers and the missions they support. We pride ourselves on being forward-leaning...  ...Title: DHS Information Systems Security Engineer Senior Location : NCR Clearance...  ...methodologies and procedures. Collaborate with ISSO and other DHS teams on incident... 
    Full time
    Contract work
    Work at office

    OneZero Solutions

    Washington DC
    4 days ago
  •  ...Solutions (ISS) is looking for a mid-level ISSE supporting the Office of Naval Intelligence. The Information Systems Security Engineer (ISSE) is responsible for engineering,...  ...cybersecurity directives. • Understanding of ISSO responsibilities per SECNAV M-5239.2. •... 
    Work at office

    Information Systems Solutions

    Suitland, MD
    5 days ago
  • A progressive technology company is seeking an Offensive Security & Code Analysis Engineer. In this role, you will conduct penetration testing and security assessments to identify vulnerabilities in web applications and networks. The ideal candidate should possess 3+ years... 
    Remote job

    Districttechgroup

    Washington DC
    4 days ago
  • $99k - $225k

     ...Information Systems Security Engineer The Opportunity: Cyber threats are everywhere...  ...Information Systems Security Officer (ISSO), or Governance, Risk, and Compliance specialist...  ...the Enterprise Mission Assurance Support Service (eMASS) or Xacta ~ Experience... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    BOOZ, ALLEN & HAMILTON, INC.

    Arlington, VA
    2 days ago
  •  ...Network Security Engineer (Cisco, Palo Alto) About Us: We are a dynamic technology services company based in Washington, DC, specializing in cutting-edge network solutions. We are seeking a skilled Network Engineer to join our team to ensure the seamless operation... 
    Remote work

    Elios

    Washington DC
    2 days ago
  • $105 - $140 per hour

    Job Summary Security Infrastructure Support Security Architect position located in Bethesda, Maryland. Responsibilities Architect, design, and deploy...  ...complex enterprise IT systems. 5+ years at the Senior Engineer level or higher. 5+ years of hands‑on experience with cybersecurity... 
    Hourly pay
    Local area

    KellyMitchell Group

    Bethesda, MD
    2 days ago
  • $130k - $140k

     ...Security Leadership & Governance Collaborate with senior leadership...  ...of the CIS Operations Team, support day-to-day management of ISI...  ...Experience performing ISSO responsibilities Experience...  ...Information System Security Engineer (ISSO) / IT Systems Engineer... 
    Contract work
    Work experience placement
    Local area

    University of Southern California

    Arlington, VA
    2 days ago
  • $99k - $225k

    Information Systems Security Engineer Cyber threats are everywhere, and the constantly evolving...  ...Information Systems Security Officer (ISSO), or Governance, Risk, and Compliance specialist...  ...the Enterprise Mission Assurance Support Service (eMASS) or Xacta Experience... 
    Work at office
    Local area

    Booz Allen Hamilton

    Arlington, VA
    1 day ago
  • Elevate Ventures is looking for a Cyber Security Specialist I in Washington, DC. This role provides entry-level support in cybersecurity engineering, implementing security measures, and ensuring compliance. Ideal candidates will have a Bachelor’s degree in Cybersecurity... 

    Elevate Ventures

    Washington DC
    5 days ago
  • $130k - $216k

     ...critical role in leading teams for Technology cybersecurity program support projects. This position will provide guidance and support for...  ...clients maximize the value and effectiveness of their existing security tooling and platforms (e.g., SIEM, EDR, vulnerability... 
    Temporary work
    Flexible hours

    Guidehouse

    Arlington, VA
    14 days ago
  • $115k - $195k

     ...solutions to complex national security issues. With over 50 years of...  ..., systems and digital engineering, software development, test and...  ...services. These capabilities support more than 100 Above Water Sensor...  ...While you will assist the ISSM/ISSO with Risk Management... 
    Full time
    Work at office
    Flexible hours
    3 days per week

    Systems Planning and Analysis, Inc.

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Engineer/ISSO Support. Be the first to apply!