> Markdown version of [/jobs/ext/2282770-isso](https://www.wearedevelopers.com/jobs/ext/2282770-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # ISSO - **Company:** Auxilium International LLC - **Location:** Colorado Springs, CO, United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Xacta, Agile Methodology, Cloud Computing, Cyber Security, Information Systems, Identity and Access Management, Information Security Management, Network Security, Scrum Methodology, Security Content Automation Protocol, Security Information and Event Management, Software Requirements Analysis, Software Vulnerability Management, Information Technology, Nessus, Cyber Warfare, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 28, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9125902/isso ## About the Role Bachelor's degree in Computer Science, Cybersecurity, Information Assurance, Information Systems, Information Technology, or a related field (or equivalent experience). 3-7 years of relevant experience in information systems security, cybersecurity, RMF support, vulnerability management, or related roles Certs preferred (at least one of the following): Sec+/ CASP+/ CCSP/ CISSP/CND/ Cloud+, SSCP/ GSEC/ GISF DoD 8570/8140 IAM Level I or II compliant certification Desired skills/experience: Hands-on experience with NIST RMF processes, NIST SP 800-53 controls, and developing/maintaining security authorization documentation (SSP, POA&M, etc.). Familiarity with vulnerability assessment tools (e.g., ACAS/Nessus), STIGs, SCAP, and continuous monitoring practices. Strong written and verbal communication skills for technical documentation and stakeholder interaction. Ability to work independently on assigned systems while collaborating effectively in a team environment. Experience with eMASS, Xacta, or similar RMF/governance, risk, and compliance (GRC) tools. Knowledge of Defense-in-Depth architectures, network security principles, and incident response support. Prior experience supporting federal, DoD, or intelligence community systems. Experience interpreting and remediating STIG findings or analyzing SIEM logs Clearance: Must possess a Top Secret with SCI eligibility. SAR/SAP experience highly desirable Location/Travel Requirements: Place of work is Colorado Springs, remote work opportunity is limited. You may be required to travel periodically, less than 10%. ## Description Auxilium is searching for a Information System Security Officer (ISSO) responsible for maintaining the operational security posture of assigned information systems or programs to support United States Space Force (USSF) in the development software in support of Space Systems Command (SSC) Defensive Cyber Operations rapid agile development of defensive cyber solutions to protect, defend, and respond to both ground and space based cyber adversarial threats. A successful candidate should be a leader and problem solver with a proven ability to deliver superior results as part of a high performing team in a fast-paced environment. Your essential job functions will include but may not be limited to: This role focuses on implementing and sustaining security controls under the NIST Risk Management Framework (RMF), ensuring continuous compliance with federal cybersecurity standards (e.g., NIST SP 800-53), supporting Authority to Operate (ATO) processes, and identifying/mitigating risks. Has an in-depth understanding of the cybersecurity policies and procedures for government sector information systems and sufficient technical knowledge and experience to implement them. Provides hands on security and compliance guidance and work with Scrum Masters and product owners in concert with system requirements that are being developed and implementing cloud computing. This position may require privilege access and DODM 8570.01M restrictions will apply. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)