> Markdown version of [/jobs/ext/2707794-information-systems-security-officer-onsite](https://www.wearedevelopers.com/jobs/ext/2707794-information-systems-security-officer-onsite). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Officer (Onsite) - **Company:** RTX - **Location:** Moulton, AL, United States - **Experience:** Expert - **Salary:** $86,800.0 - $165,200.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, Human-Computer Interaction, Identity and Access Management, Information Security Management, SAP Implementation, Security Content Automation Protocol, Security Information and Event Management, Software Configuration Management, Patch Management, National Industrial Security Program Operating Manual (NISPOM), Splunk, Vulnerability Analysis - **Published:** September 4, 2026 - **Apply:** https://globalhr.wd5.myworkdayjobs.com/REC_RTX_Ext_Gateway/job/US-MA-CAMBRIDGE-BBN03--10--50-Moulton-St--MOULTON-B3/Information-Systems-Security-Officer--Onsite-_01869552 ## About the Role Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance, * Typically requires a University Degree and minimum 5 years prior relevant experience or an Advanced Degree in a related field and minimum 3 years of experience or in absence of a degree, 9 years of relevant experience. * Experience managing and implementing security program requirements in a classified R&D environment. * Experience working in Industrial Security, Information Assurance/Cyber, Special Programs, military or government information security programs. * Experience with compliance-based auditing using the Risk Management Framework (RMF), Defense Counterintelligence and Security Agency (DCSA) Assessment and Authorization Guide (DAAG), Joint SAP Implementation Guide (JSIG), National Industrial Security Program Operating Manual (NISPOM). * Certification alignment with the DoD Manual 8140.03 Cyber Workforce Qualification and Management Program (previously DoD 8570.01-M IAM Level II) (i.e. Security +) * Experience with Security Technical Implementation Guide (STIGs), Secure Content Automation Protocol (SCAP), Splunk or other system hardening and compliance, vulnerability assessment, and/or Security Information and Event Management (SIEM) tools. * Ability to obtain access to Special Access Programs. * Active and transferable secret U.S. government issued security clearance is required prior to start date. * Must be willing to obtain a TS/SCI CI Poly., * Experience in the execution of the Assessment & Authorization processes, as defined within the Risk Managed Framework (RMF) process within the Department of War (DOW) and DCSA. * Experience working in classified operating environments. * Experience with various information system security tools that address vulnerability analysis and mitigation. * Experience interpreting, implementing, and assessing Defense Information Systems Agency (DISA) STIGs. * Desired certifications: Security +, CISM, CISSP., * A strong leadership team well-versed in government and Cybersecurity. * A collaborative and organized environment to help foster better understanding of Cybersecurity requirements, guidance, and approvals process. * Technically competent pool of Cyber/IT team who are willing to mentor, listen, and help you refine your Cybersecurity vision and goals. * Access to opportunities that help transition and apply security analysis during the lifecycle of systems through RTX. ## Description RTX BBN has an immediate need in the Cambridge, MA facility for Information Systems Security Officer (ISSO). The role of the ISSO is to bridge the gap between high level security policies/requirements and technical/operational implementation of those requirements. Candidates should have in-depth understanding of the cybersecurity policies and procedures for government sector information systems and sufficient technical knowledge and experience to implement them. What You Will Do * Work closely and effectively with the Information System Security Manager (ISSM)/ Information System Security Engineer (ISSE) and system administrators on all aspects of the classified program information systems, from development to implementation as they progress through their lifecycle processes. * Provide guidance, standards, and oversight to the development teams as they work towards accreditation and maintenance of accreditation. * Assist the ISSM to provide oversight for the information systems security control methods, mitigations, and tools throughout the systems' lifecycle in compliance with U.S. Department of War security laws, regulations and guidelines. * Primarily responsible for system compliance, auditing, security plan development and delivering information systems security education and awareness. * Assist in investigating security violations, help prepare reports specifying corrective and preventative actions. * Routinely collaborate with the facility security team, program personnel, and government representatives. * Perform security sustainment activities (hardware and software change management, account management, media protection, user interface, file transfers, etc.) * Assist in overseeing and managing the patch management process and execution across all RTX BBN security programs. Collaborate with peer ISSMs/ISSE and Corporate equivalents for alignment and sharing of best practices., Whether you're just starting out on your career journey or are an experienced professional, we offer a robust total rewards package with compensation; healthcare, wellness, retirement, and work/life benefits; career development and recognition programs. Some of the benefits we offer include parental (including paternal) leave, flexible work schedules, achievement awards, educational assistance and child/adult backup care. ## Related Videos - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Kubernetes dev is fun, but setup and ops isn't! See a fun PaaS alternative to push any code, ipynbs or even just data!](https://www.wearedevelopers.com/videos/732-kubernetes-dev-is-fun-but-setup-and-ops-isn-t-see-a-fun-paas-alternative-to-push-any-code-ipynbs-or-even-just-data) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)