Information Systems Security Engineer
Job description
Information Systems Security Engineer at Spear Ai.
About the role
The Information Systems Security Engineer at Spear Ai serves as the primary hands-on technical authority responsible for designing, constructing, and integrating security directly into all information systems that enable program operations. This role requires the individual to act as the critical translator between Intelligence Community security mandates and functional, engineered solutions that are rigorously tested and validated. The successful hire will own the full lifecycle of security engineering, ensuring that security considerations are foundational rather than reactive additions to the system architecture. This position operates at the intersection of advanced systems engineering and national security mission requirements, demanding precision and a proactive security mindset. The individual will work closely with program leadership and technical teams to ensure that all implemented controls directly support operational mission success. This role is pivotal in maintaining the security posture of systems that handle sensitive defense and intelligence data. The engineer will be expected to exercise deep technical judgment and ownership over the security frameworks that protect critical national security assets.
Key facts
What you'll do
- Design and engineer security architectures for program information systems, ensuring security is built in from the ground up rather than bolted on through iterative analysis and system modeling.
- Translate complex RMF, ICD 503, CNSSI 1253, and NIST SP 800-53 requirements into implemented, testable technical controls that are verified across multiple classified information systems and environments.
- Develop, maintain, and curate the comprehensive body of evidence necessary for ATO packages, including system security plans, control implementation details, and detailed test results in active collaboration with the Information System Security Manager and designated Information System Security Officers.
- Harden systems to stringent DISA STIG configurations and Intelligence Community baseline requirements while running, analyzing, and driving remediation for vulnerability scans conducted using tools such as ACAS and Nessus in accordance with SCAP standards.
- Integrate robust security practices directly into the development pipeline through DevSecOps initiatives, advising engineers on secure design principles, secure coding practices, and early control implementation within the system development life cycle.
- Engineer, tune, and validate continuous monitoring, auditing, and logging capabilities specifically for classified systems to ensure real-time awareness of security posture and compliance status.
- Assess and document the security impacts of all proposed system changes, actively supporting configuration management boards and authorizing officials through detailed technical analysis and risk assessment.
- Engineer and enhance security controls for AI and machine learning pipelines and data platforms, addressing emerging and sophisticated threats that are unique to model training workflows, data ingestion channels, and edge deployment scenarios.
- Provide technical support for incident response activities, including deep technical analysis of events, execution of containment engineering procedures, and implementation of thorough remediation actions to restore secure operations.
- Coordinate closely with Information System Security Managers, Information System Security Officers, system owners, and government security stakeholders to ensure that all engineering decisions remain tightly aligned with evolving mission requirements and applicable regulatory directives.
Requirements
- Possess an active Top Secret security clearance with a SCI eligibility determination, and demonstrate the ability to successfully obtain and maintain a Polygraph investigation as required by the position.
- Demonstrate hands-on, practical experience implementing the full NIST Risk Management Framework, ICD 503, CNSSI 1253, and NIST SP 800-53 controls within classified operational environments using established security processes.
- Show a proven track record of engineering systems through the complete Authorization to Operate process, including the development of security documentation and the execution of validation activities rather than solely focusing on documentation creation.
- Exhibit a strong background in system hardening techniques, proactive vulnerability management, and the effective use of security tooling including DISA STIGs, SCAP frameworks, and vulnerability assessment platforms such as ACAS and Nessus on JWICS and similar classified networks.
- Maintain a deep understanding of secure architecture design principles applicable to complex cloud environments, traditional on-premises infrastructures, and secure cross-domain solutions that connect multiple security domains.
- Hold current compliance with DoD 8570 and DoD 8140 standards, specifically at the IASAE Level II certification level, with a preference for candidates maintaining Level III certification.
- Demonstrate the ability to work effectively in a cleared defense contracting environment, adhering to strict security protocols and maintaining the highest levels of operational security awareness.
- Show commitment to continuous learning and adaptation in the face of evolving cybersecurity threats, regulatory changes, and emerging technologies within the defense and intelligence sectors.
Nice to have
- Hands-on experience securing complex AI and machine learning systems and associated data pipelines within defense environments.
- Practical experience with security engineering within AWS GovCloud or Microsoft Azure Government cloud platforms.
- Direct experience with DevSecOps tooling ecosystems, including container security scanning, pipeline security validation, and Infrastructure as Code security controls.
- Prior experience integrating solutions with Cross Domain Solutions and managing data flow between security enclaves.
- Background working within Military Intelligence communities or the broader Intelligence Community framework.
Practical notes
This role operates under a full-time employment arrangement requiring presence at the Bolling AFB location. Travel requirements are determined by mission needs and program directives as defined by the governing contract instruments. Candidates must meet all U.S. government security eligibility requirements, including the ability to obtain and maintain a Top Secret clearance with SCI and successfully pass a Polygraph examination. This position is subject to the operational hours and timelines dictated by the supporting contract and customer mission requirements.
Why work with us
- We ship - We don't work on 18-month projects that are irrelevant before they're even finished.
- Our work has impact - We build products that are deployed to U.S. submarines and integrate with the sonobuoys we manufacture.
- We're growing responsibly - We have the resources to hire a lot more people, but we don't want to build a massive team of people who don't share our values.
- We're profitable - We aren't burning through cash trying to make the business work. But we also have investors who believe in us and are committed to our success.
- We care about doing great work - You don't need permission to sweat the details here.
- We don't take ourselves too seriously - We're building products that make the world safer. But we don't let that get to our heads.
What we offer
- Unlimited PTO - Take the time you need to recharge and maintain work-life balance.
- Dedicated Sick Time - Your health and well-being come first.
- Comprehensive Health & Benefits - Medical, dental, and vision coverage to keep you and your family protected.
- 11 Paid Holidays - Enjoy time off throughout the year to celebrate and spend time with loved ones.
- Professional Development - Educational opportunities and resources to help you grow your skills and advance your career within a supportive and challenging environment.
- A mission-driven environment where your technical work directly contributes to national defense and maritime security capabilities.
- Collaborative team culture with leadership that values individual contribution and direct impact.
- Opportunity to work on cutting-edge sensor and data processing technologies used in real-world defense applications.
If this sounds like you and you are ready to contribute to meaningful national security work, we encourage you to apply through our official channels with a detailed resume and a summary of your relevant cleared experience.