Information Systems Security Engineer (ISSE) - FULLY CLEARED with POLYGRAPH REQUIRED
cti-md
Annapolis Junction, MD
Posted Aug 24, 2026
- Other
- Software Development
Job description
Risk Management Framework (RMF), NMAP, PKI, Wireshark, auditing, penetration testing, scripting, IASAE, CISSP, ISSEP, NISCAP **Due to federal contract requirements, United States citizenship and an active TS/SCI security clearance and polygraph are required for the position.** ### Required: - Must be a US Citizen - Must have TS/SCI clearance w/ active polygraph - Bachelor's degree in Computer Science, Information Assurance, Information Security System Engineering, or a related discipline. - Must have twelve (12) years of experience working as an ISSE on a large technical program. - Must have a solid understanding of security practices and policies and hands-on vulnerability testing experience using Customer tools. - Must have experience applying Risk Management Framework. - Must have experience formulating and assessing IT security policy. - Must have demonstrated knowledge of and experience with common security tools, such as Nessus, NMAP and Wireshark hardware/software security implementation, communication protocol, encryption techniques/tools, and web services. - Must have experience with secure configurations of commonly used desktop and server operating systems. - Must be comfortable working on multiple systems and components simultaneously in various configurations. - Must have strong verbal and written communications skills. - Must be committed to adopting and adhering to best practices. - Must be able to effectively plan and prioritize tasking and communicate clearly regarding technical options and trade-offs. - Must be capable of performing high quality work both independently and with a team in a fast-moving environment. ### These Qualifications Would be Nice to Have: - Five (05) years of experience with Defense in Depth Principals/technology (including access control, authorization, identification and authentication, public key infrastructure, network and enterprise security architecture) and applying risk assessment methodology to system development. - DoD 8570 compliance with IASAE Level 2 or 3. - Information Systems Security Engineering Professional (ISSEP) Certification. - Computer Information Systems Security Professional (CISSP) Certification. - Experience developing/implementing integrated security services management processes, such as assessing and auditing network penetration testing, anti-virus planning assistance, risk analysis, and incident response. - Experience providing information assurance support for application development that includes system security certifications and project evaluations for firewalls that encompass the development, design, and implementation. - Experience with penetration testing tools. - Experience with scripting languages.