Logo for Red River

Information Systems Security Engineer

Role overview

Qualifications

  • Bachelor's degree in cybersecurity, computer science, information technology, engineering, or a related technical field, or equivalent professional experience.
  • 7+ years of hands-on experience in cybersecurity, systems engineering, network engineering, or information assurance.
  • Demonstrated experience supporting RMF and ATO activities within a DoD environment.
  • Strong hands-on experience with RHEL/Linux administration and security hardening.

Responsibilities

  • Perform hands-on security engineering in support of Navy RMF and ATO requirements.
  • Implement and validate technical security controls across servers, virtualization, network, and logging environments.
  • Harden systems in accordance with applicable DISA STIGs, Navy security requirements, and RMF control requirements.
  • Perform vulnerability remediation, including analysis of findings, root-cause identification, remediation, and validation.

About the company

Red River logo

Red River

IT Services & IT Consulting

Company details

IndustryIT Services & IT Consulting
Company size7

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

We are seeking a highly technical Information Systems Security Engineer (ISSE) to support a U.S. Navy program through the Risk Management Framework (RMF), Authority to Operate (ATO), system hardening, vulnerability remediation, and day-to-day security engineering activities.

This is a hands-on engineering position. The ideal candidate is comfortable working directly on Linux servers, virtualization infrastructure, network infrastructure, and security monitoring platforms to implement, troubleshoot, validate, and maintain security controls.

The successful candidate will work closely with system administrators, network engineers, and cybersecurity personnel to identify security gaps and implement practical technical solutions that satisfy Navy RMF/ATO requirements.

This position is not primarily focused on strategy, program planning, configuration management, or developing project/VM plans. The focus is on technical execution and engineering.

Responsibilities

  • Perform hands-on security engineering in support of Navy RMF and ATO requirements.
  • Implement and validate technical security controls across servers, virtualization, network, and logging environments.
  • Harden systems in accordance with applicable DISA STIGs, Navy security requirements, and RMF control requirements.
  • Perform vulnerability remediation, including analysis of findings, root-cause identification, remediation, and validation.
  • Configure, secure, troubleshoot, and validate RHEL/Linux systems.
  • Support security hardening and troubleshooting of VMware environments.
  • Perform security configuration and troubleshooting of Cisco Catalyst and Cisco ACI infrastructure.
  • Support centralized security logging and monitoring using Splunk and Cribl.
  • Analyze system and security logs to troubleshoot issues and validate security requirements.
  • Support collection and validation of technical evidence required for RMF/ATO activities.
  • Translate RMF security requirements into practical technical implementations.
  • Work directly with infrastructure teams to remediate security deficiencies.
  • Automate repetitive security engineering and validation tasks where appropriate.

Required Qualifications

  • Bachelor's degree in cybersecurity, computer science, information technology, engineering, or a related technical field, or equivalent professional experience.
  • 7+ years of hands-on experience in cybersecurity, systems engineering, network engineering, or information assurance.
  • Demonstrated experience supporting RMF and ATO activities within a DoD environment.
  • Strong hands-on experience with RHEL/Linux administration and security hardening.
  • Experience implementing and validating DISA STIG requirements.
  • Hands-on experience with VMware environments.
  • Hands-on experience with Cisco Catalyst switching and Cisco ACI.
  • Hands-on experience with Splunk and Cribl or comparable enterprise logging technologies.
  • Strong understanding of vulnerability scanning, remediation, and security validation.
  • Strong Linux command-line and troubleshooting skills.
  • Ability to troubleshoot complex infrastructure and security issues across operating-system, virtualization, network, and logging layers.

Desired Qualifications

  • Experience supporting U.S. Navy or DoD mission systems.
  • Experience with Navy RMF processes and ATO assessments.
  • Experience with eMASS.
  • Experience interpreting and implementing DISA STIGs across multiple technology platforms.
  • Experience with Tenable/Nessus or comparable vulnerability-scanning platforms.
  • Experience with PowerShell, Bash, Python, or other scripting languages used for security automation.
  • Experience troubleshooting authentication, access control, auditing, encryption, and system logging requirements.
  • Experience integrating infrastructure logs into Splunk through Cribl.
  • Experience with SCAP/STIG compliance tooling.

Security Clearance

  • Active DoD Secret clearance required.
  • Ability to obtain and maintain any additional program-specific access requirements.

Certifications

One or more of the following is preferred:

  • Security+
  • CISSP
  • CySA+
  • Linux-related certification
  • VMware certification
  • Cisco certification

Basic Qualifications:

  • U.S. Citizenship Required

Red River offers a competitive salary, excellent benefits and an exceptional work environment. You can review our benefit offerings here. If you are ready to join a growing company, please submit your resume and cover letter (optional).

EOE M/F/DISABLED/Vet

Red River is an equal opportunity employer.  All qualified applicants will receive consideration for employment.  Discrimination or harassment based upon any protected characteristics as defined by state or federal law is wholly inconsistent with our company values and will not be tolerated.

In order to ensure reasonable accommodation for individuals protected by Section 503 of the Rehabilitation Act of 1973, the Vietnam Veterans Readjustment Act of 1974, and Title I of the American’s with Disabilities Act of 1990, applicants that require accommodation in the job application process may contact accommodation@redriver.com. PLEASE NOTE: This contact channel is reserved for use by individuals with disabilities who require special accommodations in order to submit an expression of interest in a position within Red River.

Red River does not accept unsolicited resumes from individual recruiters or third-party recruiting agencies in response to job postings or otherwise. Placement fees will not be paid to any recruiter unless Red River has an active agreement in place with the recruiter and such a request has been made by the Red River Talent Acquisition team and such candidate was submitted to the Red River Talent Acquisition Team via our Applicant Tracking System. Any unsolicited resumes or other data submitted to Red River in violation of this policy may be used by Red River without obligation to pay any fees of any kind to the recruiter.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
Β·

Information Security Analyst Related jobs

Other jobs at Red River

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.