> Markdown version of [/jobs/ext/1489311-information-systems-security-officer-level-2-isso](https://www.wearedevelopers.com/jobs/ext/1489311-information-systems-security-officer-level-2-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Officer Level 2 (ISSO) - **Company:** K2 Technical, LLC - **Location:** Camp Springs, MD, United States - **Salary:** $123,000.0 - $128,000.0 - **Contract:** Permanent contract - **Skills:** Configuration Management, Cyber Security, Information Systems, Firmware, Information Technology - **Published:** July 29, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=4c45bbafe4849756 ## About the Role * 2 - 5 years related experience * Prior performance in roles such as System, Network Administrator or ISSO Education: * Bachelor's degree or equivalent experience (4 years) Certifications: * Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level II or Information Assurance Manager II within 6 months of the date of hire, * Special Access Program: 1 year (Required) License/Certification: * IAT Level II (Required) Security clearance: * Top Secret (Required) ## Description The ISSO is responsible for ensuring the appropriate operational security posture is maintained for an information system working in close collaboration with the ISSM and ISO. The Level 2 ISSO position is a mid-level information system security professional that provides advice and assistance regarding secure configuration and operation of customers IT assets. Level 2 ISSOs apply knowledge and experience with standard information system security concepts, practices, and procedures. This ISSO position will be working with Special Access Programs (SAPs) supporting the US Air Force as well as other Department of Defense (DoD) agencies. Duties shall include: * Assist the ISSM in meeting their duties and responsibilities * Prepare, review, and update authorization packages * Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media * Notify ISSM when changes occur that might affect the authorization determination of the information system(s) * Conduct periodic reviews of information systems to ensure compliance with the security authorization package * Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change * Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly * Ensure all IS security-related documentation is current and accessible to properly authorized individuals * Ensure audit records are collected, reviewed, and documented (to include any anomalies) * Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties * Execute the cyber security portion of the self-inspection, to include provide security and review of all system assessment plans * Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them * Prepare reports on the status of security safeguards applied to computer systems * Perform ISSO duties in support of in-house and external customers * Conduct security impact analysis activities and provide to the ISSM on all configuration management changes to the authorization boundaries ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Microservices? Monoliths? An Annoying Discussion!](https://www.wearedevelopers.com/videos/970-microservices-monoliths-an-annoying-discussion) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer)