CybersecurityJobs.io
← Back to all jobs

Job Description

MetroStar is hiring a Senior Information Systems Security Engineer (ISSE) II to help protect containerized platforms and DevSecOps workflows. This Reston, VA onsite role focuses on building and operating cybersecurity controls, strengthening compliance, and improving how teams detect, assess, and respond to security threats.

Compensation: USD 180,000 per year (salary range listed as $180,000 - $200,00). Applicants may also be eligible for bonuses and/or additional incentives based on individual and company performance.

Responsibilities

  • Act as a security engineering SME for containerized environments, including service mesh technologies and microservices.
  • Design, implement, and manage security controls for containerized workload solutions, including image scanning firewalls, intrusion detection and prevention, endpoint protection, encryption mechanisms, runtime protection, RBAC, and network segmentation.
  • Embed security into CI/CD pipelines and DevSecOps workflows while ensuring alignment with RMF, NIST SP 800-53, ICD 503, and FedRAMP requirements.
  • Configure and optimize security monitoring and logging solutions and work with container security tooling such as Prisma Cloud (or similar).
  • Monitor network traffic, system logs, and security alerts to detect and respond to potential incidents, including investigating anomalies and breaches to mitigate risk.
  • Monitor and assess threat intelligence feeds, perform threat analysis, and conduct risk assessments to identify emerging threats and vulnerabilities.
  • Collaborate with platform engineers, ISSOs, developers, and other cross-functional teams to establish and enforce security policies, standards, and procedures across the system lifecycle.
  • Perform regular security assessments of container orchestration platforms, microservices, and APIs, then recommend mitigations for identified weaknesses.
  • Develop and implement incident response plans to address security breaches and related concerns.
  • Maintain thorough documentation for security architecture processes, control implementation procedures, configurations, and continuous monitoring strategies, including reporting on findings and actions taken.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, or a related field.
  • 7+ years of experience as a cybersecurity engineer specializing in designing and implementing required security controls and performing continuous monitoring and auditing for compliance.
  • Hands-on experience securing containerized/Kubernetes environments (with OpenShift preferred).
  • Strong skills specifying and implementing log collection into tools such as Splunk, including querying and analysis of aggregated logs to identify security-relevant anomalies or risks.
  • Strong experience designing and implementing required security controls, including NIST SP 800-53, RMF, ICD 503, FISMA, and FedRAMP, along with continuous monitoring and auditing for control compliance.
  • Experience implementing controls for cloud, container, and DevSecOps services in IL5 to IL6+ environments.
  • Strong understanding of network protocols, operating systems, and infrastructure components.
  • Experience performing periodic security checks (Daily, Weekly, Monthly) aligned with continuous monitoring under the NIST Risk Management Framework.
  • Proficiency in incident response, security incident handling, and forensic analysis techniques.
  • Experience with security tools such as Fortify, Acunetix, and Prisma Cloud.
  • Effective communication skills to explain complex technical concepts to technical and non-technical stakeholders.
  • CISSP or equivalent certification to support DoD 8140 requirements.
  • Active TS//SCI clearance with CI poly.

Technologies

  • Kubernetes, OpenShift, service mesh technologies
  • Prisma Cloud, Splunk, Fortify, Acunetix
  • CI/CD, DevSecOps, RBAC

Benefits

  • Health, dental, and vision insurance
  • 401(k) retirement plan with company match
  • Paid time off (PTO) and holidays
  • Parental Leave and dependent care
  • Flexible work arrangements
  • Professional development opportunities
  • Employee assistance and wellness programs

Application deadline: Applications will be accepted on a rolling basis until the position is filled; candidates are encouraged to apply as early as possible for full consideration.

Similar Jobs