Information System Security Engineer III
Star3
Description
We are seeking a dedicated Information System Security Engineer III to join our team. The Information System Security Engineer (ISSE) III provides expert-level cybersecurity engineering, security architecture, and systems security engineering support for complex and mission-critical Department of War networks and information systems. Aligned with the DoD 8570/8140 IASAE Level III (Information Assurance System Architecture and Engineering) category, the ISSE III serves as a senior technical Subject Matter Expert (SME) responsible for integrating cybersecurity requirements throughout the complete system lifecycle.
The ISSE III applies advanced systems engineering and cybersecurity principles to the design, development, integration, assessment, authorization, and sustainment of secure systems. This position provides technical leadership in addressing complex cybersecurity challenges, developing resilient security architectures, mitigating sophisticated threats, and ensuring systems maintain an acceptable security posture throughout their operational lifecycle.
The ISSE III serves as a primary technical security advisor to Government stakeholders, program managers, system architects, engineers, cybersecurity personnel, and other technical teams. The position requires significant independent judgment, technical leadership, and the ability to translate mission requirements and evolving cybersecurity threats into practical, secure engineering solutions.
Key Responsibilities
- Serve as a senior cybersecurity engineering and Information Assurance System Architecture and Engineering (IASAE) Subject Matter Expert for complex DoD systems and networks.
- Integrate cybersecurity and security functional requirements throughout the system acquisition, architecture, engineering, development, integration, testing, deployment, and sustainment lifecycle.
- Develop and evaluate secure system architectures that address mission requirements, cybersecurity threats, vulnerabilities, and applicable DoD security requirements.
- Design and implement end-to-end security solutions for enterprise networks, applications, databases, cloud environments, infrastructure, and other mission-critical systems.
- Apply systems engineering methodologies to identify and mitigate cybersecurity risks throughout the system lifecycle.
- Harden application interfaces, data repositories, operating environments, cloud infrastructure, and system components in accordance with applicable security requirements and best practices.
- Incorporate Zero Trust Architecture principles, defense‑in‑depth, boundary protection, network segmentation, firewalls, access controls, identity management, and cryptographic protections into system designs.
- Evaluate system architectures, interfaces, and security boundaries to identify potential attack paths, weaknesses, and opportunities for improved protection.
- Lead or support threat modeling, attack‑surface analysis, vulnerability assessments, risk assessments, and security architecture reviews.
- Analyze security vulnerabilities and threat intelligence to develop and implement proactive defensive measures against sophisticated adversaries.
- Develop, review, and maintain comprehensive Risk Management Framework (RMF) documentation, including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and other authorization artifacts.
- Provide technical leadership and support for RMF authorization activities, including preparation for and maintenance of Interim Authority to Test (IATT) and Authority to Operate (ATO).
- Support the development and execution of security control assessment strategies and provide technical responses to assessment findings.
- Evaluate proposed system changes, engineering designs, interfaces, and configuration modifications for cybersecurity impacts.
- Participate in Configuration Control Boards, Engineering Change Boards, architecture reviews, technical interchange meetings, and security working groups.
- Lead technical walkthroughs, security design reviews, architecture assessments, and cybersecurity technical exchanges with Government and contractor personnel.
- Serve as the primary technical cybersecurity advisor to Government stakeholders, program managers, system engineers, software developers, system administrators, and cybersecurity leadership.
- Provide authoritative technical recommendations regarding cybersecurity risks, system vulnerabilities, security controls, architecture decisions, and remediation strategies.
- Analyze system and security logs to identify anomalous activity, indicators of compromise, and emerging security threats.
- Provide senior-level technical expertise during cybersecurity incident response, containment, mitigation, and recovery activities.
- Assist with forensic investigations and root‑cause analysis involving suspected or confirmed cybersecurity incidents.
- Develop and implement technical solutions to address complex cybersecurity vulnerabilities and compliance deficiencies.
- Evaluate the integration and effectiveness of security technologies, including SIEM, IDS/IPS, firewalls, endpoint security, vulnerability management, identity and access management, encryption, and other defensive cybersecurity capabilities.
- Provide technical oversight and mentorship to junior cybersecurity engineers and other technical personnel.
- Participate in intelligence‑community, DoD, industry, and technical working groups to evaluate emerging cybersecurity technologies, threats, standards, and engineering practices.
- Translate evolving cybersecurity policies, standards, threat information, and mission requirements into actionable engineering requirements.
- Support cybersecurity assessments, audits, inspections, accreditation activities, and other Government compliance requirements.
- Maintain current knowledge of DoD cybersecurity policies, NIST standards, DISA guidance, RMF requirements, Zero Trust principles, and emerging cybersecurity threats.
- Perform other related cybersecurity engineering and systems security duties as assigned.
Requirements
- Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Security, Information Assurance, Systems Engineering, or a related technical field.
- Must have or be able to obtain a CASP or CISSP prior to start date.
- 10+ years of progressively responsible experience in systems engineering, cybersecurity engineering, information assurance, security architecture, or a related technical discipline.
- Four years of directly relevant ISSE experience may be considered in lieu of the degree requirement, subject to applicable contract and IASAE Level III baseline qualification requirements.
- Must meet applicable DoD 8570/8140 IASAE Level III baseline qualification requirements.
- Demonstrated experience designing, engineering, implementing, or assessing security architectures for complex information systems and networks.
- Extensive experience supporting the DoD Risk Management Framework (RMF) and system authorization process.
- Demonstrated experience developing, reviewing, and maintaining RMF security authorization documentation, including SSPs, SAPs, SARs, POA&Ms, IATT, and ATO documentation.
- Extensive knowledge of cybersecurity controls, security architecture principles, vulnerability management, system hardening, and defense‑in‑depth.
- Experience conducting threat modeling, security assessments, vulnerability assessments, risk assessments, and security architecture reviews.
- Experience designing and implementing security solutions for networks, applications, databases, cloud environments, and enterprise infrastructure.
- Strong understanding of network security architecture, boundary protection, firewalls, segmentation, access controls, identity management, encryption, and cryptographic controls.
- Demonstrated understanding of Zero Trust security principles and architectures.
- Experience analyzing security logs, identifying anomalous activity, and supporting cybersecurity incident response and mitigation.
- Ability to independently analyze complex technical and cybersecurity problems and develop effective solutions.
- Excellent written and verbal communication skills with the ability to brief technical and non‑technical Government stakeholders.
- Demonstrated ability to lead technical discussions, security reviews, engineering teams, and cross‑functional working groups.
- Active DoD 8570/8140 IASAE Level III qualification or equivalent.
- Advanced cybersecurity certifications such as CISSP, CISSP-ISSAP, CISSP-ISSEP, CISM, CCSP, or equivalent.
- Extensive experience with eMASS or other RMF Governance, Risk, and Compliance (GRC) platforms.
- Experience with ACAS/Nessus, SCAP, vulnerability management, SIEM, HBSS/ESS, endpoint detection and response (EDR), IDS/IPS, and security monitoring technologies.
- Experience applying DISA STIGs/SRGs and NIST security controls to complex enterprise environments.
- Experience implementing or assessing Zero Trust Architecture in DoD environments.
- Experience supporting systems with high mission impact or highly sensitive/classified information.
- Experience working directly with DoD, Intelligence Community, or other Federal Government customers.
- Experience leading cybersecurity architecture reviews, technical working groups, and engineering change processes.
- Experience mentoring and providing technical direction to junior and mid‑level cybersecurity engineers.
- Familiarity with emerging cybersecurity technologies, advanced persistent threats (APTs), threat intelligence, and modern defensive cyber operations.
- Ability to obtain and maintain a security clearance.
- Must be a U.S. Citizen.
About TRISTAR
TRISTAR is an SBA certified Service‑Disabled Veteran‑Owned professional services company supporting the U.S. Department of Defense programs. Our core competencies include Electronic Warfare, Enterprise Management, Full Spectrum Cybersecurity, Information Technology, Digital Transformation, Software Engineering and Development, Maritime Modernization and Engineering, and Technical Solutions.
TRISTAR was founded in March 1995 and has built an employee‑focused collaborative environment which enables our team of professionals to create and deliver customized solutions to meet our customers’ mission critical challenges. TRISTAR’s core capabilities support customers with end‑to‑end solutions.
For over 30 years, TRISTAR has demonstrated and perfected our ability to successfully manage any task, small or large no matter how difficult or complex.
TRISTAR is proud to serve the Department of Defense and other Federal Agencies.
TRISTAR provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
#J-18808-Ljbffr- ...MANTECH seeks a motivated, career and customer-oriented Information Systems Security Engineer to join our team working in Crane, IN. This is an... ...field Active DoD 8570.01-M / DoD 8140 IAT Level III baseline certification (e.g., CISSP, CASP+ CE, or CISA...SuggestedInterim roleWork at officeLocal area
$131.3k - $237.35k
...As a Senior Information Security Systems Engineer (ISSE) you will join a small team of security engineers providing Information Assurance (IA) Architecture Analysis and Security Engineering Support for the implementation and fielding of the National Leadership Command...Suggested$10k
...This Position is Contingent on Contract Award Description: Columbia Technology Partners is seeking an Information Systems Security Engineer (ISSE) to support the design, development, implementation, integration, and assessment of secure information systems and...SuggestedContract workTemporary workFor contractorsLocal area$163k - $220k
...platform. Our Winning Culture is the engine that drives our teams of innovators. We... ...build what’s next - together! As a Security Engineer III embedded within the Security Operations... ...guidance on new tooling deployments, system changes, and technology projects. Contribute...SuggestedWork at office$300k - $320k
...interpretable, and steerable AI systems. We want AI to be safe and... ...group of committed researchers, engineers, policy experts, and business... .... About the Team The Security Engineering team's mission is... ...risk insights that inform security roadmaps. Who You...SuggestedVisa sponsorship- ...chapter. From operating systems to zonal controllers... ...across connectivity, AI, security and more, we’ll map a... ...senior/staff security engineer who is a genuine PKI... ...gender identity, genetic information or characteristics,... ...and reference checks; (iii) establishing an...Full timeContract work
- ...chapter. From operating systems to zonal controllers... ...across connectivity, AI, security and more, we’ll map a... ...the Product Security Engineer, you will work closely... ...~ M.Sc. in Information Security, Computer Science... ...and reference checks; (iii) establishing an employment...Full timeContract work
- ...Penetration Testerto lead advanced security assessments and contribute... ...-on penetration testing of systems and applications.... ...implementation of security engineering controls. Ensure compliance... ...Hacker) CISSP (Certified Information Systems Security Professional...3 days per week
- ...in blockchain scalability and security, we're at the forefront of... ...the role that decentralized systems will play in creating a more... ...The Role As a Security Engineer at Offchain, you will play a... ...evolving the company’s overall information security governance and compliance...Work at officeRemote workHome office
- ...Description The Security Engineer is responsible for protecting the organization’s information systems, infrastructure, networks, cloud environments, endpoints, identities, data, and approved AI-enabled technologies through proactive monitoring, risk reduction, incident...Work experience placement
$100k - $120k
...alternative application process. Network Security Engineer Full Time Rochester, NY, US 1... ...Network Security Engineer Department: Information Technology Location: Rochester, NY... ...security, information security, or systems and network engineering with...Full timeWork at officeRemote work- ...Services company, is seeking an experienced Security Engineer to support enterprise cybersecurity... ...that protect Government data, systems, and mission operations in a highly regulated... ...and tools, including Security Information and Event Management (SIEM) systems, Endpoint...Local areaRemote workFlexible hours
- ...GuidePoint Security provides trusted cybersecurity expertise, solutions... ...risk. Endpoint Security Engineer General Description We... ...enterprise asset management systems. Required Experience and Education... ...science, Cybersecurity, Information Systems. If the individual's...Permanent employmentInterim roleCasual workRemote workFlexible hours
$97.9k - $153.8k
...remote position. Position Title: IT Security Engineer Base Salary: $97,900 to $153,800... ...Summary The IT Security Engineer applies Information Technology (IT) security principles,... ...and general support for IT security systems. · Draft policy based on NIST, FISMA...Self employmentWork at officeLocal areaRemote workFlexible hours$70.8k - $131.4k
...Do you want to get hands‐on securing a global estate? Thomson Reuters... ...a dedicated security engineering capability, and this role is... ...harden cloud and operating‑system configuration, and implement... ...degree in Computer Science, Information Security, or a related field...Work at officeLocal areaFlexible hours$230k - $290k
...across organizations without compromising security or reliability. Continue cloud agent... ...your work reaches hundreds of thousands of engineers every day, we'd love to have you. The... ..., and other security-sensitive systems. Must Have ~5+ years of professional...Work at officeRemote workFlexible hours- ...technology solutions that provide secure, reliable, and high-bandwidth... ...GEO and MEO satellite systems with integrated terrestrial and... ...ll Do: The Cyber Security Engineer will serve as a key member of... ...communicate changes that may affect Information System security authorization...
$61 - $66 per hour
...future! Job Details Job Title: Cyber Security Engineer Location: Dearborn, MI Contract:... ...2026 Job ID#: 65000 Job Category: Information Technology Stefanini Group is... ...threats. Emphasize the automation of system health and compliance checks. Penetration...Contract workRemote work$107.9k - $195.05k
...currently has an opening for a Senior Cyber Security Engineer to work at Robins AFB GA. This is an... ...and engineering expertise along with Information Assurance Services to customers CONUS... ...of network and information security systems for multiple closed user groups and are...$92.1k - $174.71k
## Cyber Security EngineerApply: Warminster, PA: Full time: Posted... ...work location. For additional information on remote work at Penn State,... ...searching for a Cyber Security Engineer to join the Cybersecurity... ...support and secure the data and systems relevant to the challenging...Full timeFor contractorsWork experience placementRemote workWork from homeFlexible hours$109.19k - $163.78k
...responsible forsupporting the protection and security of critical systems and data related to the City’s... ...environments. The position works closely with Information Technology teams, City leadership, water and wastewater engineers, and other stakeholders to advise on,...Work experience placementLocal area- ...6 - Duquesne Light Company - Information Technology - Nova Place - 100... ...electric energy, providing a secure supply of reliable power to more... ...The Information Security Engineer I supports and enhances the Company... ...critical infrastructure systems, supports regulatory compliance...Full timeLocal area
$10 per hour
...our critical SaaS applications. Own security configuration for the SaaS tools hundreds... ...corporate, enterprise, or IT security engineering — we care more about what you've... .... Please see our Privacy Notice available at for additional information. #J-18808-LjbffrWork at officeImmediate startFlexible hours$130k - $150k
...Zachary Piper Solutions is seeking a Product Security Engineer to support a company focused on missile defense, command and control systems, and national security technology... ...+ years of experience in cybersecurity, information assurance, security engineering, or a related...$114k - $228k
## Staff Cyber Security EngineerApplylocations: United States - California... ...As the Staff Cyber Security Engineer, you’ll Be on the front lines... ...monitoring cybersecurity and information security solutions for... ...within products and manufacturing systems. Work directly with R&D and...Local areaRemote workShift work- # Cyber Security ConsultantUSA### Description**About Sygnia**Sygnia... ...(OT) and Industrial Control Systems (ICS) environments is highly... ...such as security engineering, security architecture, cloud... ...degree in Computer Science, Information Security, Engineering, Information...
- ...confidentiality, integrity and availability of the company information systems. The incumbent works as part of a “hands-on” onsite Cybersecurity... ...and other regulatory requirements. Monitors and maintains security infrastructure. Performs administration, monitoring, and...Work at officeLocal areaFlexible hours
$140k - $150k
...Connected Logistics is seeking a Senior Security Architect to support the Cybersecurity Architecture and Engineering Services supporting the... ...Veterans Affairs (VA) Office of Information Security (OIS) Cybersecurity Operations Systems Engineering (COSE) program . Senior...Contract workWork at officeRemote work$110k - $150k
...Position Description: KPA is seeking a Senior Information Security Engineer to serve as the senior technical counterpart to the Director of Security & Technology. This role owns KPA's security platforms, cloud security, identity, automation, and technical security initiatives...Full time$134k - $179k
...About the Role As a Senior Security Operations Engineer I, you will independently... ...with limited or incomplete information. ~ Strong working knowledge of Linux and macOS systems, including system internals,... ...resident (green card holder), (iii) refugee under 8 U.S.C. § 11...Permanent employmentFull timeTemporary workFor contractorsCasual workWork at officeFlexible hoursNight shiftWeekend work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information System Security Engineer III. Be the first to apply!
- digital communications systems engineer Eastern, KY
- telecommunication engineer Eastern, KY
- communications engineer Eastern, KY
- transmission engineer Eastern, KY
- information systems engineer Eastern, KY
- application security engineer Eastern, KY
- security software engineer Eastern, KY
- aws cloud security engineer Eastern, KY
- sr security engineer Eastern, KY
- endpoint security engineer Eastern, KY

