> Markdown version of [/jobs/ext/2054961-information-system-security-officer](https://www.wearedevelopers.com/jobs/ext/2054961-information-system-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer - **Company:** Applied Information Sciences, Inc. - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $101,000.0 - $152,000.0 - **Contract:** Permanent contract - **Skills:** Software Documentation, Cyber Security, Information Security Management, Nmap, HP WebInspect, Information Technology, Tenable Nessus, Splunk, Service Stack - **Published:** August 14, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88029080/1 ## About the Role * Minimum 9+ years of work experience in computer science or cybersecurity related field. * Minimum 7+ years of ISSO or ISS Engineer experience in a cleared environment * Bachelor's degree in Cybersecurity, Computer Science, IT, or related field. An additional 4 years of experience will be considered in lieu of a degree. * DoD 8570/IAT Level III certification or equivalent (e.g. Security+) * Hands-on experience with tools such as: + Tenable Nessus / Security Center + Splunk + IBM Guardium + HP WebInspect + NMAP or similar tools * Strong understanding of: + RMF (Risk Management Framework) + NIST 800-53 security controls + System accreditation processes * Active Top Secret clearance. Preferred Qualifications * Experience supporting multiple systems through the ATO lifecycle * Familiarity with federal agency compliance environments (DoD, IC, Civilian) ## Description At AIS, we are dedicated to providing our employees with diverse opportunities to grow their careers while supporting a variety of impactful projects. For this position, we are seeking a talented individual to join AIS as a Lead Security Engineer. * Core Knowledge & Skills: Develops strategic security plans, applies advanced cryptography, manages security programs, and designs secure cloud architectures. * Work & Complexity: Leads strategic projects, integrates security into business processes, develops risk management strategies, and ensures compliance. * Quality & Independence: Delivers strategic projects, develops innovative solutions, maintains high standards, and ensures stakeholder satisfaction. * Teamwork & Communication: Leads and mentors teams, aligns efforts with organizational goals, manages performance, and develops training programs. * Consulting & Engagement: Provides high-level consulting, leads innovation initiatives, develops technology roadmaps, and manages vendor contracts. As your initial project assignment, you will support the unique needs of our client as a Information System Security Officer. Position Summary The Information System Security Officer (ISSO) is responsible for executing security compliance activities across assigned systems, ensuring adherence to RMF requirements, and supporting authorization efforts. This role requires independent execution of security control assessments, system documentation, and continuous monitoring activities. This is a proposal-based position; employment is contingent upon contract award and funding availability. Key Responsibilities * Perform documentation, testing, and ongoing assessment of security controls * Ensure complete system scoping, including all assets, components, and technology stacks * Clearly document and articulate control implementation in SSPs and related artifacts * Lead activities supporting system ATOs and reauthorizations * Ensure proper system lifecycle management, including decommissioning activities * Maintain consistent and compliant continuous monitoring practices * Coordinate with ISSMs, engineers, and system owners to resolve security findings ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)