> Markdown version of [/jobs/ext/2722633-information-system-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/2722633-information-system-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer (ISSO) - **Company:** PLEXSYS, L.L.C. - **Location:** Camas, United States - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Antivirus Softwares, Audit Trail, Information Systems, Information Security Management, PCI Data Security Standards, SAP (Applications), National Industrial Security Program Operating Manual (NISPOM), Vulnerability Analysis - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/information-systems-security-officer-plexsys-8217715 ## About the Role * Bachelor's degree in related field or four (4) years' experience in related field * DoD 8570 compliant, IAT Level II * Experience with Windows based administration of Information Systems * Ability to work within compliance standards; previous experience with RMF, HIPAA , PCI DSS, or equivalent compliance standard preferred * Strong experience in networking, active directory, centralized logging solutions, vulnerability scanning and anti-virus solutions * Experience with security audits for information systems * Strong communication and problem-solving skills * Ability to work in both a team environment as well as independently * Must be organized and detail oriented * Ability to obtain and maintain Top Secret clearance with the ability to obtain approval for SAP/SCI access DESIRABLE * Have previous experience with DoD Security Regulations and Policies ## Description The Information System Security Officer (ISSO) is responsible for ensuring the appropriate operational security posture for information systems and as such, works in close collaboration with the ISSM, CPSO, and FSO. The ISSO must have detailed knowledge and expertise required to manage the security aspects of an information system and is assigned the day-to-day responsibility for assigned systems. Responsibilities include implementation of the requirements of Risk Management Framework, including the Joint Special Access Program (SAP) Implementation Guide (JSIG), NIST 800-53, or other security requirements as assigned. This position will report to the Corporate Information Assurance Manager and work in close collaboration with the AFSO and FSO. The ISSO is responsible for developing and updating the security authorization package, managing and controlling changes to the system, and assessing the security impact of those changes. * Ensure systems are operated, maintained, and disposed of following security policies and procedures as outlined in the security authorization package * Report all security-related incidents to the ISSM * Conduct periodic reviews of information systems to ensure compliance with the security authorization package * Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly * Ensure audit records are collected, reviewed, and documented * Duties also include physical and environmental protection, personnel security, and incident handling, * Lead the information system security program for their assigned location to include implementation and validation of automated informational security, ensuring security requirements as contracted are satisfied * Maintain and establish the accreditation of classified information systems * Establish and implement security procedures and practices in support of Corporate goals and current DoD Regulations * Ensure all security procedures are being followed such as patching, AV updates, continuous monitoring, trainings, and self-inspections * Develop, implement and maintain security emergency action plans * Provide security education and training to local employees * Maintain administrative security records and documents for local employees * Conduct self-inspections to ensure current security measures and policies are effective * Conduct random security inspections to ensure regulations and procedures are being adhered to by local employees * Conduct system audits in accordance with security accreditation package requirement * Lead the information system security program for their assigned location to include implementation and validation of automated informational security, ensuring security requirements as contracted are satisfied * Maintain and establish the accreditation of classified information systems * Establish and implement security procedures and practices in support of Corporate goals and current DoD Regulations * Ensure all security procedures are being followed such as patching, AV updates, continuous monitoring, trainings, and self-inspections * Develop, implement and maintain security emergency action plans * Provide security education and training to local employees * Maintain administrative security records and documents for local employees * Conduct self-inspections to ensure current security measures and policies are effective * Conduct random security inspections to ensure regulations and procedures are being adhered to by local employees * Conduct system audits in accordance with security accreditation package requirements * Conduct vulnerability scans and analysis * Conduct maintenance on the networks, systems, and hardware * Perform software upgrades on networks, systems, and hardware * Perform security assignments in accordance with the Automated Information System requirements and local regulations * Understand and follow NISPOM/ODAA/RMF/JAFAN/ICD/NIST/JSIG classified system accreditation and certification requirements * Other duties as assigned ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Fake or News: Translating Dog Barks, Notepad Gets an Upgrade and Michelin-Star Robots - Paul Tregoing](https://www.wearedevelopers.com/videos/1802-fake-or-news-translating-dog-barks-notepad-gets-an-upgrade-and-michelin-star-robots-paul-tregoing) - [MCP Mashups: How AI Agents are Reviving the Programmable Web](https://www.wearedevelopers.com/videos/1392-mcp-mashups-how-ai-agents-are-reviving-the-programmable-web) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [How Lufthansa Industry Solutions is preparing for the Quantum Age! ](https://www.wearedevelopers.com/videos/1443-how-lufthansa-industry-solutions-is-preparing-for-the-quantum-age) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)