Senior Information System Security Engineer

Leidos

Confirmed live yesterday High trust
Remote

Quick summary

Work type
Remote
Location
Remote
Salary
$107,900–$195,050 / yr
Posted
2 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $173k
This role $151k
$96k most similar roles pay here $221k

This role pays less than 72% of similar roles. Most pay $151,475–$195,181 — the shaded band above. At the midpoint, this role pays about $151k versus about $173k for comparable roles.

Based on 240 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 274 open roles on FindRole.

Listed pay typically runs $92,300–$166,850 across 254 roles with salary data.

Most-posted roles

View all roles at Leidos

At a glance

TL;DR · Senior Information System Security Engineer

Senior Information System Security Engineer The Senior Information System Security Engineer joins the SMIT team to support cybersecurity authorization efforts for a major Navy IT services program. This role serves as the primary point of contact for Authorization to Operate (ATO) packages under the Risk Management Framework, ensuring systems comply with security policies and procedures. Daily responsibilities include developing and reviewing ATO submissions, evaluating hardware and software against NIST SP 800-53 Rev 5 controls, and managing artifacts within eMASS. The engineer will monitor system resources via automated scanning, verify patch compliance using ACAS and Microsoft Defender for Endpoints, and coordinate STIG checklist executions. Key technical requirements include proficiency in RMF processes, MITRE ATT&CK tactics, and FISMA reporting. The role addresses the critical challenge of securing the Navy's enterprise network by ensuring robust defense-in-depth principles and compliant dataflows across complex infrastructure.

What you'll do

  • Manage the full lifecycle of Authorization to Operate (ATO) packages under the Navy Risk Management Framework (RMF).
  • Develop, review, and submit cybersecurity authorization artifacts and change requests within the eMASS system.
  • Evaluate hardware and software during pre-acquisition phases to ensure compliance with NIST SP 800-53 security controls.
  • Monitor system resources through automated scanning and manage reporting feeds for cybersecurity authorizations.
  • Verify patch compliance using tools like ACAS, IAVA dashboards, and Microsoft Defender for Endpoints.
  • Execute and review Security Technical Implementation Guide (STIG) checklists for systems, applications, and code.
  • Create and maintain security documentation including SOPs, TTPs, Plan of Action and Milestones (POA&M), and FISMA Score Cards.
  • Document Ports, Protocols, and Services (PPS) to ensure accurate dataflows and compliant CAL boundary crossings.

What we're looking for

  • Bachelor's degree and 8-12 years of experience in a related field, or a Master's degree and 6-10 years of experience.
  • Must be a U.S. citizen and possess an active DoD Secret clearance.
  • Hold an active security certification that meets DOD 8570 IAT level III or higher.
  • Must have a complete understanding of RMF steps, specifically steps 4 through 7.
  • Experience with eMASS, including control inheritance, TR Import, and POAM import functionality.
  • Ability to verify patch compliance using ACAS, IAVA dashboards, and Microsoft Defender for Endpoints.
  • Knowledge of security engineering, assessment and authorization (A&A), vulnerability management, and incident management.
  • Top Secret clearance, experience with Cloud or NMCI authorizations, and ITIL Foundation V4 certification (preferred).

More like this

Similar roles

Information System Security Engineer

Leidos

Norfolk, VA 27 days ago $87,100$157,450
RMF NIST SP 800-53 eMASS ACAS Microsoft Defender for Endpoints STIG FISMA ITIL Vulnerability Management network, security Information Assurance Cybersecurity Authorization SOP TTP POAM
4+ yrs exp

Senior Information Systems Security Engineer

Leidos

19 days ago $131,300$237,350
Risk Management Framework (RMF) CNSSI 1253 DoD 8500 Zero Trust Cloud Computing Cybersecurity Risk Assessment Information Assurance Incident Response
10+ yrs exp

Senior Information System Security Officer

Leidos

Annapolis Junction, MD 123 days ago $131,300$237,350
Information Assurance Configuration Management Network Engineering Encryption IAVA System Security Plans Firewalls Routers Hardware/Software Security Communication Protocols DoD 8570
10+ yrs exp

Senior Information System Security Officer

Leidos

Annapolis Junction, MD 57 days ago $131,300$237,350
Information Assurance Configuration Management IAVA Network Engineering Encryption System Security Plans Firewalls DoD 8570 IAT Level II IAM Level II
10+ yrs exp

Information Assurance Engineer

Leidos

Chesapeake, VA 21 days ago $69,550$125,725
NIST 800-53 RMF eMASS SIEM IDS/IPS SCAP ACAS Nessus DISA STIGs Unix Linux CompTIA Security+ Risk Management Framework Vulnerability Assessment Information Assurance
4+ yrs exp