## Information System Security Engineer (ISSE)Applylocations: Lanham, Marylandtime type: Full timeposted on: Posted Todayjob requisition id: R **Title:**Information System Security Engineer (ISSE)***Belong. Connect. Grow. with KBR!***KBR’s National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country’s most critical role – protecting our national security.**Why Join Us?*** **Innovative Projects:** KBR’s work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.* **Collaborative Environment:** Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.* **Impactful Work:** Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.**Responsibilities:*** Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies* Perform security engineering activities across system development lifecycle (SDLC), including requirements analysis, system design reviews, security testing, and accreditation support* Implement vulnerability management processes utilizing Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate system vulnerabilities* Integrate cybersecurity requirements into Windows and Linux server environments, cloud infrastructure, virtualization platforms, and containerized applications* Support incident response and forensic investigations by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise* Develop automation scripts using PowerShell, Bash, and Python to streamline vulnerability remediation, account auditing, compliance reporting, and security monitoring tasks* Collaborate with system administrators, network engineers, ISSOs, and application teams to remediate security findings and implement secure configuration baselines* Perform security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure continued compliance and operational security* Engineer endpoint protection and hardening solutions utilizing Trellix ePO – On-prem, host-based firewalls, and application whitelisting technologies* Evaluate and implement cybersecurity tools and technologies to improve system security posture, continuous monitoring, and threat detection capabilities* Produce technical security documentation, architecture diagrams, standard operating procedures (SOPs), and executive-level risk assessment reports* Experience administrating, configuring, and troubleshooting core modules such as Enterprise Password Vault (EPV), Password Vault Web Access (PVWA), Central Policy Manager (CPM), and Privileged Session Manager (PSM) in CyberArk* Monitor, analyze, and detect cyber events and incidents within information systems and networks under general supervision* Assist with integrated, dynamic cyber defense, coordinate and maintain security toolsets to support organizations’ continuous monitoring and ongoing authorization programs* Establish a framework by which cyber risk can be measured and quantified in the marketplace* Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates* Implement security systems by specifying intrusion detection methodologies and equipment; directing equipment and software installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation. Verify security systems by developing and implementing test scripts* Maintain security by monitoring and ensuring compliance to standards, policies, and procedures; conducting incident response analyses; developing and conducting training programs* Responsible for the design, development, implementation, and integration of a DoD IA architectures, systems, or system components for use within computing, network, and enclave environments* Ensure that the architecture and design of development and operational systems are functional and secure* This includes designs for program of record systems and special purpose processing nodes with platform IT interconnectivity**Work Environment:*** **Location:** On-Site – 540 National Business Parkway, Annapolis Junction, MD* **Travel Requirements:** Minimal* **Working Hours:** Standard**Minimum Qualifications:*** Requires Top Secret clearance with SCI* Must have a DoD 8570.1-M/8140 IAT Level III certification (SecurityX (CASP), GCIH, CISA, CISSP) compliant* Strong background in networking (TCP/IP, firewalls, VPNs), cloud security (AWS/Azure), Kubernetes, and DevSecOps* Deep understanding of NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria, ATO package development, and cybersecurity compliance (STIGs)* Hands-on experience managing and deploying Tenable Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, GitLab, Microsoft Windows Server, Red Hat Enterprise Linux and Ubuntu Linux* Experience with scripting and automation with Powershell, Python, Bash and Ansible* Proven experience in leading projects and mentoring junior ISSE's* Present technical briefings to leadership**Basic Compensation:** **$108,800 – $163,200 (This range is for Washington, DC only)**The offered rate will be based on the selected candidate’s knowledge, skills, abilities and/or experience and in consideration of internal parity.
#J-18808-Ljbffr
#J-18808-Ljbffr