303 information system security jobs at 118 companies in Winchester, VA
1w
Save
Mark Applied
Hide
1w
Information System Security Engineer
Washington or Chantilly or Quantico or Huntsville
OnsiteFull Time
ManTech: Provides technology solutions for defense and intelligence agencies.
3+ YOEDesign and implement security architectures for IS and network environments, apply NIST RMF, use security tools, hold required certifications, possess multi-year experience per degree/experience table, and hold TS/SCI clearance.
Tenable Nessus, Security Center, IBM Guardium, HP WebInspect, Network Mapper (NMAP), NIST Risk Management Framework (RMF)
Base-2 Solutions: Delivers engineering and technology services for national security.
9+ YOERequires active Top Secret/SCI clearance with CI polygraph, a bachelor's degree or equivalent experience, and 9+ years of relevant experience in information security, risk, vulnerabilities, compliance, and incident response.
Xacta, Risk Management Framework (RMF), System Security Plans (SSPs), Security Control Trace Matrices (SCTM), Security Test Plans (STPs), Plans of Action and Milestones (POAMs), Security Technical Implementation Guide (STIG), ACAS
Huntsville or Herndon or Tampa or Colorado Springs or Ogden or Omaha or San Antonio
$115k-$140k/yrHybridFull Time
Dark Wolf Solutions: Provides cybersecurity and software development services to defense agencies.
4+ YOE4+ years IT security experience, background in secure software development, ability to author security documentation, experience with vulnerability assessments, and strong analytic and communication skills. Bachelor's in related field and IAT Level 2 (Sec+) required; US citizenship and active Secret clearance required.
Redhorse: Delivering data insights and technology solutions to government agencies.
8+ YOEBachelor's degree in a related field, 8+ years of information assurance and security engineering experience, active TS/SCI with full-scope polygraph, C&A experience, NIST SP 800-37 or related framework experience, SSP development, and vulnerability scanning.
NIST SP 800-37, AWS, Azure, Google Cloud, DataBricks, GitLab, Jira, DevSecOps, System Security Plans (SSP)
Markon Solutions: Provides professional program and engineering services to federal agencies.
3+ YOEActive TS/SCI with CI poly preferred, Bachelor’s in a technical field, 3+ years ISSE/cybersecurity experience, IAM Level II, RMF/NIST knowledge, experience across system development lifecycle and multiple OS/cloud environments.
NIST SP 800-160, Risk Management Framework (RMF), NIST, FISMA, NRO RMF, ICD 503, Assessment & Authorization (A&A), System Security Plan (SSP), Security Assessment Report (SAR), Plans of Action and Milestones (POA&Ms), Cross Domain Solutions (CDS), Windows, Linux, Unix, macOS
Rincon Research Corporation: Designs high-performance digital signal processing solutions for defense missions
1+ YOE1-3 years ISSO or system administration experience; cybersecurity assessments, accreditations, continuous monitoring; Linux knowledge; must be U.S. citizen with eligibility for TS/SCI and T5/T5R adjudication; must obtain DoD 8570 IAM Level 1.
Amatriot Group: Provides IT consulting and mission-critical technology support services.
5+ YOEActive TS/SCI with CI polygraph, 5+ years information assurance, RMF/ICD 503 experience, Xacta and STIG knowledge, vulnerability management, CompTIA Security+ or CISSP.
Xacta, Nessus Security Center, WebInspect, AppDetective, ACAS, Amazon Web Services (AWS), RMF, ICD 503, STIG
AnaVation: Providing technical engineering and cybersecurity solutions for federal agencies.
10+ YOERequires 10 years of security engineering experience, a bachelor's degree or 5 additional years, Top Secret clearance, polygraph eligibility, vulnerability scanning, NIST controls, cloud, and security tools experience.
Markon: Delivers management and technical consulting services to federal agencies.
3+ YOEActive TS/SCI with CI poly preferred, Bachelor’s in a technical field, 3+ years ISSE/cybersecurity experience, IAM Level II qualifying certification, RMF/NIST knowledge, and experience developing RMF/A&A artifacts.
Inadev: Provides digital engineering and AI solutions to government and businesses.
5+ YOEU.S. citizen with 5+ years ISSO experience, CISSP or CAP, RMF/NIST 800-53/FedRAMP knowledge, ability to obtain federal clearance, strong communication and RMF/ATO experience.
KBRNYSE: KBR: Provides engineering, technology, and professional services for global markets.
7+ YOEActive TS/SCI with polygraph, bachelor\u000degree (or equivalent experience) with 7+ years of relevant experience, RMF/NIST knowledge, security plan and accreditation experience, and ability to brief technical and non-technical audiences.
AmentumNYSE: AMTM: Provides engineering, technology, and mission support to government agencies.
8+ YOEBachelor's degree in an IT-related field, 8 years of relevant experience, active Top Secret/SCI clearance or ability to obtain SCI, Windows/Linux security experience, RMF expertise, and an approved IAT certification.
Microsoft Windows, Red Hat Enterprise Linux (RHEL), Active Directory, Group Policy, XACTA, ACAS, NESSUS, Trellix, Splunk, DISA STIGs, DISA Viewer, Microsoft Excel, Microsoft Word, Microsoft Outlook, Microsoft SharePoint, Microsoft Project, Microsoft Visio, ForeScout, Ivanti
General Atomics Aeronautical Systems: Designs and manufactures unmanned aircraft and radar systems.
6+ YOEActive Top Secret (SCI-eligible) clearance, bachelor’s degree typical, 6+ years IA experience, Security+ and DoD 8570 IAM Level I, experience with STIGs, SCAP, ACAS, Windows/Linux administration, Splunk and Nessus.
Splunk Enterprise, Nessus Vulnerability Assessment, Security Content Automation Protocol (SCAP), Security Technical Implementation Guide (STIG), STIG Viewer, Assured Compliance Assessment Solution (ACAS), Cisco IOS, Windows 11, Windows Server, RedHat Linux, VMware, HyperV, Active Directory, Windows Backup
OMNI Consulting Solutions: A boutique consulting firm delivering solutions and support for DoD, aerospace, and other complex clients.
10+ YOEActive TS/SCI and U.S. citizenship, bachelor\u0002s in technical field or equivalent, 10+ years cybersecurity experience, DoD 8570/8140 IAT/IAM Level II cert (e.g., Security+, CySA+, CISSP-Associate), RMF knowledge.
Pearl Harbor or Honolulu or Reston or United States
$98k-$132k/yrOnsiteFull Time
SOSi: Provides technology and mission solutions for national security.
6+ YOEActive Secret clearance, DoD 8140 DCWF 722 Intermediate compliance, bachelor's degree or listed certification, and six years of cybersecurity, information assurance, systems engineering, or RMF experience.
Vantor: Providing AI-powered spatial intelligence and high-resolution Earth observation.
5+ YOEU.S. citizen with active Top Secret clearance, willing to obtain CI Polygraph; bachelor’s or equivalent experience; 5 years relevant experience; RMF/DoD IA experience; UNIX/Linux and TCP/IP knowledge; strong communication skills.
Information System Security Officer – Mid-Level (Government)
Chantilly, Virginia, United States
$98k-$115k/yrOnsiteFull Time
AT&TNYSE: T: Provides wireless and fiber optic telecommunication services.
2+ YOERequires TS/SCI with polygraph, RMF experience, data transfer knowledge, qualifying education and experience, and one IAT II certification such as Security+, CCNA Security, CySA+, GICSP, GSEC, or SSCP.
Information System Security Engineer (ISSE) (2026-0170)
Chantilly, Virginia, United States
OnsiteFull Time
Acclaim Technical Services: Provides language and intelligence services to U.S. federal agencies.
8+ YOEDesign and embed security controls, conduct technical assessments, support A&A activities, maintain baselines and documentation; TS/SCI with polygraph and bachelor\u0002s degree plus 8 years required.
Senior Principal Information System Security Officer - Big Data
Herndon or Columbia
$100k-$270k/yrOnsiteFull Time
Clarity Innovations: Provides software and data engineering for national security missions.
Expertise in data security, RMF/ATO, NIST 800-53, STIGs, vulnerability and compliance management, encryption/key management, policy development, and cloud/security architecture.