> Markdown version of [/jobs/ext/2072954-information-systems-security-officer-isso-master](https://www.wearedevelopers.com/jobs/ext/2072954-information-systems-security-officer-isso-master). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Officer (ISSO), Master - **Company:** AMERICAN SYSTEMS - **Location:** Dallas, TX, United States - **Salary:** $180,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Command-Line Interface, Cyber Security, Information Systems, Linux, Identity and Access Management, Log Analysis, Network Architecture, Systems Development Life Cycle, Remote Access Technology, SAP (Applications), Security Content Automation Protocol, Security Information and Event Management, Data Streaming, Systems Integration, Firewalls (Computer Science), SAPBasis, Information Technology, SolarWinds (Software), Plan of Action and Milestones - **Published:** August 15, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88043791/1 ## About the Role * Active Top Secret/SCI clearance with SAP eligibility * Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, Information Technology, or a related field * 11-12 years of relevant experience in cybersecurity, information assurance, systems security engineering, or ISSO support * DoD 8140 IAM-III level certification (e.g. CISM, CISSP, GSLC, or CCISO) * Experience performing combined ISSO and ISSE duties for classified systems in a SAP environment * Advanced knowledge of the JSIG, RMF, and applicable NIST SP 800-series publications * Proven experience manually developing authorization artifacts and bodies of evidence without reliance on automated RMF tools * Experience authoring SSPs, control narratives, POA&Ms, inventories, architecture diagrams, and assessment evidence * Hands-on experience assessing Linux and Windows systems through command-line validation, compliance scanning, configuration reviews, and log analysis * Experience implementing and assessing STIGs, Security Requirements Guides, and secure configuration baselines * Knowledge of enterprise architecture, firewalls, remote access, network infrastructure, and systems integration * Experience preparing systems for authorization, reassessment, continuous monitoring, and security inspections * Ability to identify deficiencies, assess risk, and provide actionable remediation recommendations * Ability to coordinate with customers, security officials, system owners, engineers, and administrators Pay Transparency Statement ## Description This role performs senior-level ISSO and ISSE duties, supporting system security engineering, assessment, authorization, and continuous monitoring under the JSIG, RMF, and applicable NIST SP 800-series guidance in a Special Access Program (SAP) environment. *** This role includes a $10,000 Sign-on Bonus in addition to a comprehesive compensation package! *** Responsibilities As an Information Systems Security Officer (ISSO), Master at AMERICAN SYSTEMS, you will: Develop and integrate cybersecurity architectures for systems and networks processing multiple classification levels * Perform senior-level ISSO and ISSE duties throughout the system development, authorization, and continuous monitoring life cycles * Apply JSIG, RMF, and NIST SP 800-series requirements to system design, control implementation, assessment, and authorization * Manually develop and maintain authorization artifacts and bodies of evidence, including SSPs, control narratives, POA&Ms, inventories, diagrams, and assessment evidence * Evaluate security architectures and system changes for impacts to security controls, authorization boundaries, and risk posture * Perform hands-on security assessments using command-line audits, compliance scans, configuration analysis, log reviews, and control validation * Identify security gaps and develop actionable risk management, remediation, and POA&M plans * Determine protection needs and coordinate the allocation of system-specific, hybrid, and common controls * Implement secure configuration processes and assess compliance with STIGs and Security Requirements Guides * Use Tenable, Trellix, SolarWinds, SIEM, SCAP, OpenSCAP, and Evaluate-STIG to assess vulnerabilities, configurations, and controls * Review system diagrams, data flows, inventories, interconnections, and configurations for accuracy and security compliance * Coordinate with program security, authorization officials, assessors, system owners, engineers, and administrators * Provide technical leadership for complex SAP cybersecurity, incident response, remediation, and authorization activities ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Progressive Delivery in Kubernetes](https://www.wearedevelopers.com/videos/949-progressive-delivery-in-kubernetes) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Leveraging Large Language Models for Legacy Code Translation: Challenges and Solutions](https://www.wearedevelopers.com/videos/1157-leveraging-large-language-models-for-legacy-code-translation-challenges-and-solutions) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [IT Salaries in Germany](https://www.wearedevelopers.com/magazine/287-it-salaries-in-germany)