> Markdown version of [/jobs/ext/2120113-information-system-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/2120113-information-system-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer (ISSO) - **Company:** The Greentree Group - **Location:** Beavercreek, OH, United States - **Experience:** Expert - **Salary:** $100,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Confluence, JIRA, Audit Trail, Cloud Computing Security, Configuration Management, Static Program Analysis, Cyber Security, Information Systems, Identity and Access Management, Information Security Management, Integrated Development Environments, Network Monitoring, Systems Development Life Cycle, Zero Trust Network Access, Software Engineering, Privacy Controls, Cloud Platform System, Information Technology, Atlassian Tools, Devsecops, Plan of Action and Milestones - **Published:** August 19, 2026 - **Apply:** https://www.juju.com/job/00000000gnrlqt ## About the Role + Are you a tech enthusiast who loves solving complex problems? + Do you have a keen eye for detail and excellent analytical skills? + Would your friends describe you as a self-starter who takes pride in your work and enjoys collaborating with others?, + Bachelor's degree in a related field or 6 years' experience. + Knowledgeable of DoDI 8500.01 (Cyber Security), 8510.01 (Risk Management Framework for Air Force Information Technology), AFI 17-101(Risk Management Framework for Air Force Information Technology), and NIST SP 800-53 Security and Privacy Controls. + Active DoD 8140 IAM Level II certification (CASP+, CCNP Security, CISA, CISSP (or Associate), CCSP, GCED, or GCIH). + Knowledgeable with Enterprise Mission Assurance Support Service (eMASS) and associated artifacts and Plan of Actions & Milestone (POA&M) requirements. + Strong knowledge of IT security principles, network monitoring, operating systems, and security tools. + Strong customer service, interpersonal, and communication skills (written and verbal). + Good organizational, time management, analytical, and problem-solving skills. + Must be able to work as part of a team and individually, meeting tight deadlines. + Candidates must be U.S. Citizens and have the ability to obtain a secret clearance investigation in a timely manner. DESIRED QUALIFICATIONS: + Knowledgeable about Zero Trust tools and techniques including Identity, Credential, and Access Management (ICAM) efforts. + Ability to review and analyze for consistency, congruency, and in-depth due diligence. + Experience with Cloud environments and Cloud security tools. + Experience in software development environments including DevSecOps and tools such as the Atlassian suite (Jira, Confluence, etc). + Experience with security control evidence development. + Familiarity with Configuration Management and Configuration Control Boards. ## Description + Create and implement Air Force security policies, procedures, and controls to protect information systems. + Conduct risk assessments and develop risk management plans to identify and mitigate vulnerabilities. + Configure cloud-based security tools to monitor networks, systems, and user activity for security breaches, analyze threats, and review security and audit logs. + Develop and perform continuous monitoring techniques and procedures. + Review and evaluate STIG and static code analysis scans for compliance and vulnerabilities. + Provide security guidance to technical and software development teams throughout the software development lifecycle (SDLC). + Ensure software, hardware, and user access controls comply with security configuration guidelines. + Report incidents or vulnerabilities and initiate counter measures and actions to restore cybersecurity posture. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [42 x 2 Canvases Later: Two Years, Two Minds, Many Lessons](https://www.wearedevelopers.com/videos/1458-42-x-2-canvases-later-two-years-two-minds-many-lessons) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [A Guide to Green Tech and Green IT Careers](https://www.wearedevelopers.com/magazine/374-a-guide-to-green-tech-and-green-it-careers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development)