> Markdown version of [/jobs/ext/2675970-information-system-security-officer](https://www.wearedevelopers.com/jobs/ext/2675970-information-system-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer - **Company:** Mantech International Corporation - **Location:** Annapolis Junction, MD, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Xacta, Audit Trail, Data Centers, Identity and Access Management, Information Security Management, Servicenow, Plan of Action and Milestones, Vulnerability Analysis - **Published:** September 1, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9131525/information-system-security-officer ## About the Role * 10 years of relevant experience with a Bachelors degree from an accredited college or university. 4 years of addition experience may be substituted for a Bachelors degree * Experience with Xacta, LatteArt and other sponsor tools * Experience managing POAMs, performing audit log reviews, and maintaining secure system inventories * IAM I certification (DoD 8140 required upon start of employment. Acceptable certifications include CAP/CND/Cloud+/GSLC/Security + CE/HCISSP/CASP+CE/CISM/CISSP/ or CCISO), * Knowledge of STE and STN processes and coordination * Experience with Rev 5 and ServiceNow ICAM * Experience with Gatekeeper, SEAR, SCANBOY * Demonstrated experience in SSP development and incident response management Clearance Requirements: * Must possess and maintain a current/active TS/SCI clearance with Polygraph Physical Requirements: * Must be able to remain in a stationary position 50% of the time * Occasionally moves about inside the office to access file cabinets, office machinery, etc. * Frequently communicates with co-workers, management, and customers, including delivering presentations. Must be able to exchange accurate information in these situations ## Description You will play a critical role in supporting enterprise infrastructure capabilities for a global, mission-focused workforce. As an ISSO, you will work alongside customers, Integrated Product Teams (IPTs), and vendors to support the implementation and compliance of advanced EIT capabilities through Data Center & Compute Services. You will manage cybersecurity documentation, assess system vulnerabilities, and support the Risk Management Framework (RMF) lifecycle in alignment with Sponsor policies., * Update and maintain hardware and software inventory records, including associated change logs * Support and coordinate Secure the Enterprise (STE) and Secure the Network (STN) activities * Review and address Xacta notices and ensure compliance documentation is accurate and current * Complete SEAR audit log records in accordance with Sponsor standards * Track, review, and resolve POAMs (Plan of Action and Milestones) related to IAVA/IAVAx findings * Develop and maintain System Security Plans (SSPs) for both new and existing systems * Analyze vulnerability scan results and collaborate with system owners to implement remediation * Leverage sponsor tools such as Gatekeeper, Xacta, SEAR, and LatteArt in daily operations ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) - [No Keys for the Robot: GitOps as the Control Plane for Autonomous Agents](https://www.wearedevelopers.com/videos/100095-no-keys-for-the-robot-gitops-as-the-control-plane-for-autonomous-agents) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j)