> Markdown version of [/jobs/ext/1753710-information-system-security-officer-isso-vulnerability-manag](https://www.wearedevelopers.com/jobs/ext/1753710-information-system-security-officer-isso-vulnerability-manag). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer (ISSO) - Vulnerability Manag - **Company:** JCS Solutions LLC - **Location:** Andrews, MD, United States - **Salary:** $100,000.0 - $114,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), CompTIA Security+, Cyber Security, System Configuration, Information Security Management, Information Technology Operations, Python (Programming Language), Windows PowerShell, Software Vulnerability Management, Scripting, Enterprise Software Applications, Information Technology, Nessus, GXP, Plan of Action and Milestones, Vulnerability Analysis - **Published:** July 20, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9042910/information-system-security-officer-isso-vulnerability-manag ## About the Role * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Additional years of relevant experience and certifications may be considered in lieu of a degree. * 3+ years of cybersecurity, information assurance, vulnerability management, or system administration experience. * At least 1 year of hands-on experience with ACAS, Tenable, or related vulnerability management platforms. * CompTIA Security+ CE or higher DoD 8570/8140-compliant certification meeting current ISSO qualification requirements. * Experience managing POA&Ms, vulnerability remediation efforts, and cybersecurity compliance documentation. * Working knowledge of DISA STIGs, vulnerability severity classifications, risk assessment methodologies, and remediation strategies. * Familiarity with NIST SP 800-53, the Risk Management Framework (RMF), and Air Force cybersecurity policies, including AFMAN 17-130. * Experience analyzing vulnerability scan results and identifying CAT I, II, and III findings, false positives, and configuration issues. * Strong understanding of cybersecurity principles, enterprise systems, networks, and secure configuration management. * Exceptional attention to detail, documentation skills, and the ability to interpret technical vulnerability data and communicate recommendations effectively. * Strong interpersonal and collaboration skills with the ability to work across technical and non-technical teams. * Experience supporting U.S. Air Force, DISA, AFNCR, or other Department of Defense mission environments. * Familiarity with ACAS, DISPATCH, EvaluateSTIG, STIG Manager, and related vulnerability management and compliance tools. * Experience supporting CCRI, CORA, Command Cyber Readiness Inspections, or similar cybersecurity assessment and inspection activities. * Proven success coordinating enterprise vulnerability remediation campaigns and driving closure of high-priority findings. * Ability to communicate risk-based recommendations to technical teams, leadership, and non-technical stakeholders. * Experience developing executive-level dashboards, cybersecurity metrics, and compliance reporting. * Knowledge of automation and scripting technologies such as PowerShell, Python, or Nessus APIs to improve operational efficiency and reporting capabilities. * Advanced cybersecurity certifications such as CISSP, CASP+, CISM, or equivalent credentials. * A proactive, solutions-oriented mindset with a passion for strengthening cybersecurity posture and supporting mission-critical operations. * Experience working in fast-paced environments supporting high-visibility customers where operational readin ess and security are paramount. ## Description Grow, innovate, and generate progress: Harness your expertise to solve challenges and celebrate success! JCS Solutions is seeking an to support the Air Force National Capital Region (AFNCR) IT Services Program. This program provides mission-critical IT support for Headquarters Air Force (HAF), Air Force District of Washington (AFDW), the Office of the Secretary of Defense (OSD), the Joint Chiefs of Staff, and other Air Force organizations throughout the National Capital Region. The ISSO - Vulnerability Management will play a critical role in maintaining the cybersecurity posture of enterprise systems supporting national defense missions. This position is responsible for managing vulnerability assessment and remediation efforts, supporting Risk Management Framework (RMF) compliance activities, and ensuring adherence to Department of Defense (DoD), Air Force, and cybersecurity regulatory requirements. The successful candidate will thrive in a fast-paced, mission-focused environment where secure, reliable, and compliant IT operations are essential to mission success., * Manage the Plan of Action and Milestones (POA&M) process for cybersecurity vulnerabilities and DISA STIG findings. * Analyze vulnerability scan results to identify CAT I, CAT II, and CAT III findings, false positives, and system configuration issues. * Track, document, and validate remediation activities, POA&Ms, risk acceptances, and exceptions in alignment with RMF requirements. * Review and interpret DISA STIG checklists and work closely with system administrators and engineers to implement and maintain secure configurations. * Prepare and deliver vulnerability reports, compliance dashboards, and cybersecurity metrics for leadership, inspection readiness, and compliance reviews, including CCRI and CORA activities. * Support the development and maintenance of ACAS asset groupings, scan zones, credentialed scanning configurations, and scan tuning strategies. * Maintain data hygiene within ACAS, ensuring consistent tagging, grouping, and reporting structures. * Collaborate with Queue Managers, ISSOs, system administrators, and engineering teams to prioritize, track, and remediate critical vulnerabilities. * Support continuous monitoring initiatives and maintain compliance with RMF, NIST, DoD, and Air Force cybersecurity requirements. * Assist with cybersecurity audits, inspections, accreditation activities, and security control assessments. * Develop and maintain documentation supporting vulnerability management, compliance efforts, and system security posture. ## Related Videos - [Blueprints for Success: Steering a Global Data & AI Architecture](https://www.wearedevelopers.com/videos/1577-blueprints-for-success-steering-a-global-data-ai-architecture) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [Oops! Stories of supply chain shenanigans](https://www.wearedevelopers.com/videos/245-oops-stories-of-supply-chain-shenanigans) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)