> Markdown version of [/jobs/ext/172770-information-system-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/172770-information-system-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer (ISSO) - **Company:** General Dynamics Information Technology - **Location:** Indianapolis, IN, United States - **Experience:** Expert - **Salary:** $125,800.0 - $170,200.0 - **Contract:** Permanent contract - **Skills:** Xacta, Systems Engineering, Microsoft Azure, Configuration Management, Cyber Security, Information Systems, Information Security Management, Software Vulnerability Management, Privacy Controls, Vulnerability Analysis - **Published:** May 22, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=d6157f243ce7ee7c ## About the Role Do you have experience in Vulnerability management?, Do you have a Bachelor's degree?, * Prior performance in roles such as System Administrator or Network Administrator, with preferential experience in specific ISSO duties. Certifications: CISSP or Security+ any revelant IT or security certification Education: * Bachelor's degree OR industry recognized certifications and 8 years of relevant experience Work Requirements Years of Experience 8 + years of related experience * may vary based on technical training, certification(s), or degree ## Description The Information Systems Security Officer (ISSO) is responsible for ensuring the continuous monitoring of security and privacy controls for one or more information systems managed by or on behalf our Federal civilian agency customer. The ISSO works closely with the Information System Owner, Information System Security Manager, system administrators, and other IT and privacy professionals supporting the system(s). The position shall have the detailed knowledge and expertise required to manage the security aspects of an information system and is assigned responsibility for the day-to-day security monitoring of the system(s), including but not limited to threat analysis, vulnerability assessments and remediation, compliance monitoring and reporting, POAM and Corrective Action Plan management, Interconnection Security Agreements, Security Impact Assessments within the change management process, risk assessments, and SLAs. Security controls and standards are aligned with NIST SP 800-53 rev 5 and the NIST RMF. Requires in-depth knowledge of FISMA, FedRAMP, NIST Special, Risk Management Framework, POAM management, incident response, audit, accreditation processes, and configuration management compliance. Additional activities include: * Develop and/or maintain physical or logical topologies for monitored system(s) in concert with systems engineers * Assist the contract's security manager in meeting their duties and responsibilities, as well as extensive collaboration with customer security personnel * Prepare, review, and update authorization packages and associated artifacts; familiarity with an authorization management system such as JCAM, eMASS, CSAM, Xacta, etc. * Ensure the contract's operations procedures and process documents are properly managed and reviewed/updated at least annually. * Conduct periodic reviews of information systems to ensure compliance with the security authorization package. * Coordinate annual incident management and COOP/DR tabletop exercises; monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly. * Familiarity with Azure tools, particularly Defender and Sentinel are highly desirable. * Ensure audit records are collected, reviewed, and documented (to include any anomalies), in addition to internal and external audit support ## Related Videos - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)