> Markdown version of [/jobs/ext/1862934-information-system-security-officer](https://www.wearedevelopers.com/jobs/ext/1862934-information-system-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer - **Company:** Booz Allen Hamilton Inc. - **Location:** Quantico, VA, United States - **Experience:** Expert - **Salary:** $62,000.0 - $141,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Microsoft Windows, Audit Trail, Cloud Engineering, Cyber Security, Computer Engineering, Linux, Information Security Management, Data Streaming, Information Technology, Nessus - **Published:** July 2, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=13fc71aadec500c9 ## About the Role * Experience supporting the development of security plans or packages for Assessment and Authorization ( A & A ) of IT systems Authority to Operate ( ATO ) , including the implementation and assessment of cybersecurity controls * Ability to accurately relate requirements and document requirements within the appropriate security document or within the RMF system, and coordinate with the program, other systems, and security personnel * Ability to create tactics, techniques, procedures, whitepapers, standard operating procedures, workflows, system data flows, and architectural diagrams * Ability to analyze RMF policies * Top Secret clearance * HS diploma or GED and 9+ years of experience with information assurance or cybersecurity, or Bachelor's degree in Information Systems Technology, CS, or Computer Engineering and 5+ years of experience with information assurance or cybersecurity Nice If You Have: * Experience with Xacta or JCAM * Experience reviewing NESSUS or ACAS vulnerability scans and reviewing audit logs, including Security Technical Implementation Guides ( STIGs ) and Information Assurance Vulnerability Alerts ( IAVA ) * Experience providing network or system administration or computer operations * Experience with Windows and Linux systems * Experience supporting the Intelligence Community * Knowledge of cloud architecture and virtualization * Possession of excellent interpersonal and presentation skills * Possession of excellent verbal and written communication skills * TS/SCI clearance with a polygraph * CISSP, CISM, CAP, or CASP+ Certification Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information ; Top Secret clearance is required. ## Description As an Information System Security Officer on our team, you'll work with our federal clients to discover their cyber risks, understand policies , and develop a mitigation plan. You'll get technical, environmental, and personnel details from our clients and SMEs to assess the entire threat landscape. Then, you'll help your team guide your client through a plan of action with presentations, whitepapers, and milestones. You'll work on translating security concepts for your client so they can make the best decisions to secure their mission-critical systems. This is your opportunity to take an active role in information security while growing your skills in cybersecurity and risk mitigation. Work with us as we protect our client's cyber infrastructure. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)