> Markdown version of [/jobs/ext/1958061-information-system-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/1958061-information-system-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer (ISSO) - **Company:** Barbaricum Llc - **Location:** Washington, DC, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Xacta, Amazon Web Services, Systems Engineering, Information Security Management, Security Content Automation Protocol, Software Deployment, Software Engineering, Cloud Platform System, Information Technology, Tenable Nessus, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 6, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9080549/information-system-security-officer-isso ## About the Role * Proficiency in interpreting and communicating government policy to a diverse audience. * Ability to multitask under pressure, using time management and organizational skills. * Specific experience working in both traditional on premises environments and cloud environments such as Amazon Web Services (AWS). * Experience accrediting IT systems against U.S. Government standards including NIST SP 800-53, CNSSI 1253, and the DISA STIGs, using frameworks like DOD RMF, ICD 503, or DIACAP. * Initiative in proactively identifying problems before they arise and creativity in proposing solutions. What We Require * Active U.S. DoD Top Secret clearance with SCI eligibility. * Active DOD 8140 or 8570 Certification (e.g. CISSP or Security+). * Active IAT II certification. * Minimum 2 years experience directly supporting a customer's ATO/RMF process. * Proven experience using the eMASS or XACTA accreditation management software systems. * Be at customer site 5 days per week. * Ability to travel domestically and internationally 25% of the time if needed ## Description Our team members are subject matter experts in both cybersecurity and US Government policy. We're excited about generating creative solutions to ambiguous security requirements. Our mission is deploying software in support of our customers' most critical needs as quickly as possible while upholding the government's trust. We achieve this through close consultation with stakeholders and direct ownership of the Authorization to Operate (ATO) process. We're seeking dedicated and motivated individuals with Systems Administration, Software Development, or Systems Engineering backgrounds to join our team as an Information System Security Officer (ISSO). You will collaborate with other Palantir engineers to ensure security policies and settings are in place, build standardized security documentation, and generate evidence of compliance once settings have been applied. Core Responsibilities * Achieve ATOs for Palantir software across multiple government customers with minimal oversight. * Partner with engineers to analyze software, interpret security requirements, and plan effective control implementations. * Provide outstanding customer service, policy expertise, and high-quality documentation. * Serve as the primary in-person point of contact for one or more U.S. Government customers on cybersecurity and compliance requirements and questions. * Independently interpret the findings of vulnerability scanning utilities such as ACAS (Tenable Nessus) and SCAP (STIG benchmark) and manage a Plan of Actions and Milestones (POA&M) for remediation of findings. ## Related Videos - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Containers in the cloud - State of the Art in 2022](https://www.wearedevelopers.com/videos/410-containers-in-the-cloud-state-of-the-art-in-2022) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Reliable scalability: How Amazon.com scales on AWS](https://www.wearedevelopers.com/videos/983-reliable-scalability-how-amazon-com-scales-on-aws) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [From 0 to 1.000.000: How to build a serverless raffle service for hyperscale](https://www.wearedevelopers.com/videos/793-from-0-to-1-000-000-how-to-build-a-serverless-raffle-service-for-hyperscale) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline)