> Markdown version of [/jobs/ext/2044697-ninformation-systems-security-officer](https://www.wearedevelopers.com/jobs/ext/2044697-ninformation-systems-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # nInformation Systems Security Officer - **Company:** Nabout Leidos - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $107,900.0 - $195,050.0 - **Contract:** Permanent contract - **Skills:** Authentication Protocols, Configuration Management, Communications Protocols, Cyber Security, Information Systems, Firmware, Identity and Access Management, Information Security Management, Software Requirements Analysis, System Software, Network Switches, Network Routers, Software Security, Firewalls (Computer Science), Information Technology, Network Server, User Identification, Servicenow - **Published:** August 13, 2026 - **Apply:** https://jobs.military.com/career/306537/information-systems-security-officer-isso-maryland-md-laurel ## About the Role * Bachelor's degree in Computer Science or a related discipline from an accredited college or university. In lieu of degree, 4 years of direct experience as an ISSO may be substituted.\n * Ten (10) years of experience as an ISSO on programs and contracts of similar scope, type, and complexity.\n * Experience in at least two (2) of the following areas:\n \n + Current security tools\n + Hardware/software security implementation\n + Communication protocols\n + Encryption techniques and tools\n \n * DoD 8570 Information Assurance Management (IAM) Level I certification or higher.\n * Demonstrated experience with information-system security policies, standards, methodologies, security documentation, and day-to-day security operations.\n * Experience assessing system changes and their potential security impact.\n * Experience supporting security authorization, certification and accreditation, and information-assurance activities.\n * Active TS/SCI clearance with Polygraph.\n * Ability to work full-time on site in a secure environment.\n ## Description * Plan and coordinate IT security programs and policies and help develop system security policies that ensure compliance.\n * Support the Information System Security Manager (ISSM) in maintaining the appropriate operational Information Assurance (IA) posture for systems, programs, and enclaves.\n * Evaluate security solutions to ensure they meet requirements for processing classified information.\n * Perform vulnerability and risk-assessment analysis in support of certification and accreditation activities.\n * Develop, maintain, and update security documentation, including System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, System Requirements Traceability Matrices (SRTMs), and other required IA documentation.\n * Develop and maintain C&A documentation in accordance with applicable ODNI and DoD policies and support obtaining C&A for information systems under your purview.\n * Support security-authorization activities in accordance with the National Institute of Standards and Technology Risk Management Framework (NIST RMF).\n * Manage and control system changes, evaluate their security impact, and provide Configuration Management (CM) for security-relevant information-system software, hardware, and firmware.\n * Maintain records for workstations, servers, routers, firewalls, intelligent hubs, network switches, and other system components, including system upgrades.\n * Support day-to-day security operations and administer user identification and authentication mechanisms for Information Systems.\n * Support customer transition to ServiceNow (SNOW)\n * Serve as the Approval Authority for Information Systems under your control, as required by the program.\n ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Kubernetes Security - Challenge and Opportunity](https://www.wearedevelopers.com/videos/412-kubernetes-security-challenge-and-opportunity) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [tRPC: API schemas are pure overhead](https://www.wearedevelopers.com/videos/796-trpc-api-schemas-are-pure-overhead) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)