Company
Government
SecurityEngineer/ISSOSupport
Neural analysis suggests this role is
optimal for Senior candidates.
“Security Engineer/ISSO Support. Skills: ISSO, ATO, Zero Trust Architecture, AWS Security, CI/CD Security. Serve as the primary ISSO and security subject matter expert supporting ATO processes and federal system authorization activities across the full SDLC. Design, implement, and maintain Zero Trust Architecture (ZTA) across AWS environments, ensuring security controls are embedded at every layer of the stack. Ensure compliance with federal standards including FISMA, NIST 800-53, NIST 800-63, OW”
What You'll Achieve.
Ensure auditability and compliance of production environments through monitoring, logging, and continuous security validation.
Industry & Context.
system authorization
U. S. citizenship required with ability to obtain or maintain public trust must be available to work Eastern Time hours.
What They're Looking For.
Must Have
Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field. 6+ years of experience in federal information security, including ISSO responsibilities or ATO leadership within a civilian federal agency. expertise in FISMA, NIST 800-53, NIST 800-63, and federal ATO/SDLC processes. Hands-on experience implementing Zero Trust Architecture in AWS, including IAM hardening, segmentation, and cloud security controls. Proven experience with CI/CD security tooling such as SAST, DAST, OWASP ZAP, and container vulnerability scanning. Deep knowledge of AWS security services including IAM, CloudTrail, CloudWatch, AWS Config, and Secrets Manager. Experience supporting or authoring PIAs, SORNs, and federal privacy/security documentation.
Nice to Have
understanding of federal compliance frameworks including TIC, Section 508, 21st Century IDEA Act, and software supply chain security requirements. Excellent communication skills with ability to produce detailed security documentation and engage technical and non-technical stakeholders.
What You'll Do.
Serve as the primary ISSO and security subject matter expert supporting ATO processes and federal system authorization activities across the full SDLC.
Design, implement, and maintain Zero Trust Architecture (ZTA) across AWS environments, ensuring security controls are embedded at every layer of the stack.
Ensure compliance with federal standards including FISMA, NIST 800-53, NIST 800-63, OWASP ASVS Level 2, Privacy Act, and Federal Records Act requirements.
How You'll Work.
Team & Collaboration
Collaborate with engineering, IV&V teams, and government stakeholders to resolve security findings and continuously improve system posture. Participate in Agile ceremonies, sprint planning, and DevSecOps delivery cycles using JIRA and GitHub.
Communication Scope
detailed security documentation; stakeholder engagement
Process & Methodology
Agile
Full Job Description
## Accountabilities Serve as the primary ISSO and security subject matter expert supporting ATO processes and federal system authorization activities across the full SDLC. Design, implement, and maintain Zero Trust Architecture (ZTA) across AWS environments, ensuring security controls are embedded at every layer of the stack. Ensure compliance with federal standards including FISMA, NIST 800-53, NIST 800-63, OWASP ASVS Level 2, Privacy Act, and Federal Records Act requirements. Integrate security testing tools (SAST, DAST, OWASP ZAP, container scanning, dependency analysis) into CI/CD pipelines and enforce secure delivery practices. Manage AWS security services including IAM, Secrets Manager, CloudWatch, CloudTrail, AWS Config, and enforce secure configuration and logging standards. Support Privacy Impact Assessments (PIAs), System of Records Notices (SORNs), and documentation of data usage, retention, and protection policies. Collaborate with engineering, IV&V teams, and government stakeholders to resolve security findings and continuously improve system posture. Ensure auditability and compliance of production environments through monitoring, logging, and continuous security validation. Participate in Agile ceremonies, sprint planning, and DevSecOps delivery cycles using JIRA and GitHub. Requirements: Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field. 6+ years of experience in federal information security, including ISSO responsibilities or ATO leadership within a civilian federal agency. Strong expertise in FISMA, NIST 800-53, NIST 800-63, and federal ATO/SDLC processes. Hands-on experience implementing Zero Trust Architecture in AWS, including IAM hardening, segmentation, and cloud security controls. Proven experience with CI/CD security tooling such as SAST, DAST, OWASP ZAP, and container vulnerability scanning. Deep knowledge of AWS security services including IAM, CloudTrail, CloudWatch, AWS Config, and Secrets Manage
Applying for this Security Engineer/ISSO Support role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Lever
- Lever uses a streamlined one-page form — apply in under 5 minutes.
- LinkedIn import works well; review parsed data before submitting.
- The cover letter field is optional but visible to reviewers — use it to differentiate.
- Referral codes from employees can significantly boost visibility of your application.
ANONYMOUS · UNFILTERED
What do employees actually say about this company?
Real rants from real employees. Read before you apply.