> Markdown version of [/jobs/ext/1458013-information-system-security-officer](https://www.wearedevelopers.com/jobs/ext/1458013-information-system-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer - **Company:** Jacobs Engineering Group Inc. - **Location:** Chantilly, VA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** CompTIA Security+, Cyber Security, Information Systems, Computer Networks, Information Leak Prevention, Firmware, Information Management, Information Security Management, Software Vulnerability Management, Information Security Management System, Information Technology, Nessus, Servicenow, Plan of Action and Milestones - **Published:** July 27, 2026 - **Apply:** https://www.juju.com/job/00000000gjzhks ## About the Role Jacobs is looking for a Information System Security Officer to join our Sensor Processing Team. Candidates must have a strong Information Assurance/Security background and be capable of coming up to speed on all ICD 503 computing security responsibilities and IA actions. Candidates must have good communication and problem-solving skills, and the ability to work both independently and collaboratively in a team environment as required., * Current CISSP, CompTIA Security+ CE cert, OR CASP+ CE certification * Experience with ServiceNow, and Security Center (SC) * Experience with HBSS, EVSS, AND/OR EITA bundle onboarding functions and corresponding tool suite * Possess skills including organizing, scheduling, conducting, and coordinating work assignments to meet project milestones or established completion dates. * Self-starter who is proactive, efficient with their time, and able to prioritize tasks on a daily basis. * Experience with computer networks, applications, processes and accesses. * Be customer-focused and possess the ability to identify issues, analyze, and interpret data and develop solutions to a variety of moderately complex technical problems. * Demonstrate strong interpersonal skills to effectively interface with all levels of employees and be able to represent the organization as a knowledgeable resource. * Thorough working knowledge of all applicable NRO, IC, DoD policies, procedures and operating instructions related to Information Technology, Information Assurance, Information Management (IT/IA/IM). * Top Secret/SCI security clearance with a CI Poly Bachelor's Degree and 8 years of work experience or equivalent such as Associate's and 12 years or master's degree and 5 years' experience. ## Description Perform all ISSO related duties as required by ICD 503, applicable NRO, IC, DoD policies, procedures and operating instructions related to information Technology, Information Assurance, Information Management (IT/IA/IM) * Manage the day-to-day system security including physical and environmental protection, incident handling, and information system security training and awareness. * Maintain the system security plan (SSP), and other related documents, following NRO, IC, and DoD applicable policies, procedures, and templates. * Maintain and update asset record in SNOW * Perform continuous monitoring (ConMon) and periodic self-inspections of information systems to ensure security compliance * Review Nessus security scans, communicate vulnerabilities to technical stakeholders, and perform remediation * Support customer responses to ongoing information system audits and reviews in accordance with established schedules * Ensure change control requirements are documented and tracked * Monitor and track status of applicable patches including IA Vulnerability Alerts (IAVA), IA Vulnerability Bulletins (IAVB) and Technical Advisories (IA) for the information system. * Conduct periodic reviews of Privileged User (PU) accounts (Developer, Admin, etc.) * Assist in the creation of new policies/procedures as needed * Perform Configuration and Change Management for the security relevant IS software, hardware, and firmware, Event Management, Vulnerability Management, Security Incident Management, POA&M Management, Reauthorization, and Decommissioning of IT asset environments * Maintain Approval to Operate (ATO), including the resolution of any Plans of Action & Milestones (POA&M) documents * Maintain and validate account and vulnerability management * Control, label, virus scan, and appropriately transfer data (uploading/downloading) between various information systems as required and Portable Electronic Device (PED) registrations and tracking. * Provide security design guidance and analysis to the project team throughout the RMF process * Perform reviews of technical security assessments of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations, and recommended mitigation strategies * Develop and maintain a Data Loss Prevention process to investigate, track, and mitigate security incidents. * Responsible for implementing and maintaining security services tools within the Risk Management Framework (RMF). * Maintain effective communication with the ISO, AO or DAO, ISSE, SCA ISSM and CPSO * Provide briefings on the security posture and compliance status of assigned system(s) to Security Management ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) - [Agent Smith Gets Hardware: Autonomous IoT Hacking From Debug Port to Cloud API](https://www.wearedevelopers.com/videos/100258-agent-smith-gets-hardware-autonomous-iot-hacking-from-debug-port-to-cloud-api) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know)