> Markdown version of [/jobs/ext/2697777-information-systems-security-officer-level-2](https://www.wearedevelopers.com/jobs/ext/2697777-information-systems-security-officer-level-2). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Officer - Level 2 - **Company:** BOGART AND ASSOCIATES INC - **Location:** Los Angeles, CA, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Cyber Security, National Industrial Security Program Operating Manual (NISPOM), Vulnerability Analysis - **Published:** September 3, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9138859/information-systems-security-officer-level-2 ## About the Role * Active Top Secret/SCI with CI Polygraph * Bachelor's Degree with 2-6 years of relevant experience. Additional education can count in lieu of years of experience, and additional years of experience can count in lieu of a degree * DOD 8570 IAT Level II Profession Certification is required (NOTE: certification must be obtained within 6 months from position start date) What Desired Skills You'll Bring: * Strong leadership skills * Management experience * Ability to coach and develop junior ISSO's ## Description * Performs assessments of systems and networks within the networking environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations (compliance audits) and active evaluations (vulnerability assessments) * Establishes strict program control processes to ensure mitigation of risks and supports obtaining certification and accreditation of systems. This includes process support, analysis support, coordination support, security certification test support, security documentation support, investigations, software research, hardware introduction and release, emerging technology research inspections, and periodic audits * Assists in the implementation of required government policy (e.g., NISPOM, DCID 6/3) and makes recommendations on process tailoring * Performs analysis to validate established security requirements and recommends additional security requirements and safeguards where required * Supports the formal Security Test & Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports * Periodically conducts a review of each system's audits and monitors corrective actions until all actions are closed * Demonstrates advanced subject matter expertise in job family * Contributes to and may lead the planning and implementation of large programs in the function and regularly interfaces with senior management and executive leadership * Plays a role in overall functional strategic planning ## Related Videos - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Lessons learned from observing a billion API requests](https://www.wearedevelopers.com/videos/1574-lessons-learned-from-observing-a-billion-api-requests) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)