Customer Focused. Mission Driven.
Information System Security Engineer – ISSE
Location
Ohio
Posted
12 days ago
Salary
0
Seniority
Senior
Job Description
Information System Security Engineer – ISSE
Applied Research Solutions
• Engineer secure solutions supporting Cyber Threat and Defensive Operations for DoD enclave environments. • Integrate, configure, and monitor Microsoft Defender for Cloud, Sentinel, Azure Policy, Azure Monitor, and Log Analytics. • Automate threat assessment, security reporting, and continuous monitoring workflows. • Develop and maintain Azure-based detections, dashboards, alerts, and automated response playbooks. • Perform and document technical security assessments to identify vulnerabilities and recommend mitigation strategies. • Implement and validate security controls and secure configurations in alignment with DoD, NIST, and organizational policies. • Support all phases of the RMF lifecycle, including control selection, implementation, assessment, authorization, and continuous monitoring. • Mitigate or correct security deficiencies identified during assessments, testing, or audits, and provide risk acceptance recommendations to the ISSM. • Analyze, assess, and report system and organizational security posture trends to the ISSM/ISSO. • Support audit preparation, artifact collection, and evidence validation for compliance activities. • Ensure security operations, configuration changes, and maintenance activities are properly documented and kept current. • Evaluate cybersecurity tools, compensating controls, and security technologies to ensure risk is reduced to acceptable levels, and report findings to the ISSM. • Assist the ISSM/ISSO in developing and maintaining RMF documentation, including System Security Plans (SSPs), security diagrams, control evidence, and ATO package materials. • Ensure security documentation and SSPs remain current and compliant with applicable DoD and program-specific policies. • Support incident response investigations by analyzing security logs, alerts, and system activity.
Job Requirements
- Must be a US citizen
- Top Secret clearance with SCI eligibility
- 5+ years related experience in SCI/SAP environments
- Prior experience functioning as an ISSE or security engineer supporting RMF processes
- Advanced technical competency and experience in one or more of the following areas: Active Directory Domain Services, Active Directory Federated Services, Active Directory Certificate Services, Windows Server Update Services, ePO, Splunk, STIG/SCAP, YUM, ACAS Automation, and Azure Monitor / Log Analytics.
- Security+ certification
- Bachelor’s degree in Computer Science, Engineering, or related field OR equivalent experience
- 5-8 years of demonstrated performance in related technologies
Benefits
- competitive benefits package
- awards and recognition program
- personalized attention from ARS Senior Managers
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• This is a senior, hands-on role with intentionally broad scope. • Cloud infrastructure, security operations, and regulatory compliance are consolidated into a single function rather than distributed across a large team. • Design and maintain secure AWS cloud infrastructure using Terraform and Terragrunt, with a focus on IAM least-privilege, account isolation, and security guardrails across multiple AWS environments. • Manage AWS network security: VPC segmentation and design, Transit Gateway architecture, PrivateLink for service isolation, Network Firewall, and Route 53 Resolver for DNS security. • Manage and maintain Cloudflare infrastructure including DNS, WAF, and edge compute. • Architect and operate Cloudflare Zero Trust — including Access policies, Tunnel configuration for private network routing, Gateway egress filtering and DNS security policies, and WARP client deployment. • Manage and tune AWS-native security tooling: GuardDuty, Security Hub, Config, Inspector, CloudTrail, and WAF. • Integrate security controls into CI/CD pipelines (GitHub Actions) — including SAST, DAST, container image scanning, dependency vulnerability checks, and secrets detection. • Enhance container and workload security through image signing, admission controllers (Kyverno), runtime policies, and base image hygiene. • Manage dependency and patch lifecycle across Docker images, Helm charts, Terraform modules, and application packages. • Own and operate security monitoring and incident response: maintain SIEM/log aggregation pipelines, tune alerting for anomalous behavior and policy violations, lead root cause analysis, and document post-mortems. • Conduct and coordinate vulnerability assessments; track findings through to remediation. • Automate compliance checks and drift detection using infrastructure scanning and policy-as-code tooling. • Participate in on-call rotation to respond to security and infrastructure incidents. • Support SEC and FINRA compliance obligations by implementing and documenting technical controls, and partner with legal and compliance teams during audits and regulatory reviews. • Document infrastructure patterns, access controls, and security architecture for audit readiness.
• Coordinate daily security operations including access control systems, visitor management protocols, security personnel scheduling, and incident logging in collaboration with law enforcement when necessary • Track and report environmental performance metrics such as energy consumption, water usage, waste diversion rates, and carbon emissions while maintaining sustainability dashboards for stakeholders • Manage waste hauler and recycling vendor relationships to optimize service delivery, track diversion performance against targets, and design waste stream signage and bin infrastructure • Facilitate employee engagement programs that promote security awareness, sustainable behaviors, and environmental education across the organization • Support leadership in vendor management activities including security and sustainability contract compliance monitoring and specialty waste program coordination • Create presentations and communication materials for internal audiences while coordinating information flow among security, facilities, sustainability, and business operations teams • Assist in facility planning processes to integrate security and sustainability considerations while tracking employee safety training and environmental awareness program completion.
Senior Security Automation Engineer
Procter & GambleProcter & Gamble, or P&G, is the parent company behind some of the world's most recognizable household and personal care brands. The company was established in
Title: Senior Security Automation Engineer Location: CINCINNATI GENERAL OFFICES Job Description: Job Location CINCINNATI GENERAL OFFICES Job Description Information Technology (IT) at Procter & Gamble is where business, innovation and technology integrate to create a competitive advantage for P&G. Our mission is clear -- we deliver IT to help P&G win with the over 5 billion consumers we serve worldwide. Our IT professionals are diverse business leaders who apply IT mastery to deliver game-changing, technology-driven business models and capabilities for our 65 iconic, trusted brands. From Day 1, you’ll be trusted to dive right in, take the lead, use your initiative, and build billion-dollar brands that help make everyday activities easier and make the world a better place. You’ll be doing meaningful work that takes your career places you never imagined. And you’ll do this in creative workspaces where new ideas flourish and where your technical mastery is recognized and rewarded. The Opportunity Procter & Gamble is seeking an experienced SOAR Engineer to join our engineering organization. In this role, you will collaborate with various stakeholders to understand business requirements and strategize the utilization of automation for enhanced efficiency. Working closely with the Security Operations Center (SOC) team and Incident Response Team (IRT), you will assist in the implementation and management of SOAR technologies. As a Security Orchestration, Automation, and Response (SOAR) Engineer, you will serve a critical role in our InfoSec's Cyber Defense Technology team. You will focus on enhancing our organization's automation, orchestration, and response capabilities through the strategic use of SOAR technology. You will lead the implementation of our SOAR platform, aiming to boost our overall efficiency and effectiveness in Global Cyber Defense. Position Responsibilities - Cooperate with the SOC and broader Global Cyber Defense teams to enhance existing automation and deliver robust security solutions. - Evaluate, design, and upgrade SOC processes and workflows, focusing on integrating automation through SOAR tools and technologies. - Initiate new SOC automation, ensuring compatibility with existing detection and response tools. - Integrate new log sources and develop playbooks to efficiently triage and respond to security incidents while minimizing analysis time. - Design custom scripts to automate existing detection and response workflows. - Assess SOC alerts statistics and workflows to minimize false positives and accurately direct engineering efforts. - Create pipelines to enrich logs and alert results, providing a comprehensive view for SOC analysts. - Operate and mature a SOC playbook, workflow automations, and use cases. - Engage with stakeholders to identify business requirements and provide recommendations on leveraging data effectively. The Ideal Candidate - Is passionate about cyber security and improving infrastructure for the future. - Can work independently and as a team to gather requirements and translate into solutions. - Is detail-oriented and analytical in nature, with strong problem-solving skills. - Has the ability to multitask and prioritize, work on multiple projects and manage time effectively. - Can produce and present technical information to both technical and non-technical personnel. - Can provide customer-facing support in a professional manner. Job Qualifications Required: - Bachelor's Degree in Information Systems, Information Technology (IT), Computer Science, Software Engineering, other STEM field or 5+ years relevant years of experience/education - Comprehensive knowledge of both classic and emerging threat actor tactics, techniques, and procedures in pre- and post-exploitation phases of attack lifecycles. - Proven experience in using Python for automating security operations and incident response processes. - Familiarity with working with AI tools. - Strong understanding of security architecture, tool integration, API development, and automation. - Extensive knowledge of Incident Response processes. - Familiarity with common SOC and SOAR processes and workflows. - Rich background and experience in Security Information and Event Management (SIEM) systems. - Experience with security-related datasets, log formats, and protocols. - Ability to work onsite in Cincinnati, Ohio on a hybrid work schedule. Preferred: - Certifications: CISSP, CCSP, OSCP, AWS Certified Solutions Architect (Amazon Web Services), AWS Certified Developer, Relevant certifications in ML/AI Compensation for roles at P&G varies depending on a wide array of non-discriminatory factors including but not limited to the specific office location, role, degree/credentials, relevant skill set, and level of relevant experience. At P&G compensation decisions are dependent on the facts and circumstances of each case. Total rewards at P&G include salary + bonus (if applicable) + benefits. Your recruiter may be able to share more about our total rewards offerings and the specific salary range for the relevant location(s) during the hiring process. We are committed to providing equal opportunities in employment. We value diversity and do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. Immigration Sponsorship is not available for this role. For more information regarding who is eligible for hire at P&G along with other work authorization FAQ’s, please click HERE. Procter & Gamble participates in e-verify as required by law. Qualified individuals will not be disadvantaged based on being unemployed. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation. Job Schedule Full time Job Number R000149381 Job Segmentation Experienced Professionals Starting Pay / Salary Range $110,000.00 - $165,300.00 / year
• Lead, mentor, and scale a high-performing cloud security engineering function, fostering strong ownership, operational excellence, and continuous improvement. • Own execution of the cloud security roadmap, prioritizing initiatives across FedRAMP readiness, zero trust architecture, cloud hardening, security automation, and continuous control validation. • Define and evolve the cloud security strategy for Judi Health, aligning technical investments and security architecture decisions to business growth, regulatory commitments, platform resilience goals, and emerging AI initiatives. • Serve as a trusted advisor to the CISO, engineering leaders, and executive stakeholders, helping drive secure-by-design decisions and modern security engineering practices across the organization. • Lead the design, implementation, and continuous improvement of cloud security controls across AWS infrastructure, platforms, application environments, and supporting services. • Identify, prioritize, and drive remediation of security risks across cloud services, infrastructure as code, third-party integrations, developer workflows, and enterprise platforms. • Build and operationalize cloud security capabilities that support compliance with frameworks and customer obligations including FedRAMP, FISMA, SOC 2, HITRUST, HIPAA, and related control requirements. • Drive threat detection, incident response readiness, vulnerability management, penetration testing, and security validation efforts to proactively identify and reduce risk. • Advance automation for security monitoring, alerting, evidence collection, and policy enforcement to improve scalability and support continuous compliance. • Establish meaningful security metrics and reporting for cloud posture, control effectiveness, and roadmap progress, and communicate insights clearly to senior leadership. • Partner with software engineering, platform engineering, DevOps, IT, and AI teams to embed security into architecture, infrastructure, the software development lifecycle, and AI-enabled capabilities. • Work closely with compliance, legal, privacy, and risk management teams to translate regulatory and customer requirements into practical, auditable technical controls. • Lead technical engagement for third-party assessments, customer security reviews, and external audits, ensuring strong preparation, evidence readiness, and timely remediation. • Help define and operationalize a modern security framework for AI initiatives, including governance, data protection, access controls, third-party risk, and secure adoption practices.




