Subject Matter Expert III - Information Systems Security Engineer

OneZero SolutionsArlington, VA
Onsite

About The Position

The Subject Matter Expert III is key personnel serving as the lead Information Systems Security Engineer (ISSE). The role is the lead technical authority for designing, building, and sustaining DSCA's layered security automation architecture in AWS infrastructure provisioning, configuration management, Policy-as-Code compliance validation, and orchestration and for translating DoW regulatory requirements into functional, automated, operational code.

Requirements

  • Bachelor's degree from an accredited institution in Information Technology, Computer Science, Engineering, or a related technical discipline.
  • One of the following certifications: AWS Certified DevOps Engineer – Professional; AWS Certified Solutions Architect – Professional; AWS Certified Security – Specialty; or (ISC)2 CISSP, preferably with an engineering or architecture concentration (ISSEP/ISSAP).
  • Twelve (12) years of demonstrated experience in systems engineering and cybersecurity, with at least seven (7) of those years focused on security automation, cloud engineering, and architecture.
  • Five (5) years of demonstrated experience serving as a lead technical authority on enterprise-level projects, responsible for designing and implementing security solutions, not just assessing them.
  • Five (5) years of demonstrated experience translating complex regulatory requirements (RMF, NIST, DISA STIGs) and architectural diagrams into functional, automated, and operational code.
  • Active Secret clearance; U.S. citizenship required.

Nice To Haves

  • Expert-level AWS engineering skill, including AWS-native security services and Systems Manager.
  • Infrastructure-as-Code and secure baseline template development for repeatable, compliant provisioning.
  • Policy-as-Code and Compliance-as-Code development, translating DoW control requirements into automated checks.
  • Security orchestration and workflow automation across multi-step, multi-system processes.
  • Dashboard and API engineering (e.g., Microsoft Power BI, RESTful APIs) to expose standardized, reusable compliance metrics.
  • Deep working knowledge of RMF, NIST standards, and DISA STIGs in a DevSecOps delivery model.
  • Ability to act as lead technical authority and to communicate architectural decisions to government stakeholders

Responsibilities

  • Serving as the lead Information Systems Security Engineer, developing and integrating cybersecurity designs for systems and networks.
  • Designing, building, and maintaining the layered automation architecture.
  • Infrastructure Provisioning Layer: developing and maintaining a library of approved, secure Infrastructure-as-Code templates.
  • Configuration Management Layer: implementing solutions such as AWS Systems Manager to sustain secure configurations.
  • Compliance Validation Layer: implementing Policy-as-Code capabilities by translating DoW control requirements into automated checks.
  • Orchestration and Workflow Layer: delivering orchestration to coordinate complex, multi-step security workflows.
  • Developing and managing the Compliance-as-Code (CaC) framework.
  • Integrating AWS-native security services for continuous monitoring.
  • Providing technical support for dashboard and API development, including Power BI dashboards and RESTful APIs that expose standardized, reusable compliance metrics.

Benefits

  • health, dental, vision, and life insurance
  • a 401(k) with company matching
  • paid time off and holidays
  • an employee referral program
  • educational assistance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service