Information Systems Security Engineer
Core
Mid-level cybersecurity engineer supporting NASA's Office of the Organizational Computer Security Official (OCSO) by ensuring security compliance, managing risk frameworks, and maintaining secure IT/OT systems.
Role type
Mid-level Information Systems Security Engineer (ISSE)
Builds
Secure IT and Operational Technology (OT) systems for NASA, compliant with federal standards.
Domain
Federal government cybersecurity, aerospace and defense
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
NIST Risk Management Framework (RMF), System Security Plans (SSP) development and consolidation, vulnerability scanning and remediation, incident response and containment, network infrastructure knowledge (routers, switches, firewalls), cloud security (AWS/MCP), federal security compliance (FISMA, BOD 18-02), security requirements engineering
Preferred skills
NASA-specific cybersecurity processes and tools (RICS, ODV), advanced security certifications (CISSP, CISA, Security+, CAP), authorization boundary optimization, high-pressure emergency response
Technologies
AWS, MCP, NIST RMF tools, RICS, SAISO scanning tools
Responsibilities
Support NASA's Assessment & Authorization (A&A) process; consolidate and develop System Security Plans (SSPs); conduct security assessments of OT systems and applications; perform vulnerability scanning and coordinate remediation; assist in event containment, detection, and recovery; collaborate on security requirements for solicitations; participate in the Information System Change Board; maintain auditing capabilities and event analysis.
Seniority
Mid-level, hands-on IC