Information System Security Engineer (ISSE)
Posted 2026-08-20 · Verified live 2026-09-16
See how your real experience scores against this role — our AI drafts an honest, verifiable resume tailor. Nothing invented, ever. You approve everything.
Get matched — join the waitlist Apply on company site ↗About this role
<p><strong>Defend the systems that power the Pacific mission 🌴</strong></p><p><strong>SOSi</strong> is seeking a talented <strong>Information System Security Engineer (ISSE) </strong>to lead cybersecurity engineering efforts supporting critical operations at Joint Base Pearl Harbor-Hickam. In this high-impact role, you'll drive RMF compliance, architect secure solutions, and help safeguard mission systems across a dynamic and evolving threat landscape. Join a collaborative cyber team where your expertise directly contributes to national security and operational readiness throughout the Indo-Pacific region.</p><p><strong>Essential Job Duties:</strong></p><ul><li>Design, review, and implement cybersecurity architecture and engineering solutions supporting enterprise and mission systems.</li><li>Integrate security requirements into system design, development, testing, implementation, and sustainment activities.</li><li>Support and lead RMF activities throughout the authorization lifecycle, including categorization, control selection, implementation, assessment, authorization, and continuous monitoring.</li><li>Develop, review, and maintain RMF documentation including System Security Plans (SSPs), Security Control Traceability Matrices (SCTMs), Security Assessment Reports (SARs), and Plans of Action & Milestones (POA&Ms).</li><li>Evaluate system changes, upgrades, and new capabilities to determine cybersecurity impacts and authorization requirements.</li><li>Validate implementation of NIST SP 800-53 security controls and DISA Security Technical Implementation Guides (STIGs).</li><li>Conduct cybersecurity architecture reviews, security engineering analyses, and technical risk assessments.</li><li>Analyze ACAS, Tenable, Nessus, and SCAP assessment results and coordinate remediation efforts with system administrators and engineering teams.</li><li>Develop and implement continuous monitoring strategies to maintain cybersecurity compliance and authorization status.</li><li>Participate in Configuration Control Boards (CCBs), Technical Review Boards (TRBs), and engineering working groups.</li><li>Provide technical guidance and cybersecurity recommendations to system owners, ISSOs, ISSMs, and senior leadership.</li><li>Support cybersecurity inspections, Security Control Assessor (SCA) assessments, and Command Cyber Readiness Inspections.</li><li>Evaluate interconnections, data flows, and system architectures to identify security risks and recommend mitigations.</li><li>Track vulnerability remediation efforts and maintain POA&M activities to meet organizational and regulatory requirements.</li><li>Support implementation and adoption of Zero Trust principles and cybersecurity modernization initiatives.</li><li>Prepare technical reports, executive summaries, and briefing materials for leadership decision-making.</li></ul>
<p><strong>Minimum Requirements:</strong></p><ul><li>Active Secret clearance with the ability to obtain and maintain a Top-Secret clearance.</li><li>Must meet DoD 8140 qualification requirements for DCWF 652 Security Architect Intermediate (Primary)<ul><li>Bachelors Degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering // OR // GMON, SecurityX, CCSP, CISSO, Cloud+, CSSLP, FITSP-D, GCSA, or GSEC.</li></ul></li><li>DCWF 461 Systems Security Analyst Intermediate (Secondary)<ul><li>Bachelors Degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering // OR // CCSP, Cloud+, GICSP, GISF, GSEC, or Security+.</li></ul></li><li>Six (6) years of experience supporting cybersecurity, information assurance, systems engineering, or RMF-related activities.</li><li>Experience supporting DoD Assessment and Authorization (A&A) or RMF processes.</li><li>Experience with eMASS and maintenance of RMF authorization packages.</li><li>Experience implementing and assessing NIST SP 800-53 security controls.</li><li>Experience with ACAS, Tenable Security Center, Nessus, SCAP, and vulnerability management processes.</li><li>Working knowledge of Windows, Linux, networking, virtualization, and enterprise information systems.</li><li>Strong communication skills with the ability to engage both technical and non-technical stakeholders.</li></ul><p><strong>Preferred Qualifications:</strong></p><ul><li>Active Top Secret clearance with SCI eligibility.</li><li>CISSP certification.</li><li>CISSP-ISSEP, CCSP, CGRC, SecurityX (formerly CASP+), or CSSLP certification.</li><li>Experience supporting Combatant Command, Navy, or Joint operational environments.</li><li>Experience with Zero Trust Architecture implementation.</li><li>Knowledge of Cross Domain Solutions (CDS) and Commercial Solutions for Classified (CSfC).</li><li>Experience with cloud security technologies and hybrid cloud environments.</li><li>Experience conducting cybersecurity architecture reviews and secure design assessments.</li><li>Experience using JIRA, Confluence, ServiceNow, or similar collaboration and workflow platforms.</li><li>Experience supporting Security Control Assessor reviews and ATO renewals.</li></ul>
One of thousands of fresh listings refreshed nightly, built for cleared & defense careers.
Browse all jobs