Information Systems Security Engineer (ISSE)
Peraton · Herndon, VA, US
Apply directly on Peraton’s careers site — no account needed.
About the role
About Peraton
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face. Visit peraton.com to learn how we’re keeping people around the world safe and secure.
Program Overview
About The Role
Responsibilities
The Information System Security Engineer (ISSE) leads and executes security engineering activities across complex information systems. Responsibilities include designing and implementing security architectures for new and existing networked systems, ensuring hardware, operating systems, and applications meet cybersecurity requirements and RMF‑aligned security controls.
The ISSE validates compliance with configuration guidance, supports testing and evaluation of security designs, and assists with integration testing to confirm that safeguards protecting data and system interconnections function as intended. In production environments, the ISSE continuously monitors security control implementations, responds to risk findings, supports risk assessments, and contributes to POA&M management. The role also includes supporting the development and reporting of system‑level security metrics.
Core Functions
- Log Review & SIEM Analysis — Support ISSO activities by analyzing security logs using SIEM tools such as Splunk and recommending appropriate actions.
- Vulnerability Analysis — Review ACAS scan results and assess findings.
- STIG Compliance — Assist with DISA STIG analysis and implementation to ensure compliant system configurations.
- DevOps/DevSecOps Integration — Ensure development processes incorporate security requirements throughout the lifecycle.
- Continuous Monitoring — Validate system‑level ConMon requirements and ensure alignment with monitoring strategies.
- Secure Engineering Practices — Apply secure design, architecture, and coding principles when implementing controls.
- Cross‑Team Coordination — Collaborate with system leads, ISSOs, and program managers on security activities.
- Security Requirements Engineering — Define, design, implement, and evaluate system and network security measures.
- Risk Assessment — Identify risks, evaluate mitigations, assess residual risk, and provide recommendations.
- Technical Security Solutions — Develop and implement solutions addressing vulnerabilities.
- Security Audits — Lead technical components of internal audits and investigations.
- Regulatory Compliance — Ensure adherence to government regulations and industry standards.
SITE III JIOC Contract Overview
The SITE III JIOC contract establishes a comprehensive, multi‑discipline framework for requirements engineering, solutions engineering, scheduling, reliability, resiliency, service development, integration, test and evaluation, maintainability, and enterprise analysis. This framework supports the full National Defense Intelligence enterprise—including Combatant Commands, Partner Nations, and Federal Agencies—to ensure timely, accurate Joint Intelligence Operations Center (JIOC) collection, correlation, and dissemination.
Our team leverages industry best practices in architecture design, data science, cloud services, DevSecOps, and platform integration to build, sustain, and continuously enhance enterprise business systems, system‑of‑systems integrations, and back‑end workflow processes.
Qualifications
Required Qualifications
- Bachelor’s degree in an area relevant to the position with 10+ years of relevant experience OR a Master’s degree in an area relevant to the position with 8+ years of relevant experience; an additional 4 years of relevant experience maybe considered in lieu of a degree.
- Active TS/SCI or SCI eligibility and active polygraph (or ability to obtain a polygraph).
- Experience supporting RMF Assessment & Authorization processes and documentation.
- Experience collaborating with developers and architects to interpret and implement security requirements.
- Ability to guide developers on security policy and technical compliance.
- Experience with DISA STIGs and STIG Viewer.
- Extensive experience with Linux operating systems
- Proven experience performing Systems Security tasks including: Security Information and Event Monitoring (Splunk)
- Hands‑on experience developing and validating security controls and test procedures.
- Knowledge of current security risks, protocols, and threat landscapes.
- DoD 8570 IAT/IAM Level II certification (e.g., Security+).
- Experience with RMF tools such as Xacta.
- Ability to work full‑time in a SCIF.
Desired Qualifications
- Experience with AWS or Google Cloud‑hosted systems.
- Experience with Cloudtrail, Cloudwatch, Openshift, and Antible
- Experience working in a DevSecOps environment and toolchain.
- Experience developing and using security tools for scanning, testing, monitoring, and reporting.
- Experience planning and overseeing configuration changes across multiple networks.
- Strong analytical and problem‑solving skills.
Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and eligible to participate in an attractive bonus plan
Details
Target Salary Range: $135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.
Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at https://www.careers.peraton.com/benefits.
Application Statements: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. By applying to this job, you are expressing interest in the role and the Company. During the review of your application, you may be required to participate in an on-camera interview, as well as participate in a process to verify your identity.
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Description sourced from the public Indeed listing — this role isn't indexed from the company's career page yet.
Skills
- Python
- SQL
- Java
- SIEM
- Vulnerability Management
Never be applicant #200 again
Every job here is indexed straight from company career pages — often hours after it opens, before it reaches the big boards. Create a free account and get your best matches in a twice-daily digest.
- Your best matches, twice a day
- No duplicates, no ghost jobs, no recruiter spam
- Every job free to browse — pay only when you apply
Free account — no card required
93 149 live jobs · 17 643 companies tracked · 6 215 added today