1,689 information technology security engineer jobs at 530 companies in Manassas, VA
3mo
Save
Mark Applied
Hide
3mo
Information Security Engineer
Washington, District of Columbia, United States
$145k-$170k/yrOnsiteFull Time
Municipal Securities Rulemaking Board: Regulates the municipal securities market to ensure market integrity.
7+ YOE7+ years in information security; strong incident response, detection engineering, IAM, networking, cloud/app security; experience with SIEM and security tooling.
Babel Street: AI-powered identity intelligence and risk operations software solutions.
3+ YOEBachelor's in cybersecurity or related, 3+ years in information security or security operations, experience with XDR/EDR, Entra ID, cloud platforms, incident investigation, scripting and automation.
Microsoft XDR, CrowdStrike Falcon, Microsoft Entra ID, AWS, Microsoft Azure, Google Cloud Platform (GCP), PowerShell, Python, Kusto Query Language (KQL), Splunk Processing Language (SPL), Microsoft Graph API, REST APIs, OpenCode, Claude, Gemini, GitHub Copilot, ChatGPT
Markon Solutions: Provides professional program and engineering services to federal agencies.
Bachelor's degree in a technical discipline, CISSP, active TS/SCI with polygraph, and experience in security engineering, RMF, vulnerability assessment, cloud security, and Government information systems.
Xacta, LatteArt, Nessus, Linux, AWS, Microsoft Azure, Risk Management Framework (RMF), Assessment and Authorization (A&A), Concepts of Operations (CONOPS)
Exostar: Cloud platforms for secure collaboration in regulated industries.
5+ YOE5+ years securing cloud architectures and implementing technical controls across cloud, identity, PKI, and application environments; experience with audits (SOC 2, ISO 27001), DevSecOps, and working with engineering teams.
Jira, Confluence, Active Directory, Entra ID/Azure AD, SAML, OIDC, MFA, PKI, TLS, VPN/IPSec, Java, APIs, OWASP SAMM, Microsoft Security Development Lifecycle, IBM Secure Engineering Framework, SOC 2, ISO/IEC 27001, CMMC, DLP, HIPS, HIDS
ManTech: Provides technology solutions for defense and intelligence agencies.
7+ YOETS/SCI cleared candidate with 7+–10+ years information systems security experience, expertise in accreditation/A&A/BOE, secure architecture design, and familiarity with Tenable Nessus, IBM Guardium, HP WebInspect, and NMAP.
Tenable Nessus, Security Center, IBM Guardium, HP WebInspect, Network Mapper (NMAP), Cross Domain Solutions (CDS)
AppianNASDAQ: APPN: Provides a low-code platform for enterprise-grade process automation.
Bachelor’s degree in a related STEM field, cybersecurity engineering or threat analysis experience, Java, Python, or C/C++ scripting, and knowledge of TCP/IP, DNS, and DHCP.
Soliel: Providing specialized IT engineering and cybersecurity services to federal agencies.
7+ YOERequires 7+ years of IT, systems engineering, information assurance, or cybersecurity experience, including 4+ years in cybersecurity engineering, RMF, or A&A; Security+ CE or higher; U.S. citizenship; active Top Secret clearance.
STIG, IAVA, ACAS/Nessus, Risk Management Framework (RMF), Assessment & Authorization (A&A), POA&M, eMASS, Cisco, Juniper, Palo Alto Networks, F5, Windows Server, Red Hat Enterprise Linux (RHEL), VMware, Active Directory
Peraton: Provides advanced technology and mission support for government agencies.
10+ YOELead security engineering for complex information systems, support RMF A&A, DISA STIG compliance, SIEM log analysis, vulnerability assessment, and work in SCIF with TS/SCI clearance.
Splunk, ACAS, DISA STIGs, STIG Viewer, Xacta, AWS, Google Cloud, Cloudtrail, Cloudwatch, Openshift, Antible, Linux
Data Intelligence: Provides engineering and cybersecurity solutions for federal government clients.
3+ YOE3–5 years ISSE experience, Top Secret/SCI with CI Polygraph, knowledge of NIST/ISO 27001/CIS Controls, cloud security, RMF, secure SDLC, incident response, risk assessments, and systems security engineering.
Excelity: Provides IT solutions and software engineering for government agencies.
9+ YOERequires TS/SCI with CI Poly, 9+ years of A&A and information assurance experience, RMF and Xacta expertise, control validation, security risk knowledge, and DoD 8140 baseline certification; degree or additional experience required.
XACTA, Risk Management Framework (RMF), ICD 503, CNSSI-1253, NIST 800-37, NIST 800-53, Xacta, Splunk, ACAS, Prisma, SonarQube, JFrog X-Ray, GitLab Code Quality, DISA STIGs, STIG Viewer, AWS, Google Cloud, Red Hat, CentOS, Linux, DevSecOps, Containerized Systems
Markon: Provides professional services and management consulting for government agencies.
8+ YOEActive TS/SCI Full Scope Poly clearance, bachelor's degree in cybersecurity, computer science, or related field, and 8+ years in IT security, information assurance, or engineering; ISSO, ISSE, or ISSM experience required.
Base-2 Solutions: Delivers engineering and technology services for national security.
Requires active Top Secret/SCI clearance with Full Scope Polygraph, security engineering experience with NIST, RMF, DoD and IC standards, security tools, cloud platforms, scripting, virtualization, and listed certifications.
CACI InternationalNYSE: CACI: Provides information technology and engineering services for government agencies.
4+ YOETS/SCI clearance required, 4+ years security engineering or information assurance, experience with NIST RMF, STIG hardening, ACAS/Nessus, IAT Level II (DoD 8570/8140), ability to work onsite at government facilities.
STIG, ACAS, Nessus, Kubernetes, AWS, C2S, CI/CD, Electronic Medical Records (EMR)
Redhorse: Delivering data insights and technology solutions to government agencies.
8+ YOEBachelor's degree in a related field, 8+ years of information assurance and security engineering experience, active TS/SCI with full-scope polygraph, C&A experience, NIST SP 800-37 or related framework experience, SSP development, and vulnerability scanning.
NIST SP 800-37, AWS, Azure, Google Cloud, DataBricks, GitLab, Jira, DevSecOps, System Security Plans (SSP)
ASRC Federal: Provides engineering and IT services to federal government agencies.
5+ YOEBachelor's degree and 5–7 years of cybersecurity, information assurance, RMF, or information system security experience. Requires CISSP and CGRC or CCSP certifications plus federal cybersecurity and NIST RMF experience.
NIST Risk Management Framework (RMF), Governance, Risk, and Compliance (GRC), NIST SP 800-37, NIST SP 800-53, FISMA, FIPS 199, DevSecOps
Modern Technology Solutions: A technical services providing cybersecurity and defense consulting support to government customers.
20+ YOE20+ years of DoD/IC information assurance experience with at least 2 years in SAP/SCI; active TS/SCI clearance and CI polygraph; expertise in DoD RMF, NIST SP 800-37/53, CNSSI 1253; platform experience and secure systems engineering.
DoD RMF, NIST SP 800-37, NIST SP 800-53, CNSSI 1253, JSIG, DoDI 8500.01, Microsoft Windows Server, Active Directory, Red Hat Enterprise Linux, MS Hyper-V, VMWare, ESx, Xen Hypervisors, Group Policy
Bolling Air Force Base, District of Columbia, United States
OnsiteFull Time
Spear AI: Develops AI software and sensors for maritime defense operations.
Active TS/SCI and DoW 8570/8140 IASAE Level II required; must obtain a polygraph. Requires hands-on NIST RMF, classified-system ATO, hardening, vulnerability management, and security engineering experience.
BAE SystemsLondon Stock Exchange: BA: Designs and manufactures advanced defense and aerospace systems.
7+ YOEBachelor’s degree and 7+ years relevant experience, including 5+ years in information assurance or systems security; DoD 8140 IAT II or IAM I certification; NIST RMF, Windows/Linux, Nessus, STIG, cloud security, and IC infrastructure experience.