Jobs and Careers
RT

Information System Security Engineer (ISSE) II

RTX
Chesapeake, United Statesfull_timeVerifiedPosted 2 Apr 2026
💰 $131,100/yr($68,900/yr$131,100/yr)

About the role

Date Posted:

2026-04-02

Country:

United States of America

Location:

US-VA-CHESAPEAKE-002-CUST ~ 2 Relay Rd ~ BLDG 344 (External Site)

Position Role Type:

Onsite

U.S. Citizen, U.S. Person, or Immigration Status Requirements:

Active and transferable U.S. government issued security clearance is required prior to start date.​ U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance​

Security Clearance Type:

DoD Clearance: Top Secret

Security Clearance Status:

Active and existing security clearance required on day 1

At RTX, the world largest aerospace and defense company, 185,000 great minds are united by purpose and inspired to make a difference solving the world’s most complex problems. With our three market leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunity no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world. 

Raytheon brings the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today’s mission and stay ahead of tomorrow’s threat. We deliver solutions that help our nation and allies defend freedoms and deter aggression, creating a safer, more secure world. Join us and help shape the future of aerospace and defense.

This job opportunity is for the ROTHR Information System Security Engineer (ISSE) position at ROTHR Chesapeake, VA facility. The ISSE is responsible for the local DoD Mission network servers and workstations in accordance with the authoritative USG requirements documents including (but not limited to): DISA STIGS, DD254, SCGs, CND Directives, OPORDS, etc. The Information System Security Engineer (ISSE) holds a vital role throughout the Risk Management Framework (RMF) process, with key responsibilities particularly evident in the implementation, assessment, and continuous monitoring phases

What You Will Do

System Design and Architecture

  • Oversee the development and maintenance of a system's cybersecurity solutions.
  • Participate in the system engineering process to ensure that cybersecurity requirements, design, and testing are properly addressed throughout the system lifecycle.
  •  Engage with the Network Engineer, Systems Engineer, and Integrated Product Team (IPT) lead to confirm the compatibility of cybersecurity architecture and design with the overall system design and integration.
  • Identify where their system resides within the overall Navy security architecture (e.g., network, ship, site).
  •  Coordinate with all primary connecting systems to determine what protections can be inherited.
  • Apply system security and privacy engineering principles and practices to securely develop and integrate system components into information systems.

·

Security Control Management (Implementation and Tailoring)

  • Lead the security control implementation and testing efforts. Identify and taylor the security control baseline with applicable overlays.
  • Consider control inheritance and inheritance models when assigning controls during the security control selection process.
  • Conduct all preliminary technical testing, including Security Technical Implementation Guides (STIGs), Security Requirement Guides (SRGs), and Assured Compliance Assessment Solution (ACAS)/Nessus scans.
  • Document detailed results of each Assessment Procedure (AP) within eMASS in the 'Test Results' section for each AP.
  •  Implement approved security controls (often in coordination with the ISSM).
  • Remediate findings and/or implement mitigating controls as possible.
  • Update the Plan of Actions & Milestones (POA&M) with non-compliant security controls as required.

Risk Assessment

  • Perform vulnerability-level risk assessments on the POA&M/CAP.
  • Conduct an initial complete risk assessment and document results in the POA&M.
  •  For identified deficiencies, determine the theoretical attack path for potential exploitation.
  • Work with the Program Manager/Information System Owner (PM/ISO) to develop the Risk Assessment, incorporating vulnerabilities from the formal assessment. 

Security Assessment Plan (SAP) & Authorization

  • Assist with the development, maintenance, and tracking of the Security Plan (SP)
  • For assessment efforts that do not require a Navy Qualified Validator (NQV), the ISSE (as part of program personnel) is responsible for developing a comprehensive SAP and submitting it for Security Control Assessor (SCA) review and approval.
  •  Ensure the execution of any se

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

RTX

View company profile →