Information Systems Security Engineer - SME

Tyto Athene, LLCQuantico Base, VA
1d

About The Position

Tyto Athene is searching for an Information Systems Security Engineer (ISSE) - SME to support our law enforcement customer in VA. Responsibilities: Lead, mentor, and supervise a team of security professionals responsible for the end-to-end implementation of the RMF lifecycle for customer's IT systems. Oversee and coordinate activities within the Prepare step, ensuring roles, responsibilities, and risk management strategies are clearly defined and maintained. Guide system categorization efforts to ensure all information systems are appropriately classified based on mission/business impact and regulatory requirements. Direct the selection, tailoring, and documentation of security controls aligned with system categorizations, Bureau risk appetite, and compliance requirements. Oversee the implementation of technical, operational, and management controls throughout system and application lifecycles, with a particular focus on quality and completeness of all deliverables. Ensure comprehensive security control assessments are planned, executed, and documented to validate the effectiveness of implemented safeguards. Prepare risk management documentation for system authorization and executive decision making. Direct ongoing monitoring and continuous assessment activities, collecting metrics to adjust security strategies and ensure sustained compliance. Serve as a principal technical advisor on cybersecurity, bringing subject-matter expertise to risk analysis, incident response, system remediation, and audit support efforts. Foster a culture of security awareness, providing technical guidance and training to both team members and stakeholders. Track, report, and communicate status, risks, and improvement opportunities related to security engineering activities to leadership and stakeholders. Maintain up-to-date knowledge of RMF, NIST guidance, and industry best practices in support of continuous process improvement. About Tyto Athene Compensation: Compensation is unique to each candidate and relative to the skills and experience they bring to the position. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range. Benefits: Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave. Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains—Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT—empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide. At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto? Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.

Requirements

  • Bachelor’s degree, or equivalent experience, in a relevant technical- or business related field, and at least 15 years of experience in Information Security; and experience (in at least three (3) of the INFOSEC fields of Computer Security, Cryptography, Physical/facility, network security, certification/accreditation, risk analysis, or disaster recover planning and execution).

Responsibilities

  • Lead, mentor, and supervise a team of security professionals responsible for the end-to-end implementation of the RMF lifecycle for customer's IT systems.
  • Oversee and coordinate activities within the Prepare step, ensuring roles, responsibilities, and risk management strategies are clearly defined and maintained.
  • Guide system categorization efforts to ensure all information systems are appropriately classified based on mission/business impact and regulatory requirements.
  • Direct the selection, tailoring, and documentation of security controls aligned with system categorizations, Bureau risk appetite, and compliance requirements.
  • Oversee the implementation of technical, operational, and management controls throughout system and application lifecycles, with a particular focus on quality and completeness of all deliverables.
  • Ensure comprehensive security control assessments are planned, executed, and documented to validate the effectiveness of implemented safeguards.
  • Prepare risk management documentation for system authorization and executive decision making.
  • Direct ongoing monitoring and continuous assessment activities, collecting metrics to adjust security strategies and ensure sustained compliance.
  • Serve as a principal technical advisor on cybersecurity, bringing subject-matter expertise to risk analysis, incident response, system remediation, and audit support efforts.
  • Foster a culture of security awareness, providing technical guidance and training to both team members and stakeholders.
  • Track, report, and communicate status, risks, and improvement opportunities related to security engineering activities to leadership and stakeholders.
  • Maintain up-to-date knowledge of RMF, NIST guidance, and industry best practices in support of continuous process improvement.

Benefits

  • Health/Dental/Vision
  • 401(k) match
  • Paid Time Off
  • STD/LTD/Life Insurance
  • Referral Bonuses
  • professional development reimbursement
  • parental leave
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service