Information System Security Engineer (ISSE)

KBR, Inc.Lanham, MD
$108,800 - $163,200Onsite

About The Position

KBR’s National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country’s most critical role – protecting our national security. Why Join Us? Innovative Projects: KBR’s work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions. Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace. Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.

Requirements

  • Requires Top Secret clearance with SCI
  • Must have a DoD 8570.1-M/8140 IAT Level III certification (SecurityX (CASP), GCIH, CISA, CISSP) compliant
  • Strong background in networking (TCP/IP, firewalls, VPNs), cloud security (AWS/Azure), Kubernetes, and DevSecOps
  • Deep understanding of NIST SP 800-161, NIST RMF, FedRAMP, Common Criteria, ATO package development, and cybersecurity compliance (STIGs)
  • Hands-on experience managing and deploying Tenable Nessus, CyberArk, Trellix, Splunk Enterprise, VMware vSphere, GitLab, Microsoft Windows Server, Red Hat Enterprise Linux and Ubuntu Linux
  • Experience with scripting and automation with Powershell, Python, Bash and Ansible
  • Proven experience in leading projects and mentoring junior ISSE's
  • Present technical briefings to leadership

Responsibilities

  • Design, implement, and maintain enterprise security architecture aligned with NIST RMF, DoD STIGs, CIS benchmarks, and organizational cybersecurity policies
  • Perform security engineering activities across system development lifecycle (SDLC), including requirements analysis, system design reviews, security testing, and accreditation support
  • Implement vulnerability management processes utilizing Tenable Nessus, ACAS, and Qualys to identify, assess, and remediate system vulnerabilities
  • Integrate cybersecurity requirements into Windows and Linux server environments, cloud infrastructure, virtualization platforms, and containerized applications
  • Support incident response and forensic investigations by analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise
  • Develop automation scripts using PowerShell, Bash, and Python to streamline vulnerability remediation, account auditing, compliance reporting, and security monitoring tasks
  • Collaborate with system administrators, network engineers, ISSOs, and application teams to remediate security findings and implement secure configuration baselines
  • Perform security impact analysis for system changes, software deployments, and infrastructure upgrades to ensure continued compliance and operational security
  • Engineer endpoint protection and hardening solutions utilizing Trellix ePO – On-prem, host-based firewalls, and application whitelisting technologies
  • Evaluate and implement cybersecurity tools and technologies to improve system security posture, continuous monitoring, and threat detection capabilities
  • Produce technical security documentation, architecture diagrams, standard operating procedures (SOPs), and executive-level risk assessment reports
  • Experience administrating, configuring, and troubleshooting core modules such as Enterprise Password Vault (EPV), Password Vault Web Access (PVWA), Central Policy Manager (CPM), and Privileged Session Manager (PSM) in CyberArk
  • Monitor, analyze, and detect cyber events and incidents within information systems and networks under general supervision
  • Assist with integrated, dynamic cyber defense, coordinate and maintain security toolsets to support organizations’ continuous monitoring and ongoing authorization programs
  • Establish a framework by which cyber risk can be measured and quantified in the marketplace
  • Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates
  • Implement security systems by specifying intrusion detection methodologies and equipment; directing equipment and software installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation. Verify security systems by developing and implementing test scripts
  • Maintain security by monitoring and ensuring compliance to standards, policies, and procedures; conducting incident response analyses; developing and conducting training programs
  • Responsible for the design, development, implementation, and integration of a DoD IA architectures, systems, or system components for use within computing, network, and enclave environments
  • Ensure that the architecture and design of development and operational systems are functional and secure
  • This includes designs for program of record systems and special purpose processing nodes with platform IT interconnectivity

Benefits

  • sign on bonus
  • relocation benefits
  • short-term incentives
  • long-term incentives
  • discretionary payments for exceptional performance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service