Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

ISSO / Cloud Security Engineer

iAdeptive Technologies

Job Description

About the Role

\n

iAdeptive Technologies is seeking a senior, hands-on ISSO/Cloud Security & DevSecOps Engineer to lead the security authorization for a FedRAMP High environment supporting a federal health agency. Proven ISSO/ATO experience is the primary requirement: this position owns the authorization package and drives the system through authorization on an accelerated timeline.

\n

The role works as part of the cloud team, sharing the same backlog, standups, and pipeline as the engineers, and requires strong AWS and DevSecOps skills. Security is implemented directly in the platform and the CI/CD pipeline rather than managed from a separate compliance function.

\n

Beyond the program, this is a key corporate security role. The position sets the direction for iAdeptive’s enterprise zero-trust and cybersecurity posture, providing strategy, standards, and oversight across the organization. The role therefore requires genuine depth in security authorization and cloud engineering, combined with the judgment to lead security at a corporate level.

\n

How We Work

\n

Security Is Embedded, Not Siloed — This position works as part of the cloud team, sharing the same backlog, standups, and pipeline as the engineers, and embeds security controls into the build rather than reviewing them afterward.

\n

Authorization-Led and Hands-On — The ATO is the anchor of the role — attaining and sustaining the authorization boundary on an accelerated timeline — while remaining hands-on in AWS and the pipeline throughout.

\n

Corporate Security Leadership — Alongside program delivery, the role owns the direction of the company’s zero-trust and cybersecurity posture, setting standards and providing oversight that protect the organization as a whole.

\n

What You Will Do

\n

ISSO / Authorization (Primary)

\n
    \n
  • Serve as ISSO for a FedRAMP High environment, owning the authorization package and driving it through attainment and ongoing authorization on an accelerated timeline.
  • \n
  • Author and maintain the System Security Plan (SSP), control narratives, and supporting artifacts against NIST 800-53 and agency security baselines.
  • \n
  • Manage Plans of Action and Milestones (POA&Ms), track remediation to closure, and maintain audit-ready evidence.
  • \n
  • Lead Assessment and Authorization (A&A) activities and serve as the security point of contact for assessors and oversight.
  • \n
  • Establish and operate continuous monitoring, including vulnerability scanning, configuration compliance, and security event review.
  • \n
\n

Cloud Security & DevSecOps (Required)

\n
    \n
  • Operate as an embedded member of the cloud and platform team, participating in the backlog, standups, and pipeline alongside the engineering staff.
  • \n
  • Implement and validate security controls in AWS GovCloud, including IAM, logging, encryption, network security, and configuration compliance.
  • \n
  • Build and harden the CI/CD pipeline, embedding security gates, scanning, and automated evidence collection through policy-as-code.
  • \n
  • Author and review infrastructure-as-code to enforce secure configuration by default.
  • \n
  • Automate compliance and monitoring to support continuous authorization and efficient post-ATO sustainment.
  • \n
\n

Corporate Cybersecurity & Zero Trust (Strategy & Oversight)

\n
    \n
  • Set the direction for the company’s enterprise zero-trust and cybersecurity strategy, standards, and policies.
  • \n
  • Provide security oversight across the organization, including identity, access, endpoint, and network security posture.
  • \n
  • Guide the adoption of security best practices company-wide and advise leadership on cyber risk.
  • \n
\n

What We’re Looking For

\n

Primary Requirement

\n
    \n
  • Direct, hands-on ISSO experience in a federal environment, including at least one system taken through Assessment and Authorization (A&A) to an ATO.
  • \n
  • Strong command of NIST 800-53, the RMF, FedRAMP, and FISMA, with the ability to author control narratives accepted by assessors.
  • \n
  • Experience managing POA&Ms, continuous monitoring, and audit-ready evidence.
  • \n
\n

Required — Cloud & DevSecOps

\n
    \n
  • Hands-on AWS engineering experience, including IAM, encryption, networking, and configuration compliance (GovCloud preferred).
  • \n
  • Hands-on DevSecOps experience building and securing CI/CD pipelines, infrastructure-as-code, and security automation.
  • \n
  • A track record of working within an engineering team and delivering implementation work, not solely security review.
  • \n
  • Clear technical writing and the ability to communicate effectively with both engineers and assessors.
  • \n
\n

Corporate Security Leadership

\n
    \n
  • Experience defining zero-trust or enterprise security strategy, standards, and policy at an organizational level.
  • \n
  • Ability to advise leadership on cyber risk and drive security best practices across a company.
  • \n
\n

Bonus Points

\n
    \n
  • Security certification such as CISSP, CISM, CAP, or AWS Security – Specialty.
  • \n
  • AWS certification (Solutions Architect, SysOps, or DevOps Engineer).
  • \n
  • Experience with container security, Terraform, and federal compliance or authorization tracking tooling.
  • \n
  • Familiarity with ISO/IEC 42001 or AI risk frameworks where AI systems fall within the authorization boundary.
  • \n
\n

Core Competencies

\n

Competency

\n

What It Looks Like Here

\n

Authorization Ownership

\n

Drives an A&A package through to ATO and sustains it — the primary anchor of the role.

\n

Embedded Security

\n

Works within the cloud team, integrating controls into the build.

\n

Hands-On AWS

\n

Implements and validates security controls directly in AWS.

\n

DevSecOps

\n

Builds and secures the CI/CD pipeline using policy-as-code and IaC.

\n

Corporate Zero Trust

\n

Sets enterprise security strategy, standards, and oversight company-wide.

\n

Communication

\n

Writes assessor-ready narratives and advises leadership on cyber risk.

\n

\n

Why iAdeptiv

\n

eiAdeptive Technologies is an 8(a) small business that delivers modern data, cloud, and AI engineering to federal mission programs. We are engineers first. We win work by building systems that hold up under audit and scale under real load — not by selling slideware. You will work alongside architects and engineers who write the code they design, ship into FedRAMP-authorized environments, and treat governance and security as part of the build rather than paperwork bolted on at the end. Small enough that your work is visible; serious enough that it matters

\n

\n

Details

\n
    \n
  • Location: Remote (U.S.); Maryland-area candidates preferred for occasional on-site collaboration
  • \n
  • Employment Type: Full-time, W-2. Eligibility to work in the U.S. required; this role supports federal programs and may require the ability to obtain a Public Trust or higher background determination
  • \n
  • Education: Bachelor’s degree in computer science, information security, a related field, or equivalent professional experience
  • \n
  • Experience: 7+ years across information security and cloud/DevSecOps, including hands-on ISSO experience with a system taken through A&A to ATO
  • \n
  • Benefits: Health, dental, and vision coverage; 401(k) with company contribution; paid time off and federal holidays; training and certification support
  • \n
Vacancy posted 10 days ago
Similar jobs that could be interesting for youBased on the ISSO / Cloud Security Engineer in Columbia, MD vacancy
  • $105k - $125k

     ...Piper Companies is seeking a Cloud Security Engineer to support a leading organization in the technology industry in the Fulton, Maryland area. The Cloud Security Engineer role is hybrid requiring to be in office 2 days per week. The Cloud Security Engineer will... 
    Suggested
    Work at office
    2 days per week

    Piper Companies

    Fulton, MD
    2 days ago
  •  ...Security Engineer Cogent People Inc. is seeking a Security Engineer to implement and validate security controls across applications and...  ...CMS standards. The Security Engineer works closely with the ISSO and other security stakeholders to ensure continuous monitoring... 
    Suggested
    Contract work
    Temporary work

    Cogent People Inc.

    Columbia, MD
    1 day ago
  • $135k - $216k

    Responsibilities Cyber Systems Engineer / ISSOLocation: Annapolis Junction, MDClearance Required: TS/SCI with PolygraphCompany...  ...team as a Cyber Systems Engineer / Information System Security Officer (ISSO) and help shape the future of national security. In this critical... 
    Suggested
    Contract work
    Shift work

    Peraton Corporation

    Annapolis Junction, MD
    22 hours ago
  • $146k - $234k

    ResponsibilitiesSeeking a System Engineer - Information Systems Security Officer (ISSO) to provide support for proposing, coordinating, implementing, and enforcing information systems security policies, standards, and methodologies. Maintain operational security posture... 
    Suggested
    Contract work
    Shift work

    Peraton Corporation

    Annapolis Junction, MD
    2 days ago
  • $77.6k - $176k

    Cloud Security Platform Product Sales EngineerThe Opportunity:Drives organizational success by managing or performing sales activities and...  ...in a customer-facing technical role such as a sales engineer, solutions engineer, or security engineerExperience supporting... 
    Suggested
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Booz Allen Hamilton

    Annapolis Junction, MD
    2 days ago
  •  ...Job Description Job Description AEITS, a GTSC company, seeking a Senior AWS Cloud Systems Security Engineer .   Location: Annapolis Junction, MD  All work is on-site. This is not a hybrid or remote position.   Mission : Management, sustainment and security... 
    Full time
    Temporary work
    Local area

    Advantage Engineering & IT Solutions Inc

    Annapolis Junction, MD
    17 days ago
  • $102.5k - $188.9k

     ...with confidence, and proactively manage to secure success. Splunk plays a critical role...  ...across complex environments. As a Splunk Engineer/Architect, you will design, implement,...  ...sources into Splunk, including infrastructure, cloud, application, and security technologies.... 

    Deloitte LLP

    Maryland, MD
    23 days ago
  • $120.8k - $265.8k

    Job Title: Senior Network Security EngineerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start:...  ...Required: Up to 10%Type of Travel: Local* * *Senior Network Security Engineer - Advance the Mission with CACI!At CACI, we don’t just work on... 
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Columbia, MD
    1 day ago
  • $120.8k - $265.8k

    Job Title: Network Security EngineerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCI...  ...Travel: Continental US* * *The Opportunity:We are seeking a Network Engineer who will provide assistance in all aspects of network... 
    Contract work
    Work experience placement
    Flexible hours

    CACI International

    Columbia, MD
    2 days ago
  • $120.8k - $265.8k

    Job Title: Networking Security Engineer IIJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCI with PolygraphEmployee Type: RegularPercentage of Travel Required: NoneType of Travel: None* * *The Opportunity:We are seeking a... 
    Contract work
    Work experience placement
    Flexible hours

    CACI International

    Columbia, MD
    3 days ago
  • $120.8k - $265.8k

     ...Job Title: Senior Network Security EngineerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start...  ...Required: Up to 10%Type of Travel: Local* * *Senior Network Security Engineer – Advance the Mission with CACI!At CACI, we don’t just work on... 
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Columbia, MD
    2 days ago
  •  ...Network Security EngineerLocation: Owings Mills MD – HybridJob Type: 6 Month Contract To HireNote...  ..., etc...Moved 50% of load to Azure cloud from on-premise.. 50% of load in cloud and...  ...Description:Purpose:The Network Engineer is responsible for the design, availability... 
    Contract work
    Work experience placement
    Local area
    Remote work

    Samprasoft

    Columbia, MD
    1 day ago
  • $135k - $216k

     ...is seeking a highly skilled Cyber Splunk Software Engineer to join our mission focused team supporting secure, enterprise level IT environments. In this role, you...  ...and cyber threat detection engineering.Background in cloud technologies (AWS, Azure, or DoD cloud environments... 
    Contract work
    Shift work

    Peraton Corporation

    Annapolis Junction, MD
    4 days ago
  • $175k - $250k

     ...Description What Impact You'll Have Seeking experienced offensive security professionals to conduct security assessments, red team...  ...offensive security certifications Experience with reverse engineering and exploit development Background in offensive cyber operations... 
    Contract work
    Work experience placement
    Immediate start

    GRVTY

    Columbia, MD
    a month ago
  •  ...Cloud Security Architect BigBear.ai is seeking a Cloud Security Architect with an active TS/SCI with Poly clearance to design and implement...  ...: AWS Certified Security Specialty, Azure Security Engineer Associate, CCSP (Certified Cloud Security Professional) Understanding... 
    Work at office

    BigBear Inc

    Columbia, MD
    1 day ago
  • $120.8k - $265.8k

    Job Title: Information Systems Security Engineer ( ISSE)Job Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCI with PolygraphEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Continental US* * *The... 
    Contract work
    Work experience placement
    Flexible hours

    CACI International

    Columbia, MD
    1 day ago
  • $250.6k - $362.6k

     ...States.Meet the Team You will join Cisco’s Security and Policy Platform Group, a foundational...  ...security outcomes, as a Principal Engineer. The team delivers secure, scalable capabilities...  ...third-party products. This work spans cloud and client infrastructure, security, policy... 
    Full time
    Temporary work
    Local area
    Remote work
    Flexible hours

    CISCO Systems

    Columbia, MD
    2 days ago
  • $110k

     ...focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future. AGE Solutions is looking for a Senior Cyber Cloud Assessment Engineer to join our team in support of an upcoming cybersecurity risk management and assessment... 
    Full time
    Immediate start

    AGE solutions

    Maryland, MD
    a month ago
  •  ...Technologies is seeking TS/SCI Poly Cleared ISSE and ISSO Candidates to support the sustainment and modernization of a Cyber Security Infrastructure. CyberCore Technologies...  ...strengths in Cyber Security, Networking, Engineering/Operations, and Software Development.ResponsibilitiesThe... 

    CyberCore Technologies

    Annapolis Junction, MD
    4 days ago
  • $165.03k - $240k

     ...solution development and deployment, with expertise in cloud-based services, software and systems engineering, cyber capabilities, and data science. Enlighten...  ...is seeking a highly skilled and hands-on Software Security Engineer with extensive experience. The ideal candidate... 
    Work experience placement
    Work from home
    2 days per week
    1 day per week

    HII Mission Technologies Division

    Columbia, MD
    22 hours ago
  • $55k - $65k

     ...This Information Systems Security Engineer role at CyberCore Technologies supports information assurance needs within a Federal environment. The position requires current DoD-aligned certification coverage and an active TS/SCI security clearance with polygraph, along with... 

    Cybersecurity Jobs

    Columbia, MD
    3 days ago
  •  ...Information Systems Security Engineer at nDepth Security, LLC Location: Columbia, MD Responsibilities Support the customer in the design, development, implementation, and/or integration of IA architectures, systems, or system components. Provide assistance... 
    Full time

    nDepth Security, LLC

    Columbia, MD
    4 days ago
  •  ...Job Description CyberLinx Solutions, LLC is seeking a SIEM Engineer / Security Platform Engineer to design, implement, and maintain our Security...  ...including firewalls, servers, endpoints, SaaS applications, cloud platforms, and identity systems. Build and maintain log... 

    CyberLinx Solutions LLC

    Annapolis Junction, MD
    26 days ago
  •  ...grow and the ability to have an impact on every client you work with.  ARSIEM is currently looking for an  Information Systems Security Engineer 3 to participate as a primary security engineering representative on engineering teams for the design, development,... 

    ARSIEM

    Columbia, MD
    a month ago
  •  ...What You Will Do: At Independent Software, as an Information Systems Security Engineer (ISSE) you will support vulnerability management, security compliance, and continuous monitoring activities for mission-critical systems. You will configure and maintain Tenable.sc... 
    Full time

    Independent Software

    Columbia, MD
    13 days ago
  • $10k

     ...grow and the ability to have an impact on every client you work with.  ARSIEM is currently looking for an  Information Systems Security Engineer 2 to participate as a security engineering representative on engineering teams for the design, development, implementation and... 

    ARSIEM

    Columbia, MD
    a month ago
  • $145k - $175k

     ..., we provide leading-edge data, network security software, and expert guidance to reduce...  ...Description: Participate as a security engineering representative on engineering teams for...  ...(10 - 14) years experience as an ISSE / ISSO on programs and contracts of similar scope... 

    Peterson Technologies

    Annapolis Junction, MD
    a month ago
  • $125.12k - $187.68k

     ...nation’s most mission-critical facilities, secure environments, complex infrastructure, and...  ...power and technology solutions through engineering expertise and smart systems integration.Why...  ...excellence.Actively collaborate with the ISSO to develop, maintain, and enhance cyber... 

    M.C. Dean

    Annapolis Junction, MD
    1 day ago
  • $112.8k - $257k

    Security EngineerThe Opportunity: We need a technical professional responsible for designing, building, and maintaining systems that protect an organization’s data, networks, and IT infrastructure from cyber-attacks. In this position, you will focus on proactive defense... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Annapolis Junction, MD
    2 days ago
  •  ...Scope Polygraph required Position Overview Our client is seeking a Vulnerability Assessment Analyst / Information Systems Security Engineer (ISSE) to support vulnerability management and continuous monitoring activities in a highly secure environment. The position... 
    Part time
    For contractors
    Weekend work
    Afternoon shift

    Omniscius Consulting

    Annapolis Junction, MD
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to ISSO / Cloud Security Engineer. Be the first to apply!