> Markdown version of [/jobs/ext/1339953-information-systems-security-officer-isso-navy](https://www.wearedevelopers.com/jobs/ext/1339953-information-systems-security-officer-isso-navy). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Officer (ISSO) - Navy - **Company:** LMI - **Location:** Tysons, VA, United States - **Salary:** $115,000.0 - $175,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Static Program Analysis, Cyber Security, Identity and Access Management, OAuth, Security Assertion Markup Language (SAML), Software Engineering, SC Clearance, Information Technology, Devsecops, Vulnerability Analysis - **Published:** July 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=926c7a6004a642fa ## About the Role * Bachelor's degree in Computer Science, Cybersecurity, or a related field. * In-depth understanding of DoD RMF and experience managing system security documents, processes, and controls. * Experience supporting ATO packages, compliance reports, and FedRAMP-related requirements. * Strong troubleshooting and issue resolution skills in DoD environments, such as identifying and mitigating vulnerabilities. * Knowledge of secure identity and access management systems (ICAM), and familiarity with protocols like OAuth2 and SAML. * Strong technical writing and editing skills to support contract deliverables. * Ability to support personnel security administration, including onboarding/offboarding and compliance with training mandates. * Active Secret clearance required. Bonus Points For: * Master's degree in Cybersecurity or a related field. * Relevant certifications, such as CISSP, Security+, or similar DoD 8570 qualifications. * Prior experience working with U.S. Navy systems, command-and-control platforms, or logistics programs. * Experience with static and dynamic code analysis tools as part of DevSecOps pipelines. * Familiarity with IL5+ environments and managing secure cloud operations. * AWS certification (e.g., Solutions Architect or Developer Associate). * Knowledge of DoD software development life cycles, including Section 508 compliance or accessibility standards. ## Description * Serve as the primary cybersecurity expert for NADACS, ensuring system compliance with Department of Defense (DoD) Risk Management Framework (RMF) and FedRAMP requirements. * Support the Program Management Office (PMO) by embedding cybersecurity best practices across NADACS, including staffing, contract management, corporate governance, onboarding, and offboarding activities. * Regularly review, document, and update security plans, policies, and procedures to align with evolving DoD compliance mandates. * Track and monitor compliance with client and cybersecurity training, as well as travel requirements for NADACS personnel. * Conduct ongoing security assessments, audits, and vulnerability scans, ensuring compliance with DoD guidelines and identifying risks that require mitigation. * Coordinate with leadership to support the submission and tracking of Authorization to Operate (ATO) packages for NADACS systems. * Review and edit technical deliverables and ensure all cybersecurity artifacts meet client expectations and contractual requirements. * Collaborate with Navy stakeholders, vendors, and PMO leadership to foster strong working relationships and maintain system security across operations. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)