trace3 logo

ISSE/ Cybersecurity Engineer I

trace3 • Colorado Springs, CO


No Relocation

Posted: September 9, 2026

Job Description

*This position is fully remote | Active (or active within 24months) Secret Security Clearance required, can hold TS

JOB SUMMARY:

The Information System Security Engineer/ Cybersecurity Engineer I serves as a key technical leader responsible for integrating cybersecurity across the full lifecycle of complex information systems. This role acts as the primary liaison between systems engineering teams and security compliance stakeholders, ensuring security requirements are effectively implemented without compromising mission or operational objectives.

This position supports a Department of Defense (DoD) program focused on enhancing the cybersecurity posture of mission-critical systems operating within Amazon Web Services (AWS) classified environments. The role is heavily centered on executing the Risk Management Framework (RMF), driving system hardening efforts, conducting vulnerability assessments, and developing the documentation required to achieve and maintain Authority to Operate (ATO).

 

SUMMARY OF ESSENTIAL JOB FUNCTIONS:

Security Architecture & Engineering

  • Support the design, development, and implementation of secure architectures across multi-level systems, cloud environments (AWS), and on-premise networks
  • Integrate security controls into system design aligned with NIST 800-53 and DoD requirements

Risk Management Framework (RMF) Leadership

  • Participate in RMF lifecycle activities, including system categorization, control selection, implementation, and continuous monitoring
  • Tailor security controls based on system risk, mission needs, and operational constraints

Assessment & Authorization (A&A)

  • Develop and maintain Body of Evidence (BoE) documentation, including:
    • System Security Plans (SSP)
    • Security Assessment Reports (SAR)
    • Plan of Action & Milestones (POA&M)
  • Support assessment activities and coordinate with Authorizing Officials and assessors

Vulnerability Management & System Hardening

  • Conduct vulnerability scans using tools such as Nessus, ACAS, and SCAP
  • Analyze findings, prioritize risks, and drive remediation efforts with engineering teams
  • Implement and validate system hardening in accordance with DoD and industry standards

Stakeholder Engagement & Security Advisory

  • Translate technical vulnerabilities into mission and business risk for senior stakeholders
  • Provide security guidance on system changes, architecture decisions, and engineering trade-offs

 

REQUIRED QUALIFICATIONS:

  • 3-5 years of experience in cybersecurity, systems engineering, or information assurance
  • Experience implementing the DoD Risk Management Framework (RMF) in regulated or classified environments
  • Active certification meeting DoD 8570 / 8140 requirements (e.g., CISSP, CASP+, or equivalent)
  • Strong understanding of:
    • Network architecture and protocols
    • Encryption and key management
    • Secure system configuration (Windows and Linux)
  • Experience with vulnerability assessment tools (e.g., Nessus, ACAS, SCAP)
  • Ability to communicate complex technical risks to non-technical stakeholders

 

PREFERRED QUALIFICATIONS:

  • Cybersecurity certification
  • Experience working in AWS classified or GovCloud environments
  • Familiarity with DevSecOps pipelines and CI/CD security integration
  • Experience with container security (Docker, Kubernetes)
  • Knowledge of Zero Trust Architecture (ZTA)
  • Experience with compliance-as-code and automation tools

 

PHYSICAL DEMANDS:

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this position. Reasonable accommodations may be made to enable individuals with disabilities to perform these functions.

While performing the duties of this job, the employee is regularly required to:

  • Remain in a stationary position for extended periods of time.
  • Operate a computer, keyboard, and other office equipment using hands and fingers.
  • Communicate effectively in person, over the phone, and through electronic means.
  • Occasionally move about the office to access files, office equipment, and meeting spaces.
  • Lift and/or move up to 15 pounds as needed.
  • Maintain specific vision abilities, including close vision and the ability to adjust focus.

 

WORK ENVIRONMENT:

This position is performed within a secure, classified workspace. Employees must comply with all applicable security protocols and access control procedures, including restrictions on personal electronic devices and the handling of sensitive information.