> Markdown version of [/jobs/ext/2530402-information-system-security-officer-mid](https://www.wearedevelopers.com/jobs/ext/2530402-information-system-security-officer-mid). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer, Mid - **Company:** Booz Allen Hamilton Inc. - **Location:** Arlington, VA, United States - **Experience:** Experienced - **Salary:** $62,000.0 - $141,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Audit Trail, Identity and Access Management, Information Security Management, Networking Hardware, Microsoft Servers, Security Content Automation Protocol, Software Vulnerability Management, Diagnostic Tools, Juniper, SC Clearance, Nessus, National Industrial Security Program Operating Manual (NISPOM), Cisco - **Published:** August 13, 2026 - **Apply:** https://www.careerjet.com/job/us0b49613f4e2b2fc42367282632541721/eaa ## About the Role * 1+ years of experience with hands-on security hardening, vulnerability management, and audit log review in a Microsoft Windows environment * Knowledge of the DoD and IC Risk Management Framework (RMF), NIST 800 series, and industrial security requirements under the National Industrial Security Program Operating Manual (NISPOM) and DCSA Assessment and Authorization Process Manual (DAAPM) * Knowledge of network and information system security principles and best practices * Ability to conduct technical system security reviews using scan tools such as ACAS, Nessus, and SCAP * Ability to travel up to 25% of the time * Secret clearance * HS diploma or GED * DoD 8570.01-M IAM Level I Certification Nice If You Have: * Experience with SIPRNet and CORA inspections * Experience with MS Windows OS, MS Server, Cisco, Juniper, or Brocade networking equipment * Knowledge of ICD 503 or ICD 703 * Knowledge of eMASS * Ability to work independently while delivering on-time results * TS/SCI clearance ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Your Infrastructure Is Not a Playground: AI Agents for Infra Done Right](https://www.wearedevelopers.com/videos/2084-your-infrastructure-is-not-a-playground-ai-agents-for-infra-done-right) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)