ISSE

PeratonHerndon, VA
$135,000 - $216,000Onsite

About The Position

Peraton’s Space Sector is seeking a seasoned Information Systems Security Engineer (ISSE) to join our diverse Information Assurance team supporting the Intelligence Community at our Herndon, VA office. The candidate will be expected to design and implement safety measures and controls, monitor network activity to identify vulnerable points, and address privacy breaches and malware threats. This role involves supporting Assessment and Authorization (A&A) processes and Information Assurance documentation for multiple analytic and mission systems across all CLINs. The ISSE will generate and maintain the complete security Body of Evidence (BoE) while leading A&A activities according to the Risk Management Framework (RMF) processes (ICD 503, CNSSI-1253, NIST 800-37, NIST 800-53, etc.) for all multiple information systems. Responsibilities include authoring and maintaining the System Security Plan (SSP) within XACTA, developing Security Controls Traceability Matrices (SCTM), and Security Test Plan (STP) procedures within Xacta. The role also requires analyzing existing security systems, making recommendations for improvements, preparing reports and action plans for security breaches, monitoring network activity for abnormalities, and communicating system status to users. Additionally, the ISSE will collaborate with software developers and architects to understand security requirements, guide application developers on security policy, identify security requirements, and provide technical guidance. Experience creating and managing the plan of action and milestones (POA&Ms), supporting continuous monitoring of operational systems, and performing log review/analysis using SIEM tools (Splunk, etc.) and vulnerability analysis (ACAS, Prisma, SonarQube, JFrog X-Ray, GitLab Code Quality) are essential. Experience with DISA STIGs and STIG Viewer is also required.

Requirements

  • Bachelor's degree with 8+ years of relevant experience, Master's degree with 6+ years of relevant experience; or 4+ additional years of relevant experience in lieu of a degree
  • 6+ years of experience with years supporting Assessment and Authorization (A&A) and information assurance processes and documentation using RMF
  • Active TS/SCI clearance with Polygraph
  • Hands-on experience with validating control implementations and test procedures
  • Experience with RMF and Xacta
  • Experience with DISA Security Technical Implementation Guide (STIG)
  • Knowledge of current security risks and protocols
  • Active DoD IAT Level I certification
  • Ability to work 100% onsite in a secure environment

Nice To Haves

  • Experience working with AWS/Google cloud-hosted information systems or applications
  • Experience working with Containerized Systems or Applications
  • Experience working with Redhat or CentOS Linux operating systems
  • Experience working in a DevSecOps environment and tool chain

Responsibilities

  • Design and implement safety measures and controls.
  • Monitor network activity to identify vulnerable points.
  • Address privacy breaches and malware threats.
  • Support the Assessment and Authorization (A&A) processes and Information Assurance documentation for multiple analytic and mission systems across all CLINs
  • Generate and maintain the complete security Body of Evidence (BoE) while leading the A&A activities according to the Risk Management Framework (RMF) processes (ICD 503, CNSSI-1253, NIST 800-37, NIST 800-53, etc.) for all multiple information systems
  • Author, complete and maintain the System Security Plan (SSP) within XACTA
  • Develop the Security Controls Traceability Matrices (SCTM), and the Security Test Plan (STP) procedures within Xacta.
  • Analyze existing security systems and make recommendations for changes or improvements
  • Prepare reports and action plans if a security breach does occur
  • Monitor the network and provide early warning of abnormalities or problems
  • Communicate the system status and keep users informed of downtime or changes to the system
  • Experience working with software developers and architects to understand security requirements
  • Experience guiding the application developers on security policy, identifying security requirements, providing technical guidance for the satisfaction of requirements
  • Experience creating and managing the plan of action and milestones (POA&Ms), and working with project managers and engineers to develop schedules and engineering actions that mitigate open findings
  • Experience supporting the Continuous Monitoring of operational systems; experience monitoring and auditing operational systems for proper use
  • Log Review/Analysis using SIEM tools (Splunk, etc.)
  • Vulnerability Analysis and Review (ACAS, Prisma, SonarQube, JFrog X-Ray, GitLab Code Quality)
  • DISA STIGs and STIG Viewer experience

Benefits

  • Employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service