Information Systems Security Engineer
Bigbear.ai Davis County, Utah, United States
Software Development · 501-1,000 employees
About the role
The ISSE will ensure the confidentiality, integrity, and availability of classified information systems while enforcing security policies and procedures. They will conduct risk and vulnerability assessments, manage security audits, and provide technical expertise for cybersecurity initiatives.
What they look for
Requirements
Candidates must hold a Bachelor's degree with 8 years of experience or a Master's degree with 6 years of experience. Applicants are required to meet DoD 8570.01-M IAT Level II or IAM Level I certification requirements upon hire.
Full description
Residency
All applicants must currently reside in the United States
Overview
BigBear.ai is seeking an Information System Security Engineer (ISSE) to join our Information Services team, based in Hill AFB, Utah, and play an important role in supporting our mission of Strategic Deterrence through continual improvement and innovation. You’ll be supporting a cybersecurity effort to provide assistance obtaining and maintaining Air Force, Department of War DoW), and public law compliance for enterprise business solutions and ICBM weapon system information technology, assisting and advising Air Force Nuclear Weapons Center (AFNWC) and MMIII & Sentinel Systems Directorates acquisition programs in applying the Risk Management Framework (RMF) Lifecycle steps throughout all DoW acquisition program phases.
What you will do
As an ISSE, you will:
- Ensure the confidentiality, integrity and availability of classified information systems and networks.
- Enforce information systems security programs, policies, procedures, and tools.
- Analyze equipment and software reliability and suitability for vulnerability assessment utilization.
- Conduct analyses of classified network usage, hardware and software capabilities, ineffective practices or procedures, equipment shortcomings, and other relevant factors.
- Conduct risk and vulnerability assessments of classified information systems to identify associated vulnerabilities, risks and protection needs.
- Perform, document and provide recommendations to the ISSM on security audits, evaluations, and risk assessments for all classified systems.
- Update and complete all Body of Evidence paperwork and artifacts.
- Serve as a technical expert and focal point for cybersecurity policies, planning, programs, initiatives, certification, and accreditation.
- Provide recommendations and assistance regarding security aspects of processing, storage, retrieval, transmission, and access of classified and unclassified information.
What you need to have
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related Engineering field and a minimum of 8 years of experience
- Must have an active Secret clearance
- Master’s degree (MS or MBA) and 6 years of relevant experience.
- The applicant must meet DoD 8570.01-M IAT Level II, IAM Level I or higher certification requirements on hire date.
What we'd like you to have
- Professional experience in information security, with a proven track record of leading large-scale projects
- Experience designing and implementing secure network architectures, Zero Trust environments, and cloud security frameworks (AWS, Azure, or GCP)
Deep experience operating within regulatory frameworks such as NIST (800-53, 800-171), ISO 27001, CMMC, or SOC2
- Incident Response: Experience leading high-severity security incident responses and conducting post-mortem root cause analyses
- Threat Modeling: Proficiency in using frameworks like STRIDE or PASTA to identify vulnerabilities
- Security Tooling: Expert-level knowledge of SIEM (Splunk, Sentinel), EDR/XDR, Firewalls, and Vulnerability Scanners (Nessus, Qualys)
Identity & Access Management (IAM): Expertise in OAuth, SAML, and multi-factor authentication (MFA) implementation
- Secure Coding/DevSecOps: Ability to integrate security into the CI/CD pipeline using SAST (Static Analysis) and DAST (Dynamic Analysis) tools
Strategic Planning: Ability to translate business requirements into a technical security roadmap
- Stakeholder Management: Capable of communicating complex technical risks to non-technical executives to secure budget and buy-in
Pay transparency
Please note the targeted compensation range is provided as an estimate, and any actual compensation offer may vary depending on the needs of the company, or an applicant's skillset, competencies, experience, education, certifications, location, or other factors. The estimated range does not include the value of any benefits offered.
About BigBear.ai
BigBear.ai is a leading provider of AI-powered decision intelligence solutions for national security, supply chain management, and digital identity. Customers and partners rely on Bigbear.ai’s predictive analytics capabilities in highly complex, distributed, mission-based operating environments. Headquartered in McLean, Virginia, BigBear.ai is a public company traded on the NYSE under the symbol BBAI. For more information, visit https://bigbear.ai/ and follow BigBear.ai on LinkedIn: @BigBear.ai and X: @BigBearai.
BigBear.ai is an Equal opportunity employer all protected groups, including protected veterans and individuals with disabilities.
Similar roles
-
Staff Security Engineer
Robots and Pencils United States · $116K–$160K/yr
-
Cybersecurity Awareness Volunteer
CyberUp St. Louis, Missouri, United States
-
Senior Security Engineer
Latitude IT Solutions $119K–$137K/yr
-
Security Engineer
Latitude IT Solutions $102K–$118K/yr
-
2027 Internal Audit - Information Technology & Cybersecurity Summer Internship
Brown Brothers Harriman New York, New York, United States · $52K/yr
-
Security Engineer III - Network and Cloud Security - Hybrid (Remote Considered) - 26-103
PriMed Management Consulting Services, Inc. San Ramon, California, United States · $109K–$144K/yr