> Markdown version of [/jobs/ext/1862961-information-system-security-officer](https://www.wearedevelopers.com/jobs/ext/1862961-information-system-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer - **Company:** SEACORP, LLC - **Location:** Middletown, RI, United States - **Experience:** Starter - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Configuration Management, CompTIA Security+, Cyber Security, Information Systems, Linux, Information Security Management, Intrusion Detection Systems, Network Security, Security Content Automation Protocol, Security Software, Security Information and Event Management, Firewalls (Computer Science), Information Technology, National Industrial Security Program Operating Manual (NISPOM), Operating System Security - **Published:** July 2, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=92ec293115b7f435 ## About the Role Education: Bachelor's degree in computer science, Information Technology, Cybersecurity, Engineering, or related technical field Or IAT Level 2 or 3 cert, per the DoD 8140 Directive with comparable work experience. Approved certifications include: CompTIA Security+, GSEC, SSCP, CCNA Security, CySA+. Experience: Minimum 1-3 years of experience in information security, system administration, or related cybersecurity roles., * Hands-on experience with Risk Management Framework (RMF) processes and security control implementation via SCAP and STIG. * Experience with government compliance requirements, particularly in DoD or federal environments preferred. * Sufficient experience and technical competence commensurate with the complexity of the systems and networks being managed. * Must possess or achieve within 6 months of higher IAT Level 2 certification (CompTIA Security+, GSEC, SSCP, CCNA Security, CySA+). Ideal Skills and Experience: * Proficiency with Windows, Linux, and various vendor operating systems security requirements. * Hands-on experience with industry standard Information Assurance tools and security software (SCAP, STIG, CrowdStrike, Darktrace, etc.) * Understanding of network security concepts, firewalls, intrusion detection systems, and security monitoring tools. * Working knowledge of NIST Risk Management Framework processes and DCSA Assessment and Authorization procedures. * NIST Standards: Comprehensive understanding of NIST 100-1, NIST 800-53, NIST 800-37, NIST 800-171, CMMC and related cybersecurity frameworks. * Familiarity with DCSA Assessment and Authorization Guide and NISP requirements. * Federal Regulations: Knowledge of FISMA, NISPOM, and federal cybersecurity requirements. * Privacy Frameworks: Understanding of data protection regulations including GDPR, FERPA, HIPAA. ## Description Job Summary: SEACORP is currently seeking a qualified Information System Security Officer (ISSO) to join the IT Security Team and ensure the security and integrity of our information systems. The candidate will be responsible for ensuring the appropriate operational security posture is maintained for a classified information system, and enterprise network security. The ISSO serves as a critical component of the organization's cybersecurity framework, working closely with ISSM, system owners, and various stakeholders to protect classified and sensitive information assets while ensuring compliance with federal regulations including the Risk Management Framework (RMF), NIST standards, and FISMA requirements., * Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the approved security plan. * Verify the implementation of delegated aspects of the system security program under ISSM direction. * Ensure all proper account management documentation is completed prior to adding and deleting system accounts. * Verify all system security documentation is current and accessible to properly authorized individuals. * Conduct periodic assessments of authorized systems and provide the ISSM with corrective actions for all identified findings and vulnerabilities. * Ensure audit records are collected and analyzed in accordance with the security plan requirements. * Execute the continuous monitoring strategy to maintain ongoing awareness of security posture. * Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly. * Report all security-related incidents to the ISSM in accordance with established procedures. * Formally notify the ISSM of any changes to a system that could affect the authorization status. * Identify and report system vulnerabilities while assisting with implementation of countermeasures. * Ensure user activity monitoring data is analyzed, stored, and protected in accordance with the Insider Threat Program Senior Official (ITPSO) policies and procedures. * Complete required training identified in the ISSM Required Training. * Serve as a member of the Configuration Control Board. * Serve as member of Enterprise Security Team. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)