> Markdown version of [/jobs/ext/1453848-senior-information-system-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/1453848-senior-information-system-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information System Security Officer (ISSO) - **Company:** Farfield Systems - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Azure, Cloud Computing, Information Systems, Information Security Management, Log Analysis, Package Development Process, Azure Active Directory, Security Information and Event Management, Software Vulnerability Management, Okta, Microsoft InTune, Azure Security Center, Palo Alto Networks, Tenable Nessus, RSA Archer Platform, Splunk, Qualys, Servicenow, Plan of Action and Milestones, Vulnerability Analysis - **Published:** July 26, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=ef9045d8af0d674e ## About the Role * U.S. citizenship required + Eligible for and capable of obtaining a Tier 4 High-Risk Public Trust background investigation; suitability adjudication must be completed before being granted privileged or administrative system access + Demonstrated hands-on experience performing ISSO functions in a federal RMF environment, with the ability to serve as Lead ISSO when required + Working familiarity with: CSAM (GRC/authorization-package platform), Splunk (SIEM/log analytics), ServiceNow ITSM modules, Tenable Nessus or Qualys vulnerability scanners, Microsoft Defender for Endpoint/Identity/Cloud/M365, Microsoft Intune and BigFix, Microsoft Azure and M365 security and compliance centers, Microsoft Entra ID, Okta, Palo Alto Panorama, and Zscaler administration consoles + Experience with authorization package development, POA&M management, continuous monitoring, vulnerability management, and audit support in a federal cybersecurity context + Ability to independently manage ISSO workloads and deliver quality artifacts under defined timelines + Must maintain all qualifications, certifications, experience levels, and clearance eligibility throughout the period of performance ## Description In this role, you will work alongside the Lead ISSO to support the full RMF system authorization lifecycle across 32 DFC information systems in an environment processing CUI across headquarters and satellite offices. Your day-to-day responsibilities will include developing and maintaining authorization-package artifacts, executing continuous monitoring activities, managing vulnerability findings and POA&Ms in CSAM, supporting security impact assessments for system changes, contributing to audit and assessment evidence production, and participating in DFC governance activities. You will apply deep technical knowledge across the DFC security tool stack - from SIEM and GRC platforms to endpoint security and cloud security controls - to keep DFC systems authorized and audit-ready. These roles are designated Key Personnel. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)