> Markdown version of [/jobs/ext/2097345-information-systems-security-officer](https://www.wearedevelopers.com/jobs/ext/2097345-information-systems-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Officer - **Company:** MENTE SYSTEMS INC - **Location:** Tampa, FL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Audit Trail, Cloud Computing Security, Cyber Security, Information Systems, Package Development Process, Cloud Services, Smartsuite, Software Vulnerability Management, SARS Software Products, Cloud Platform System, Information Technology, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 17, 2026 - **Apply:** https://www.dice.com/job-detail/a29525da-743e-419a-941f-c9cd09d55e30 ## About the Role Capabilities that will enable your success * Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Information Technology, or related field; relevant experience may substitute when contractually permitted. * 5+ years of cybersecurity, information assurance, security engineering, compliance, cloud security, or RMF experience. * Experience supporting RMF authorization activities, including SSP, SAR, POA&M, risk assessment, continuous monitoring, vulnerability management, and audit review. * Working knowledge of NIST RMF, NIST SP 800-37, NIST SP 800-53, and system life cycle security practices. * Experience creating or maintaining cybersecurity policies, procedures, standards, security plans, and compliance documentation. * Current role-aligned certification such as Security+, CySA+, CGRC, CISSP, CISM, CCSK, CCSP, or equivalent. * Ability to communicate risk, compliance status, findings, and remediation priorities to technical and non-technical audiences. Preferred Qualifications * Experience with federal or defense authorization packages, eMASS or similar GRC tools, vulnerability management platforms, cloud environments, and security assessments. * Active U.S. Security Clearance and experience in DoD, Intelligence Community, federal, or cleared contractor environments. Clearance Requirements Existing clearance is preferred. ## Description TheIncLab engineers and delivers intelligent digital applications and platforms that revolutionize how our customers and mission-critical teams achieve success. We are where innovation meets purpose; and where your career can meet purpose as well. We are looking for an Information Systems Security Officer (ISSO). If you are organized, detailed oriented and like working in a collaborative team environment to make an impact, we encourage you to apply and take the first step in joining our dynamic and impactful company. Your Mission, Should You Choose to Accept As an ISSO, you will maintain the security posture of assigned systems and support Risk Management Framework (RMF) activities across the system life cycle. The ISSO partners with system owners, security leadership, assessors, administrators, and mission stakeholders to manage authorization documentation, monitor compliance, track vulnerabilities, and ensure systems operate within approved risk parameters. What will you do? * Maintain the operational security posture of assigned information systems in coordination with system owners, ISSM/CISO, administrators, and authorization stakeholders. * Support RMF activities, including control implementation, assessment support, authorization package development, continuous monitoring, and ongoing authorization. * Develop and maintain security artifacts, including SSPs, SARs, POA&Ms, risk assessments, continuous monitoring evidence, and supporting procedures. * Coordinate security control implementation with engineering, infrastructure, cloud, application, and operations teams throughout the system life cycle. * Conduct or support audit log reviews, vulnerability scans, configuration reviews, internal assessments, and compliance monitoring. * Track, validate, and report remediation of vulnerabilities, findings, control deficiencies, POA&M items, and risk acceptance decisions. * Assess the security impact of system changes, software, cloud services, interconnections, and configuration updates. * Support security event review, incident response coordination, escalation, reporting, and lessons learned. * Prepare cybersecurity status updates, metrics, briefings, and compliance reports for leadership, customers, auditors, and assessors. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [No Keys for the Robot: GitOps as the Control Plane for Autonomous Agents](https://www.wearedevelopers.com/videos/100095-no-keys-for-the-robot-gitops-as-the-control-plane-for-autonomous-agents) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)