Information System Security Officer (ISSO)

Leidos, Inc.
Lorton, VA, United States
22 days ago
Apply on us.experteer.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Cloud Computing Cyber Security Information Systems Information Security Management Intrusion Detection Systems Network Security Security Information and Event Management Firewalls (Computer Science) Vulnerability Analysis

Job description

Experteer Overview In this role you will safeguard DoD information systems by leading cybersecurity posture, policy development, and RMF-based accreditation. You will work closely with the ISSM and cross-functional teams to implement security controls, perform risk assessments, and sustain continuous monitoring to protect data confidentiality, integrity, and availability. The position emphasizes hands-on technical work, incident response support, and ongoing compliance with DoD standards in a fast-paced environment. This is a locally-based, on-site role focused on delivering mission-critical cyber security for Air Force lifecycle programs. Compensation / Benefits * Collaborate daily with the ISSM to provide cybersecurity guidance * Develop and maintain security policies, procedures, and documentation for DoD standards (NIST, RMF, FISMA, JSIG) * Oversee cybersecurity posture of DoD information systems ensuring CIS requirements are met * Perform risk assessments, vulnerability assessments, and security audits with remediation guidance * Manage continuous monitoring of security controls for classified and unclassified data * Coordinate with cross-functional teams to implement security protocols and best practices * Ensure RMF accreditation is completed and maintained * Act as primary security contact for incident response and reporting * Provide security training and awareness for personnel operating DoD systems * Maintain security documentation (SSPs, risk assessments, POA&Ms) and stay updated on threats Tasks * Active Top Secret clearance with ability to obtain SCI before start date * Bachelor’s degree with 4+ years of experience or Master’s with 2+ years (experience may substitute for degree) * Deep knowledge of DoD cybersecurity policies and frameworks (NIST 800-53, RMF, FISMA, ICD 503/705, JSIG, DAAPM) * Experience with cloud computing and achieving/maintaining ATO for cloud-based systems * DoD 8140 Intermediate certification (e.g., Cloud+, Security+) * Experience in system security engineering, risk management, and vulnerability assessments * Strong understanding of network security, controls, and tools (firewalls, IDS/IPS, SIEM, EPP) * Ability to work independently and with cross-functional teams * Strong written and verbal communication for security reporting * Interest in continuous cybersecurity learning Key requirements *

Requirements

the and security audits with remediation guidance * Manage continuous monitoring of security controls for classified and unclassified data * Coordinate with cross-functional teams to implement security protocols and best practices * Ensure RMF accreditation is completed and maintained * Act as primary security contact for incident response and reporting * Provide security training and awareness for personnel operating DoD systems * Maintain security documentation (SSPs, risk assessments, POA&Ms) and stay updated on threats Tasks * Active Top Secret clearance with ability to obtain SCI before start date * Bachelor’s degree with 4+ years of experience or Master’s with 2+ years (experience may substitute for degree) * Deep knowledge of DoD cybersecurity policies and frameworks (NIST 800-53, RMF, FISMA, ICD 503/705, JSIG, DAAPM) * Experience with cloud computing and achieving/maintaining ATO for cloud-based systems * DoD 8140 Intermediate certification (e.g., Cloud+, Security+) * Experience in system security engineering, risk management, and vulnerability assessments * Strong understanding of network security, controls, and tools (firewalls, IDS/IPS, SIEM, EPP) * Ability to work independently and with cross-functional teams * Strong written and verbal communication for security reporting * Interest in continuous cybersecurity learning Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:27 min

Introduction to WebAssembly in a cloud computing context

Edo Edo · World Congress 2024

1:16 min

Securing internal pod communication with network security policies

Marc Nimmerrichter · World Congress 2022

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all