> Markdown version of [/jobs/ext/2710486-information-systems-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/2710486-information-systems-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Officer (ISSO) - **Company:** Caci Inc - **Location:** Reston, VA, United States - **Salary:** $120,800.0 - $265,800.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Backup Devices, Cyber Security, Dynamic Host Configuration Protocol, Linux, Domain Name System (DNS), Identity and Access Management, Network Service, Zero Trust Network Access, Security Information and Event Management, Systems Architecture, Virtual Hosting, Virtualization Technology, Software Vulnerability Management, Cloud Platform System, SC Clearance, Servicenow, Vulnerability Analysis - **Published:** September 4, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9144538/information-systems-security-officer-isso ## About the Role * BA/BS degree and 13+ years of relevant cybersecurity, information assurance, information systems security, or related experience; equivalencies considered. * Active Secret clearance. * Extensive experience serving as an ISSO, ISSM, cybersecurity engineer, or equivalent security professional supporting complex enterprise IT environments. * Demonstrated experience implementing and maintaining cybersecurity requirements in accordance with NIST Risk Management Framework (RMF), FISMA, NIST SP 800-53, and applicable Federal security standards. * Experience supporting the Assessment & Authorization (A&A) lifecycle, including security controls, authorization packages, continuous monitoring, and system reauthorization. * Experience developing and maintaining cybersecurity documentation including System Security Plans (SSPs), POA&Ms, risk assessments, security controls, and authorization artifacts. * Demonstrated experience conducting security assessments, compliance reviews, vulnerability analysis, and continuous monitoring, including tracking findings through remediation and closure. * Experience with enterprise vulnerability management, security monitoring, configuration compliance, and system hardening tools and practices. * Strong understanding of security requirements across enterprise infrastructure, including Windows/Linux, Active Directory, Exchange, network services, virtualization, hosting/cloud environments, and identity and access management. * Experience reviewing system architectures, engineering designs, configurations, and changes to identify cybersecurity risks and ensure security requirements are incorporated throughout the system lifecycle. * Experience supporting incident response, threat management, vulnerability remediation, and security escalation in coordination with technical teams and Government cybersecurity stakeholders. Desired - * Prior cybersecurity experience supporting Federal Government enterprise IT environments, particularly the Department of State. * Familiarity with Department of State cybersecurity policies, security authorization processes, and enterprise security tools. * Experience securing large-scale, globally distributed on-premises, virtualized, hybrid, or cloud environments. * Experience with ServiceNow, SIEM/SOC technologies, EDR, vulnerability management platforms, or comparable enterprise security tools. * Knowledge of Zero Trust Architecture (ZTA) principles and Federal Zero Trust requirements. * Relevant cybersecurity certification such as CISSP, CISM, SecurityX/CASP+, CGRC, CCSP, or equivalent. * ITIL 4 Foundation certification or experience supporting an ITIL-based enterprise service management environment. ## Description CACI is seeking an Information Systems Security Officer (ISSO) for the Global Mission Operations Support (GMOS) contract, supporting the Department of State. This role offers a unique opportunity to enhance national security through advanced IT solutions. You will collaborate with experienced professionals in an innovative environment, guiding a high-performing team to deliver excellence. The GMOS contract aims to provide world-class IT support by modernizing and maintaining applications and infrastructure using an integrated IT Service Management approach. Join us to make a meaningful impact on a program of national importance., * Leads comprehensive security and internal controls maintenance in accordance with DOS policies and procedures across CA IT enterprise supporting 40,000+ users * Maintains comprehensive security-approved thresholds for sites ensuring enterprise compliance with DOS security policies * Leads monitoring and response to vulnerability and threat reports coordinating remediation activities with bureaus and agencies * Provides comprehensive security guidance for service portfolio management ensuring alignment with Federal accessibility standards and compliance requirements * Ensures all infrastructure architecture and standards development align with DOS and Federal security requirements * Ensures all engineering designs for physical and virtual hosting environments incorporate comprehensive security best practices complying with DOS security policies, FISMA requirements, and NIST standards * Leads security compliance for engineering IT services including Exchange, AD, DNS, DHCP, and backup services ensuring alignment with modern security protocols * Provides comprehensive security guidance for network engineering services ensuring secure connectivity and compliance across 350+ facilities * Leads infrastructure audits, assessments, and compliance analysis ensuring system baselines meet DOS and DT/EA/CST security requirements * Possesses and applies a comprehensive knowledge across key tasks and high impact assignments, plans and leads major technical assignments, and functions as a technical expert across multiple project assignments; may supervise others ## Related Videos - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)