CrawlJobs Logo

Information Systems Security Officer

astrion.us Logo

Astrion

Location Icon

Location:
United States , Albuquerque, New Mexico

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Astrion is seeking an experienced Information Systems Security Officer (ISSO) to support the Air Force Research Laboratory’s (AFRL) Research & Development Integrated Space Experiments (RISE) contract at Kirtland AFB in Albuquerque, NM. As the primary information systems security point of contact, you will lead cybersecurity compliance, risk management, and system authorization efforts across the RISE experiment portfolio. This role is central to ensuring secure, resilient operations for mission-critical ground systems, networks, and space vehicles that enable next-generation space research and experimentation.

Job Responsibility:

  • Lead and maintain RMF Assessment & Authorization (A&A) documentation and processes, including: System Security Plans (SSP) – creation, review, and maintenance
  • Plans of Action & Milestones (POA&Ms)
  • Security Assessment Reports (SARs)
  • Risk Assessment Reports (RARs)
  • Assessment & Authorization (A&A) packages
  • Conduct and document Security Control Assessments, Security Control Testing, and risk analyses in accordance with NIST SP 800-53 and DoDI 8510.01
  • Develop, evaluate, and maintain Contingency Plans and system-level security procedures
  • Apply DISA STIGs, secure baselines, and configuration management controls to classified and unclassified systems
  • Perform and support risk assessments, developing mitigation strategies to address vulnerabilities and improve system posture
  • Support audits, inspections, and readiness assessments for ATO maintenance and continuous monitoring
  • Perform other cybersecurity duties as directed by the RISE task leads or Government Customer

Requirements:

  • Active DoD TS/SCI clearance (required at time of hire)
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or related technical field
  • CISSP (meets DoD 8570/8140 IAM Level II)
  • 5+ years of cybersecurity experience in DoD, IC, or R&D environments, with direct RMF and ATO support responsibilities
  • Demonstrated hands-on experience in: Managing A&A for classified systems (Secret/SCI/SAP)
  • System Security Plan (SSP) development and evaluation
  • NIST-based security control assessments
  • NIST risk assessments and risk analysis
  • Working knowledge of DISA STIGs, vulnerability management, and secure configuration validation
  • Strong understanding of DoDI 8500.01, DoDI 8510.01, CNSSI 1253, and NIST SP 800-37 / 53 frameworks
  • Experience leading or supporting high-visibility customer meetings and engaging with system owners and executive management
  • Excellent written and verbal communication skills
  • capable of preparing clear, professional documentation and reports

Nice to have:

  • Experience supporting AFRL, USSF, or DoD cybersecurity programs
  • Familiarity with cloud security architectures, hybrid environments, and cross-domain solutions
  • Experience developing and sustaining enterprise RMF accreditation packages
  • Knowledge of Program Protection, OPSEC, and classification management
  • Experience supporting Defensive Cyber Operations (DCO) and Continuous Monitoring activities
What we offer:
  • Competitive salaries
  • Continuing education assistance
  • Professional development
  • Multiple healthcare benefits package options
  • 401K with employer matching
  • Competitive time off policy along with a federally recognized holiday schedule

Additional Information:

Job Posted:
January 09, 2026

Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Information Systems Security Officer

Information Systems Security Engineer

Barbaricum is seeking an Information Systems Security Engineer (ISSE) providing ...
Location
Location
United States , Warren, MI
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Recommend security designs and develop architectures for combat ground platforms
  • Integrate cybersecurity tasks within systems engineering processes during system acquisition
  • Provide expertise in Cybersecurity and Information Assurance for combat vehicles
  • Implement Cross Domain Solution (CDS) designs as part of national cybersecurity initiatives
  • Conduct cyber threat assessments and recommend solutions for identified deficiencies
  • Support cybersecurity testing and certification, ensuring system compliance
  • Facilitate certification processes with Army and national cybersecurity offices
  • Translate security controls into system requirements and verify threat mitigations
  • Participate in technical meetings and provide cybersecurity input on C5ISR integration
  • Prepare and present cybersecurity-related materials and reports
Job Responsibility
Job Responsibility
  • Recommend security designs and develop architectures for combat ground platforms
  • Integrate cybersecurity tasks within systems engineering processes during system acquisition
  • Provide expertise in Cybersecurity and Information Assurance for combat vehicles
  • Implement Cross Domain Solution (CDS) designs as part of national cybersecurity initiatives
  • Conduct cyber threat assessments and recommend solutions for identified deficiencies
  • Support cybersecurity testing and certification, ensuring system compliance
  • Facilitate certification processes with Army and national cybersecurity offices
  • Translate security controls into system requirements and verify threat mitigations
  • Participate in technical meetings and provide cybersecurity input on C5ISR integration
  • Prepare and present cybersecurity-related materials and reports
Read More
Arrow Right

Information System Security Officer

Our team members are subject matter experts in both cybersecurity and US Governm...
Location
Location
United States , Washington, DC
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active U.S. DoD Top Secret clearance with SCI eligibility
  • Active DOD 8140 or 8570 Certification (e.g. CISSP or Security+)
  • Active IAT II certification
  • Minimum 2 years experience directly supporting a customer’s ATO/RMF process
  • Proven experience using the eMASS or XACTA accreditation management software systems
  • Be at customer site 5 days per week
  • Ability to travel domestically and internationally 25% of the time if needed
Job Responsibility
Job Responsibility
  • Achieve ATOs for Palantir software across multiple government customers with minimal oversight
  • Partner with engineers to analyze software, interpret security requirements, and plan effective control implementations
  • Provide outstanding customer service, policy expertise, and high-quality documentation
  • Serve as the primary in-person point of contact for one or more U.S. Government customers on cybersecurity and compliance requirements and questions
  • Independently interpret the findings of vulnerability scanning utilities such as ACAS (Tenable Nessus) and SCAP (STIG benchmark) and manage a Plan of Actions and Milestones (POA&M) for remediation of findings
Read More
Arrow Right

Senior Information System Security Officer

We are seeking a highly skilled and mission-driven Senior Information Systems Se...
Location
Location
United States , Clarksburg
Salary
Salary:
Not provided
imts.us Logo
Innovative Management & Technology Services
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related field (or equivalent combination of education and experience)
  • 8+ years of progressive experience in information systems security, with at least 3 years in a senior-level or lead ISSO role supporting federal or state government agencies
  • Strong working knowledge of: NIST 800-53, RMF, FISMA, OWASP Top 10, and SANS Institute standards
  • SAFe Agile environments and integrating security in Agile workflows
  • Networking, Linux/Windows system administration, and secure software development practices
  • Cloud platforms (AWS, Azure, GCP) and related security tools (e.g., AWS Security Hub, Azure Defender)
  • Experience in managing security documentation, participating in audits, and working with compliance frameworks
  • Relevant certifications such as CISSP, CISM, Security+, CEH, or equivalent
  • Active Top Secret clearance is required
  • U.S. Citizenship is required
Job Responsibility
Job Responsibility
  • Lead the implementation and maintenance of system security controls in compliance with federal cybersecurity frameworks, including NIST SP 800-53, RMF, OWASP, DISA STIGs, and Common Criteria
  • Oversee the full lifecycle of Authorization to Operate (ATO) processes, including preparation of System Security Plans (SSPs), Security Assessment Reports (SARs), POA&Ms, and risk assessments
  • Serve as a senior security advisor and liaison to system owners, developers, DevOps engineers, and government stakeholders
  • Participate in technical reviews of system architecture and ensure secure design of virtualized and software-defined infrastructures
  • Support integration of security controls into CI/CD pipelines using DevSecOps principles and tools (e.g., Jenkins, GitLab CI, SonarQube, Snyk)
  • Provide security engineering support for modern cloud environments, including AWS, Azure, or Google Cloud Platform, and assess cloud-native security capabilities
  • Conduct vulnerability assessments, interpret scan results from tools like Tenable, Nessus, Splunk, or Qualys, and lead remediation efforts
  • Mentor junior ISSOs and analysts on security policies, best practices, and tool usage
  • Ensure continuous monitoring activities are aligned with organizational risk tolerance and compliance goals
What we offer
What we offer
  • competitive compensation
  • excellent benefits including tuition reimbursement and employer-contributed 401K
  • referral bonuses
  • Fulltime
Read More
Arrow Right

Information Systems Security Officer

Hoplite Solutions is seeking a self-starting, motivated individual to be an Info...
Location
Location
United States , Fort Meade
Salary
Salary:
Not provided
hoplitesolutions.com Logo
Hoplite Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree plus 5-years of relevant experience or Master's degree plus 3-years of relevant experience
  • An Associate's degree or 18 semesters hours of military coursework/training in a computer-related field plus 7-years of relevant experience or high school diploma/GED plus 9-years of relevant experience may be considered
  • Information Assurance Manager (IAM) Tier 1 certification
  • Active TS/SCI with Polygraph required
  • Experience as an ISSO with emphasis on Defense-in-Depth principles, network, and enterprise security architecture
  • Experience applying the principles of the NIST 800-53 including the procedures in the Risk Management Framework (RMF)
  • Familiarity with STE/STN requirements
Job Responsibility
Job Responsibility
  • Ensure the appropriate operational security posture is maintained for information systems
  • Support continuous monitoring of networks to detect and correct areas of security non-compliance, unmitigated vulnerabilities, and other risks
  • Follow consistent security processes and play a role in the information systems continuous monitoring program
  • Perform regular audits of information systems
  • Assist the information systems security manager in preparing the information system for periodic reaccreditation
  • Responsible for 8-10 System Security Plans (SSPs)
What we offer
What we offer
  • Full coverage for health, dental, and vision insurance for both individuals and families
  • 100% coverage for life insurance, long-term and short-term disability
  • Match up to 7% of employees' contributions to their 401(k) funds
  • Follow the federal holiday calendar for paid holidays
  • 4 weeks of paid time off
  • $5,000 yearly for education assistance or technical training
  • $3,000 yearly toward student loan repayment or a 529 College Savings Plan
  • Fulltime
Read More
Arrow Right

Information Systems Security Officer

Hoplite Solutions is seeking Information Systems Security Officers (ISSO) to joi...
Location
Location
United States , Fort Meade
Salary
Salary:
125000.00 - 195000.00 USD / Year
hoplitesolutions.com Logo
Hoplite Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active TS/SCI with Polygraph
  • A Bachelor’s degree in Computer Science, Information Technology Engineering, or a related field may be substituted for 4 years’ experience and 10 years of related work experience in the field of security authorization
  • DoD 8570.1 compliant IAM Level I certification, such as the CompTIA Security+ certification. A higher-level certification, such as GSLC, CAP, CASP, CISM and/or CISSP will also be accepted
  • A working knowledge of the security authorization processes and procedures as defined in the RMF in NIST SP800-37 and familiarity with the ICD503, CNSSI1253, SP800-53, etc.
  • Knowledge of commercial security tools and their uses
  • Experience with hardware/software security implementations
  • Knowledge of different communication protocols, encryption techniques/tools, and PKI and authorization services
  • Familiarity with security incident management, experience collaborating with Incident Response Teams, and able to provide viable recommendations for the resolution or computer security incidents and vulnerability compliance
  • Experience creating and presenting documentation and management reports
  • Must put forward a professional behavior that enhances productivity and promotes teamwork and cooperation
Job Responsibility
Job Responsibility
  • Maintain the appropriate operational security posture for assigned systems, programs, and/or enclaves
  • Provide guidance and technical expertise on all matters that impact or effect the security of the information system
  • Assist in the development and execution of an enterprise level continuous monitoring program to minimize security risks and ensure compliance with that program on a routine basis
  • Developing, updating, and submitting the System Security Plan and other required documentation that make up the Security Authorization Package
  • Conduct configuration management for security-relevant changes to software, hardware, and firmware
  • Perform and deliver security impact analyses of changes to the system or its environment of operation
  • Assess the effectiveness of system security controls on an ongoing basis to determine system security status
  • Maintain and enforce IT security policies and implementation guidelines for customer systems in diverse operational environments
  • Provides configuration management for security-relevant information system software, hardware, and firmware
What we offer
What we offer
  • 7% employer 401k contribution
  • fully paid healthcare for our employees
  • outstanding training benefits
  • company funded life insurance and short-term disability insurance
  • Fulltime
Read More
Arrow Right

Information Systems Security Officer

The Information Systems Security Officer (ISSO) is responsible for safeguarding ...
Location
Location
United States; Canada , Athens, Georgia; Atlanta, Georgia; Toronto, Ontario
Salary
Salary:
Not provided
docebo.com Logo
Docebo
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of experience in information systems security, with a focus on compliance with NIST and DoD guidelines
  • In-depth knowledge of FedRAMP, NIST SP 800-37, NIST SP 800-53, and DoD 8510.01 policies and procedures
  • Strong technical writing skills for developing SOPs, work instructions, and senior-level briefs
  • Proficient in risk and vulnerability assessment, security infrastructure design, and continuous monitoring
  • Prior experience on obtaining FedRamp ATO
Job Responsibility
Job Responsibility
  • Own the FedRAMP/DoD RMF authorization lifecycle for assigned systems (strategy → authorization → continuous monitoring → ATO maintenance)
  • Define and maintain the FedRAMP program governance model, roles & responsibilities (including Sponsor/Authorizing Official interactions)
  • Create, own, maintain, and version-control the System Security Plan (SSP), Security Assessment Report (SAR), continuous monitoring (ConMon) artifacts, POA&Ms, SSP annexes, and all ATO package deliverables
  • Build and run the ConMon program: define telemetry requirements, dashboards, vulnerability ingestion, thresholds, incident feed, and reporting cadence
  • Triage vulnerabilities, manage POA&Ms (track remediation owners, dates, residual risk), and ensure POA&M closure meets customer and FedRAMP expectations
  • Lead the selection, engagement, and technical coordination with 3PAOs and any external assessors. Ensure assessments, testing, and SAR content are accurate and timely
  • Evaluate security impact for architectural or operational changes (Security Impact Analysis), own risk acceptance processes, and coordinate Risk Acceptance with Sponsors/Authorizing Officials
  • Integrate change control with the ConMon program to ensure authorized/approved changes are documented and do not break control baselines
  • Act as the primary internal liaison across Product, Engineering, DevOps, Security, Sales, Legal, and Marketing for anything impacting the FedRAMP posture and ATO timelines. Drive working groups and weekly syncs
  • Support pre-sales and customer conversations on FedRAMP posture and timelines alongside Sales
What we offer
What we offer
  • Generous Vacation Policy, plus extra floating holidays to use for religious or cultural events that matter to you
  • Employee Share Purchase Plan
  • Career progression/internal mobility opportunities
  • Four employee resource groups to get involved with (the Docebo Women's Alliance, PRIDE, BIDOC, and Green Ambassadors)
  • WeWork partnership and “Work from Anywhere” program
  • Fulltime
Read More
Arrow Right

Senior Information Security Officer

In a world of technology, people make the difference. We believe if we invest in...
Location
Location
United States , Reston
Salary
Salary:
Not provided
anavationllc.com Logo
AnaVation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrates strong experience with IC/DoD customer's Assessment and Authorization (A&A) process (e.g., RMF, NIST800-53, ICD503)
  • Experience in developing and implementing DoD/DIA approved information security controls, procedures and documentation for the operation of standalone classified systems
  • A Bachelor’s Degree from an accredited institute in an area applicable to this position and eight (8) years of relevant experience
  • An additional four (4) years of relevant experience may be substituted for the bachelor’s degree
  • Must presently be 8570 compliant (IAT Level 2 preferred)
  • Experience with one or more commercial government cloud service provider’s system accreditation processes
  • Experience with the Xacta
  • Experience as a Cybersecurity Control Assessor
  • Experience with Ongoing Authorizations and Assessments
  • Experience with C2S Cloud, or DevOpsSec
Job Responsibility
Job Responsibility
  • Provide subject matter expertise and consulting on security related matters for enterprise information system and network architectures, access problems, and implementation of security policies and procedures
  • Assist in overseeing and managing day-to-day operation of Information Systems
  • Optimize system operation and resource utilization and performs system capacity planning/analysis while maintaining the security posture
  • Assist team in DIA’s Authorization and Accreditation (A&A) process using RMF across the design lifecycle for classified systems obtaining and maintaining Interim Authority to Operate (ATO), ATO and Authority to Connect (ATC)
  • Create and process RMF authorization packages from submission to approval/disapproval
  • Develop and maintain IT security documents, including system security plans, risk assessments, Plan of Action and Milestones (POA&M), contingency plans, incident response plans, IT security policies and procedures
  • Provide recommendations regarding remediation and mitigation of identified vulnerabilities by developing plan of action and milestones (POA&Ms)
  • Advise developers on integrating security requirements
  • Demonstrate a strong understanding of Networks, Cloud, and IT system security authorization procedures
What we offer
What we offer
  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance
  • Fulltime
Read More
Arrow Right

Senior Information System Security Officer

Come join our growing team and make a difference every day! AnaVation is seeking...
Location
Location
United States , Washington
Salary
Salary:
Not provided
anavationllc.com Logo
AnaVation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Cybersecurity, Information Technology, or a related field
  • Minimum of six (6) years of hands-on experience in cybersecurity and expert knowledge of Governance Risk and Compliance
  • At least three (3) years supporting and maintaining system authorizations for complex systems
  • Demonstrated expertise in the Risk Management Framework (RMF), NIST SP 800-53 Rev 5, and related federal cybersecurity policies
  • Extensive experience managing ATO/ATT processes, security control assessments, POA&M lifecycle, vulnerability management, and audit response
  • Strong leadership experience mentoring junior and mid-level ISSOs and interfacing with senior government leadership
  • Must possess at least two of the following active certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Governance, Risk and Compliance (CGRC), Certified in Risk and Information Systems Control (CRISC), Information Systems Security Management Professional (ISSMP), Certified Information Systems Auditor (CISA), Certified Cloud Security Professional (CCSP), Certified Ethical Hacker (CEH), CompTIA Security+, Project Management Professional (PMP)
  • Proficiency in tools such as JCAM, Tenable Nessus, BigFix and Splunk
  • Ability to develop, review, and present high-level security documentation and briefings
  • Strong understanding of cloud platforms (IaaS, PaaS, SaaS), supply chain risk management, and incident response procedures
Job Responsibility
Job Responsibility
  • Support the maintenance of security documentation and support system ATO and ATT efforts
  • Conduct security control assessments and provide recommendations for remediation
  • Perform biweekly audit log and vulnerability scan reviews and track POA&M items
  • Collaborate with system owners and technical teams to manage risk and respond to incident
  • Support Ongoing Authorization (OA) and continuous monitoring activities
  • Prepare and brief senior leadership on system security posture and compliance metric
  • Ensure alignment with cybersecurity policies and NIST SP 800-53, 800-37, and 800-137
What we offer
What we offer
  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance
  • Fulltime
Read More
Arrow Right