Information System Security Engineer (ISSE)
CACI International IncAbout the role
The Opportunity:
As a Unit Level Intelligence (ULI) Toolkit Information System Security Engineer (ISSE), you will have the opportunity to shape cybersecurity solutions to support the USAF Air Combat Command Intelligence Directorate, ensuring high availability of critical defense systems. You will be responsible for creating and maintaining accreditation packages in Xacta and Enterprise Mission Assurance Support Service (eMASS), to ensure mission system configurations are compliant with enterprise security requirements.
Responsibilities:
Develop and submit ULI Toolkit accreditation packages with artifact collection to coincide with spiral development
Develop and maintain:
Security Concept of Operations (CONOPS)
Security Plan
Security Control Implementation
Accreditation package artifacts in Xacta to obtain any Authority to Operate (ATO) or Certificate to Field (CTF) for mission systems o Risk Management Framework (RMF) artifacts within ATO lifecycle
Design, develop, configure, test, implement, and monitor cybersecurity solutions to protect networks, systems, services, and data from unauthorized access
Participate in the Configuration Control Board (CCB), including coordinating, scheduling, and attending meetings
Ensure:
Systems comply with established Department of Defense (DoD) and Air Force (AF) policies and directives
Product quality and timeliness of work, providing advice and guidance, resolving problems to meet objectives, and providing cybersecurity metrics
Assist cybersecurity assessors and auditors as required
Interpret Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG) requirements
Perform assessments with enclave and network infrastructure devices
Identify and manage risks in an Information Technology (IT) environment, including analysis, monitoring, and mitigation of threats and risks
Audit information systems and applications for vulnerabilities
Qualifications:
Required:
Active DOD Top Secret/SCI security clearance
Bachelor's degree in Computer Science, Software Engineering, Information Management Systems or a related discipline. Equivalent professional experience will be considered in lieu of degree
DOD 8140 certification at IAT Level 2 (i.e., Cisco Certified Network Associate (CCNA) Security, Cybersecurity Analyst+ (CySA+) {formerly CSA+}, Global Industrial Cyber Security Professional (GICSP), Global Information Assurance Certification (GIAC) Security Essentials (GSEC), Security+ Continuing Education (CE), or Systems Security Certified Practitioner (SSCP)
Knowledge of cybersecurity concepts and tools including DISA STIGs, Security Content Automation Protocol (SCAP), SCAP Compliance Checker (SCC) Tool, eMASS, Assured Compliance Assessment Solution (ACAS), Xacta
Excellent written and verbal communication skills
Experience with:
Fortify software scanning
Risk Management Framework packages and lifecycle
Creating and maintaining Cyber artifacts, documentation for RMF packages, including system security plans (SSPs), Plan of Action and Milestones (POA&Ms), and assessment reports
Knowledge of principles, theories, and concepts that contribute to the development of innovative principles and ideas
Desired:
Familiarity with:
RMF 4.0 and Continuous ATO
Docker and Kubernetes container orchestration system for Docker containers
Federal Risk and Authorization Management Program (FedRAMP), Defense Information Systems Agency (DISA) Approved Product List (APL), Reciprocity, DevSecOps
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher pur
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s