> Markdown version of [/jobs/ext/259073-information-systems-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/259073-information-systems-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Officer (ISSO) - **Company:** Caci Inc - **Location:** Albuquerque, NM, United States - **Experience:** Experienced - **Salary:** $71,500.0 - $150,200.0 - **Contract:** Permanent contract - **Skills:** Xacta, Active Directory, Software Applications, Audit Trail, Configuration Management, Cyber Security, Computer Engineering, Dynamic Host Configuration Protocol, Linux, Domain Name System (DNS), Identity and Access Management, Internet Protocol, Windows Servers, Release Management, Signalling Connection Control Part (SCCP), Software Engineering, Workflow Management Systems, Information Technology, Wsus - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=08cca5d10a2728b3 ## About the Role Required: * An active DoD TS/SCI security clearance. * Advanced knowledge of IT and networking (IP Networking, cyber security, or software development). * Advanced understanding of Windows Server, Active Directory, DHCP, DNS, and WSUS/SCCP. * Proficiency in Microsoft Windows and Linux software applications. * At least one active Department of Defense 8570.01-M IAT/IAM Level III certification (e.g., CASP+CE, CCNP Security, CISA, CISSP, GCED, GCIH, CCSP, CISM, GSLC, CCISO). * Education: B.S. in Information Technology/Systems, Computer Science, Computer Engineering, or Electrical Engineering. * Experience: 5-7 years of related experience. + Understanding of system controls and their impact on system security. + Minimum of 5 years monitoring system NIST compliance using workflow tools. + Minimum of 3 years using eMASS for system certification and accreditation tracking. + Minimum of 3 years transitioning to and operating within RMF in DoD applications. + Experience in initial risk assessment and assisting Authorizing Official with risk determination and acceptance. Desired: * Experience as an ISSO/ISSM managing systems approved to process classified information. * Knowledge of Air Force cyber security policies. * Experience submitting ATO documentation in eMASS and Xacta. * Willingness and ability to quickly learn new technologies. ## Description As our Information Systems Security Officer, you'll play a crucial role in supporting both internal and external customer efforts. Your responsibilities will include: * Overseeing Security Operations: Ensure systems are operated, maintained, and disposed of according to security policies and procedures. * Coordinating A&A and CM: Manage Assess and Authorize (A&A), Configuration Management (CM), and Release Management requirements in line with DoD Instructions. * Ensuring Security Compliance: Verify that changes to applications, systems, environments, or organizations do not compromise security posture. * Monitoring Vulnerability Postures: Validate vulnerability postures in ACAS and ensure compliance with DISA STIGs and CSSP HBSS requirements. * Verifying Security Program Implementation: Ensure the delegated aspects of the system security program are implemented locally and across customer-related systems. * Submitting ATO Documentation: Prepare and submit Authority to Operate documentation to eMASS and XACTA. * Conducting Assessments: Perform periodic assessments of authorized systems and provide corrective actions for identified findings and vulnerabilities. * Analyzing Audit Records: Collect and analyze audit records in accordance with the security plan. * Incident Reporting: Report security-related incidents to the Facility Security Officer and assist with formal reporting to customers and DCSA oversight. * Continuous Monitoring: Develop and execute a continuous monitoring strategy. * Cyber Security Training: Create and oversee a cyber security awareness training program. * Travel: Visit other locations or customer sites as necessary. * Team Collaboration: Work effectively in a team environment and perform other duties as assigned. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How should you format your IT resume?](https://www.wearedevelopers.com/magazine/68-how-should-you-format-your-it-resume) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)