> Markdown version of [/jobs/ext/2459205-information-system-security-officer](https://www.wearedevelopers.com/jobs/ext/2459205-information-system-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer - **Company:** Chickasaw Nation Industries, Inc. - **Location:** Ellsworth Air Force Base, SD, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Decision Support Systems, Information Security Management - **Published:** August 7, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=97bdbcf841cf1a8f ## About the Role The ability to obtain, maintain and access classified information at the Top Secret level. Required Certification at the DoD 8410 WRC 722, Intermediate level - GMON, SecurityX/CASP+, CCISO, CCSP, CGRC/CAP, CISSO, Cloud+, GSEC, Security+, or SSCP Must comply with cybersecurity directives, including IAVA, TCNO, and NOTAM implementation, tracking, and validation requirements., Bachelor of Science (B.S.) or above, or equivalent combination of IT technical and ten (10) years of relevant experience ## Description The Information System Security Officer (ISSO) provides system-level cybersecurity support for Department of the Air Force Financial Management (DAF FM) systems. This role supports RMF compliance, performs security control validation, maintains authorization documentation, and monitors remediation activities across multiple financial management systems. The ISSO collaborates closely with the ISSM, AO staff, system engineers, cybersecurity analysts, and program personnel to ensure system security posture aligns with Air Force cybersecurity directives and RMF requirements., * Essential duties and responsibilities include the following. Other duties may be assigned. * Support the Risk Management Framework (RMF) lifecycle by assisting with security control implementation, validation, assessment preparation, and continuous monitoring for assigned FM systems * Maintain and update cybersecurity authorization documentation, including SSPs, RARs, and POA&Ms, within eMASS and ITIPS, ensuring accuracy and compliance. * Track and report vulnerability findings and coordinate remediation efforts with system owners and engineering teams. * Assist in preparing authorization decision support materials and contribute to mission impact assessments submitted to the FM Authorizing Official (AO). * Conduct system-level reviews of patching, configuration changes, and security settings to ensure compliance with client directives. * Support cybersecurity assessment events, including security control testing and remediation validation. * Provide day-to-day cybersecurity coordination with developers, system administrators, DBAs, and FM program personnel. * Assist the ISSM with enterprise-level monitoring, reporting, and compliance governance as assigned. ## Related Videos - [Don't Be A Naive Developer: How To Avoid Basic Cybersecurity Mistakes](https://www.wearedevelopers.com/videos/498-don-t-be-a-naive-developer-how-to-avoid-basic-cybersecurity-mistakes) - [Augmented Intelligence for transport planning: Human in the Loop Modelling](https://www.wearedevelopers.com/videos/72-augmented-intelligence-for-transport-planning-human-in-the-loop-modelling) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Stop building features. Start building impact.](https://www.wearedevelopers.com/videos/2031-stop-building-features-start-building-impact) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions)