> Markdown version of [/jobs/ext/1320668-information-system-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/1320668-information-system-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer (ISSO) - **Company:** KIHOMAC, Inc. - **Location:** Layton, UT, United States (Remote available) - **Experience:** Experienced - **Salary:** $89,000.0 - $105,000.0 - **Contract:** Permanent contract - **Skills:** Testing (Software), Configuration Management, CompTIA Security+, Cyber Security, Information Systems, Information Security Management, Network Planning and Design, System Availability, Information Technology, Vulnerability Analysis - **Published:** July 17, 2026 - **Apply:** https://www.jofdav.com/jobs/58883189-information-system-security-officer-isso ## About the Role * Bachelor's Degree preferred * IAT Level II (Security+, GSEC, CCNA-Security, Certified Systems Security Professional (CISSP), or equivalent certification * Must maintain required cybersecurity certifications in accordance with AFMAN 17-1303. Experience: * 3+ years of experience in a related field in a DoD environment * Experience supporting Risk Management Framework (RMF) activities and cybersecurity compliance * Experience using eMASS for authorization packages, artifact management, and accreditation support * Vulnerability assessment and risk mitigation analysis * STIG/SRG implementation and configuration management * Security audits, assessments, and incident response support * Information system security and operational security posture management * Secure system and network design support in DoD environments * Ability to develop innovative approaches to complex test problems * Strong attention to quality, adequacy, and completeness of test results and conclusions * Ability to deliver thorough, timely, and efficient task execution * Ability to provide clear analysis and recommendations to program test leadership Security: * Must be a US citizen * Must have an active Secret clearance Physical Requirements * Able to occasionally reach with hands and arms * Prolonged periods of computer screen use, while sitting or standing at a desk * Adhere to safety protocols when in work areas requiring use of PPE (e.g. eyewear, gloves, masks, hearing protection, steel toed shoes, etc.) * Able to safely lift and carry up to 20 pounds at a time ## Description Expertise and Functions Ensure all systems and applications meet DoD and Air Force cybersecurity requirements as directed by the Information System Security Manager (ISSM). Protect the confidentiality, integrity, and availability of systems, networks, and data by developing, implementing, and maintaining cybersecurity programs, policies, procedures, and security tools. Support all Risk Management Framework (RMF) authorization and accreditation activities, including configuration, artifact creation, documentation, and compliance reviews. Assist the ISSM in performing risk and vulnerability assessments on planned and operational information systems, identifying security gaps and recommending mitigation actions. Conduct security evaluations, audits, and reviews; support development of system contingency and disaster recovery plans; and promote user compliance with cybersecurity policies and training requirements. Participate in system and network design efforts to ensure appropriate security controls and RMF activities are incorporated from the start. Collect, analyze, and preserve digital evidence related to cybersecurity incidents or policy violations Maintain the operational security posture of assigned IT systems, monitor situational awareness, and implement actions to improve or restore cybersecurity resilience. Enforce Air Force cybersecurity policies, procedures, configuration guidelines (e.g., STIGs/SRGs), and change management processes. Maintain and audit authorized user access documentation and ensure users meet clearance, need-to-know, and annual training requirements. Report security incidents or vulnerabilities to the ISSM and support implementation of corrective or protective measures. Initiate and track exceptions, deviations, or waivers to cybersecurity requirements as needed. Other duties as assigned ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Excellent Software Testing](https://www.wearedevelopers.com/videos/87-excellent-software-testing) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Dirty Tests And How To Clean Them](https://www.wearedevelopers.com/videos/515-dirty-tests-and-how-to-clean-them) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Should senior developers refuse interview coding challenges?](https://www.wearedevelopers.com/magazine/29-should-senior-developers-refuse-interview-coding-challenges) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)