Information Systems Security Engineer (ISSE)
Job Description
The Information Systems Security Engineer (ISSE) will design, implement, and maintain enterprise security architectures and perform security engineering across the SDLC onsite in Washington, DC for Peraton.
Responsibilities
- Design, deploy, and sustain enterprise security architectures aligned to NIST RMF, DoD STIGs, CIS benchmarks, and internal cybersecurity policies.
- Execute security engineering activities across the SDLC, including requirements analysis, design reviews, security testing, and accreditation support.
- Lead vulnerability management programs using Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate vulnerabilities.
- Integrate cybersecurity requirements into Windows and Linux servers, cloud environments, virtualization platforms, and containerized applications.
- Support incident response and forensics by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry with Splunk Enterprise.
- Develop automation scripts in PowerShell, Bash, and Python to streamline remediation, account auditing, compliance reporting, and security monitoring tasks.
- Collaborate with system administrators, network engineers, ISSOs, and application teams to remediate findings and implement secure baselines.
- Perform security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure ongoing compliance and operational security.
- Engineer endpoint protection and hardening solutions using Trellix ePO on prem, host-based firewalls, and application whitelisting technologies.
- Evaluate and implement cybersecurity tools to improve security posture, continuous monitoring, and threat detection capabilities.
- Produce technical security documentation, architecture diagrams, SOPs, and executive-level risk assessment reports.
- Experience administering CyberArk core modules including EPV, PVWA, CPM, and PSM.
Requirements
- Minimum 5 years with a BS/BA; 3 years with an MS/MA; or 9 years of relevant experience in lieu of a BS.
- Active Top Secret clearance with SCI eligibility.
- Strong networking background (TCP/IP, firewalls, VPNs), cloud security (AWS/Azure), Kubernetes, and DevSecOps.
- Deep knowledge of NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria, ATO package development, and STIG-based cybersecurity compliance.
- Hands-on experience deploying and administering Tenable Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, GitLab, Windows Server, RHEL, and Ubuntu Linux.
- Proficiency in scripting and automation with PowerShell, Python, Bash, and Ansible.
- Proven project leadership experience and mentoring of junior ISSEs; capable of presenting to leadership.
- Current DoD 8570.1-M IAT Level III certification (examples: SecurityX CASP, GCIH, CISA, CISSP).
Technologies
- Tenable Nessus
- ACAS
- Qualys
- Windows Server
- Red Hat Enterprise Linux
- Ubuntu Linux
- Splunk Enterprise
- PowerShell
- Bash
- Python
- Ansible
- CyberArk
- Enterprise Password Vault (EPV)
- Password Vault Web Access (PVWA)
- Central Policy Manager (CPM)
- Privileged Session Manager (PSM)
- Trellix ePO
- VMware vSphere
- GitLab
- Kubernetes
- AWS
- Azure
Benefits
- Medical
- Dental
- Vision
- Life insurance
- Health savings account (HSA)
- Short-term disability
- Long-term disability
- Employee assistance program (EAP)
- Parental leave
- 401(k)
- Paid time off (PTO) for vacation
- Company paid holidays
Details
- Target Salary Range: $104,000 - $166,000 per year
- Salary is determined by scope, experience, education, knowledge, skills, location, and contract considerations; overtime, shift differential, and discretionary bonuses may apply where eligible.
- Application Window: approximately 30 days from posting date; timelines may change based on business needs and candidate availability.
- By applying, you express interest in the role and the company; you may be asked to participate in an on-camera interview and identity verification during review.
- EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Program Overview
Engineering, integration, and cybersecurity support to design, build, and test enhanced services for the Department of Navy IT architecture. The program spans roles from cybersecurity specialists to systems, networks, software, and data center engineers.
About Peraton
Peraton is a next generation national security company delivering mission critical capabilities across the globe, including cyber, space, and enterprise IT solutions to protect the nation and its allies.
EEO Statement
Peraton is an equal opportunity employer, welcoming qualified applicants without regard to disability, protected veterans, or other protected characteristics.