We deliver science, technology and engineering solutions to governments and companies around the world.
Information System Security Officer – ISSO
Location
Arizona + 3 moreAll locations: Arizona | Florida | Maryland | Virginia
Posted
2 days ago
Salary
$125K - $155K / year
Seniority
Lead
Job Description
Information System Security Officer – ISSO
KBR, Inc.
• Provide support to the Test Resource Management Center’s (TRMC) All Domain Test Range (ADTR) • Assist with providing solutions to complex problems in a manner which meets both functional and security requirements • Ensure the team’s computing environment operational and in compliance with all TRMC directives and applicable RMF requirements • Collaborate with other distributed team members to discuss current system status and plan desired future enhancements • Develop, implement, and maintain security policies, procedures, and standards to safeguard organizational information systems • Conduct regular security assessments, vulnerability scans, and penetration testing to identify and mitigate potential threats • Administer Windows and Linux servers • Manage Active Directory • Oversee the virtualization of servers using VMware, Hyper-V, or similar technologies
Job Requirements
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field
- CISSP, CISM, CASP, Security+ certifications
- Active TS/SCI security clearance
- Minimum 10 years of system administration or cybersecurity-related experience, specifically within DoD environment
- Proficient in Windows server and Linux server management, including installation, security policies, configuration, and troubleshooting
Benefits
- 401K plan with company match
- medical, dental, vision, life insurance
- AD&D
- flexible spending account
- disability
- paid time off
- flexible work schedule
- career advancement through professional training and development
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Cybersecurity Professional
HitachiA Fortune 100 company recognized for its innovation by Fast Company magazine and for its sustainability, reputation, and value by Forbes magazine, Hitachi is al
• Conduct cybersecurity risk assessments for technology, business, and operational initiatives. • Analyze threats, vulnerabilities, and control effectiveness to determine residual risk. • Maintain and update cybersecurity risk registers. • Evaluate risks against approved risk appetite and risk tolerance thresholds. • Track risk mitigation and remediation activities through closure. • Support the operation of the Cybersecurity Risk and Control Framework (CRCF). • Challenge the completeness and accuracy of risk assessments and mitigation plans. • Monitor adherence to cybersecurity policies, standards, and control requirements. • Assist with exception and risk acceptance reviews. • Support cybersecurity governance forums and reporting activities. • Assist with internal and external cybersecurity audits. • Coordinate evidence collection and remediation tracking. • Assess compliance with internal cybersecurity standards and regulatory requirements. • Support control assessments and gap analyses. • Develop risk metrics, dashboards, and management reports. • Prepare materials for management and governance reviews. • Escalate significant cybersecurity risk exposures and emerging trends. • Collaborate with IT, Product Security, IAM, Legal, Procurement, Privacy, and business teams. • Provide guidance on cybersecurity risk management processes and requirements. • Facilitate risk reviews and risk treatment discussions with stakeholders. • Promote cybersecurity awareness and risk-informed decision making.
Security / Compliance Architect
NATIONMIND LLCNationMind LLC is a technology consulting firm focused on Technical Engineering, software development, technicians, QA testing and services. We help clients build reliable, scalable applications with a strong emphasis on automation, performance, and quality. Our team works across industries, delivering solutions that drive innovation and operational efficiency.
Role Description The Security / Compliance Architect is the primary security design authority for the engagement. This role is responsible for: - Defining the controlled data boundary. - Translating compliance and business requirements into enforceable controls. - Shaping the secure enclave design. - Ensuring the overall solution is defensible from a governance, audit, and risk-management standpoint. This is a client-facing onshore role requiring strong experience in data protection, compliance-aligned architecture, information protection controls, and regulated collaboration environments. Key Responsibilities - Lead the definition of the controlled data / CUI boundary, including in-scope users, repositories, workflows, endpoints, and approved handling paths. - Translate customer requirements into a target-state security architecture for a secure collaboration enclave. - Define the DLP and information protection strategy across collaboration, email, endpoint, and removable media channels. - Establish the control intent for classification, labeling, monitoring, restriction, blocking, exception handling, and audit evidence generation. - Drive alignment between business process requirements and security control design to ensure the solution is usable as well as compliant. - Lead design decisions related to: - Approved vs non-approved storage locations - Secure collaboration patterns - External sharing restrictions - Exception governance - Evidence and logging requirements - Review current-state data handling patterns and identify exposure points, control gaps, and architectural risks. - Produce client-facing security design artifacts, including boundary definitions, control strategies, architecture requirements, and decision packs. - Support design reviews, steering discussions, and executive readouts. - Work closely with the platform lead to ensure Microsoft control implementation aligns with security intent. - Support pilot validation by reviewing policy effectiveness, exception scenarios, usability impacts, and audit defensibility. - Provide oversight during deployment and handover to ensure the final state aligns with the approved security design. Qualifications - 8+ years in cybersecurity architecture, security consulting, or security engineering roles. - Strong experience in one or more of the following: - Data Loss Prevention - Information Protection / Data Classification - Secure collaboration architecture - Microsoft Purview / MIP / DLP - Compliance-driven security design - Experience defining and operationalizing controls for sensitive or regulated data. - Strong understanding of: - Secure data boundaries - Access control and least privilege concepts - Audit evidence requirements - Policy exception governance - Endpoint, email, and collaboration security controls - Experience working directly with business stakeholders, security leadership, and platform teams in regulated environments. - Strong workshop facilitation, requirements analysis, and executive communication skills. - Ability to convert ambiguous customer requirements into precise security architecture decisions. Requirements - This is a remote position.
IT Security Manager
Lakeshore Learning MaterialsLakeshore Learning Materials describes itself as a leading developer and retailer of high-quality classroom materials and furniture for early childhood programs
• Lead a team of security engineers and analysts protecting Lakeshore across vulnerability management, incident detection and response, and identity and access management • Shape security strategy while partnering across the business to reduce risk and develop a sustainable security program • Drive execution of multi-year security initiatives, translating strategy into execution and maintaining progress amid shifting priorities • Partner with senior stakeholders/leadership to develop and maintain information security policies, procedures, GRC, and plans • Evaluate security technologies and controls, overseeing implementation and continuous improvement efforts to strengthen security posture • Identify the root causes of technical and operational problems, leading the team to sustainable solutions
• Own the product strategy for this market: who we're building for, what problems we solve, how we're differentiated • Lead market and customer discovery with developers, engineering leaders, and security teams to find real signal • Test hypotheses around buyers, pricing, and packaging — iterate fast • Build and drive the roadmap, translating customer insight into a prioritized backlog • Partner with sales and leadership to shape GTM: positioning, pricing, and the sales motion for a new buyer • Define what success looks like and track the signals that tell us the market bet is working



