> Markdown version of [/jobs/ext/1469809-information-system-security-officer](https://www.wearedevelopers.com/jobs/ext/1469809-information-system-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer - **Company:** Dark Wolf Solutions - **Location:** Chantilly, VA, United States - **Experience:** Expert - **Salary:** $140,000.0 - $160,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Cyber Security, Information Systems, Information Security Management, Security Information and Event Management, Google Cloud, Cloud Platform System, Information Technology, Splunk, Devsecops, Plan of Action and Milestones, Vulnerability Analysis - **Published:** July 28, 2026 - **Apply:** https://www.dice.com/job-detail/215fbd3e-63ff-43f3-8615-423a7106170b ## About the Role * Experience leading a team of Cyber individuals * 5+ years of relevant Cyber experience * Experience assessing technical environments and translating implemented security controls into clear NIST SP 800-53 control narratives and supporting Authorization to Operate (ATO) documentation * Cloud Platform familiarity with at least one service offering from AWS, Azure, or Google Google Cloud Platform * Experience as an RMF Engineer, ISSO, and/or information assurance engineer * Hands-on eMASS or Xacta experience completing full system lifecycle activities * Experience with NIST 800-53 Rev5 and CNSSI 1253 * Experience with Air Force risk management policies/procedures, to include DODI 8510.01, AFI 17-101, Fast Track ATO Handbook & AF Continuous ATO Playbook * Ability to clearly articulate ideas for executive level consumption * Ability to use prior experience and knowledge to address new situations; especially during interactions with clients * B.A. or B.S. Information Security, Computer Science or related discipline; or in lieu of degree, 3 years of equivalent industry experience * ship and have a TS/SCI security clearance Desired Qualifications: * Knowledgeable with the Air Force A&A process and requirements * Knowledge of SIEM tools such as Splunk/Elastic * Knowledgeable with DoD DevSecOps Fundamentals Playbook * Experience with DoD Fast Track ATO Handbook & Air Force Continuous ATO Playbook methodologies ## Description Dark Wolf is seeking an Information System Security Officer (ISSO) to lead a collaborative team to develop, manage, and maintain information system security Assessment and Authorization (A&A) packages. This could include supporting the planning, executing, and monitoring of the seven step RMF process for our customers. This role is essential in providing significant impacts to the program, helping teams navigate ATO, cATO, and deployment processes efficiently while maintaining high standards of security and compliance. This position will be based out of Chantilly,VA with hybrid flexible opportunities. Additional responsibilities include: * Creating, managing, and maintaining A&A packages to include System Security Plans (SSPs), Security Control Traceability Matrices (SCTMs), Plans of Action and Milestones (POA&Ms), and other artifacts. * Supporting the entry and maintenance of data into information system security systems of record, such as eMASS or Xacta. * Driving cybersecurity activities through all aspects of the systems' life cycle from planning, development, and deployment while ensuring proper hardening and security analysis is enforced to protect the Confidentiality-Integrity-Availability (C-I-A) of the environment. * Familiar with briefing ISSMs/SCAs/AOs to provide updates on the Cyber posture of the information system. * Manage and implement Continuous Monitoring activities, consisting of periodical reviews of controls, audits, vulnerability scans, and penetration test reports. * POA&M development to compile and track system vulnerabilities, mitigation efforts, remediation and closures; ability to provide fix actions and compensating controls. * Performs POA&M maintenance to include reviews and stakeholder briefings, as necessary. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)