Information Systems Security Engineer - SME
AI summary of the role
Senior ISSE SME leading the DOJ's Security Assessment and Authorization (SAA) program, providing expert RMF lifecycle leadership across complex DOJ IT environments.
What you’ll do
- Lead and supervise security professionals executing end-to-end RMF lifecycle for DOJ information systems
- Direct security control selection, tailoring, and documentation aligned with DOJ risk tolerance and compliance
- Serve as senior technical authority for security architecture, secure configurations, and remediation strategies
- Ensure comprehensive security control assessments and continuous monitoring activities are executed and documented
What you’ll bring
- Senior-level experience in security engineering leadership in federal or IC environments
- Deep expertise in NIST RMF, FISMA, and federal authorization processes
- Demonstrated experience with complex, enterprise-scale IT systems across multiple lifecycle stages
- Active TS clearance with ability to obtain SCI
Technologies
NIST RMF · FISMA · CISSP · Security Assessment and Authorization (SAA) · Continuous Monitoring · Audit Support · Security Architecture · SaaS Security
About Agile Defense
AI-enabled federal contractor delivering digital transformation, cybersecurity, and data/AI analytics to DoD, intelligence, homeland security, and civilian agencies.
Private Late · 2000–5000 people
Source and classification
Internal deployment & tooling · Evidence for this classification:
execution of the DOJ’s Security Assessment and Authorization (SAA) Program in accordance with DOJ policy, the SAA Policy Guide, and NIST Risk Management Framework (RMF) requirements. This role provides expert-level security engineering leadership across complex DOJ IT environments, ensuring systems are securely designed, authorized, monitored, and sustained throughout their lifecycle. The ISSE SME acts as a principal technical advisor to Government leadership, system owners, ISSOs, and engineering teams, driving consistent, high-quality RMF execution and risk-informed decision-making. Key Responsibilities RMF & SAA Program Leadership · Lead, mentor, and supervise security professionals responsible for end-to-end RMF lifecycle execution for DOJ information systems. · Direct and coordinate activities within the Prepare step of RMF, ensuring roles, responsibilities, governance
More from the job description
About Agile Defense At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next. Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests. Requisition #: 1411 Job Tittle: Information System Security Engineer - SME Location: Washington, DC Clearance: TS/ with the ability to obtain an SCI Required Certification: CISSP Role Overview The Information Systems Security Engineer (ISSE) – SME serves as a senior technical authority responsible for leading the implementation and execution of the DOJ’s Security Assessment and Authorization (SAA) Program in accordance with DOJ policy, the SAA Policy Guide, and NIST Risk Management Framework (RMF) requirements. This role provides expert-level security engineering leadership across complex DOJ IT environments, ensuring systems are securely designed, authorized, monitored, and sustained throughout their lifecycle. The ISSE SME acts as a principal technical advisor to Government leadership, system owners, ISSOs, and engineering [... source excerpt omitted ...] y professionals responsible for end-to-end RMF lifecycle execution for DOJ information systems. · Direct and coordinate activities within the Prepare step of RMF, ensuring roles, responsibilities, governance structures, and risk management strategies are clearly defined and maintained. · Guide system categorization efforts to ensure information systems are properly classified based on mission impact, data sensitivity, and regulatory requirements. Security Engineering & Control Implementation · Direct the selection, tailoring, and documentation of security controls aligned with system categorizations, DOJ risk tolerance, and compliance requirements. · Oversee implementation of tec [... source excerpt omitted ...] icies, and industry best practices. · Identify opportunities to improve RMF execution efficiency, consistency, and effectiveness through process refinement and approved tooling. Qualifications & Experience Required · Senior-level experience providing security engineering leadership in federal or IC environments. · Deep expertise in NIST RMF, FISMA, and federal authorization processes. · Demonstrated experience supporting complex, enterprise-scale IT systems across multiple lifecycle stages. · Proven ability to advise leadership on risk-based security decisions. Preferred / Highly Desired · Prior experience supporting DOJ, or Intelligence Community customers. · Experience work
Employer postings · Data from · Sources