> Markdown version of [/jobs/ext/284640-information-security-officer](https://www.wearedevelopers.com/jobs/ext/284640-information-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Officer - **Company:** P3S Corporation - **Location:** Ellsworth Air Force Base, SD, United States - **Experience:** Expert - **Salary:** $51,099.0 - $75,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Business Systems, Software Documentation, Cyber Security, Information Systems, Databases, Linux, Federal Information Processing Standards (FIPS), Firmware, Network Security, Security Content Automation Protocol, Software Vulnerability Management, SC Clearance, Information Technology, Patch Management, Nessus, Vulnerability Analysis - **Published:** May 16, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=0e84d1956652213a ## About the Role Do you have experience in Windows?, Do you have a Bachelor's degree?, * Bachelor's degree in cybersecurity, information technology, computer science, information systems, or related field preferred. * 4-7 years of cybersecurity, RMF, IA, ISSO, system security, or DoD compliance experience. * Direct Air Force or DoD RMF experience strongly preferred. * Experience supporting financial management systems, ERP systems, or mission/business systems preferred. Certifications Recommended minimum: * Security+ CE, CySA+, GSEC, SSCP, CAP/CGRC, or equivalent DoD 8140-aligned qualification. Preferred: * CGRC/CAP, CISSP, CISM, CASP+/SecurityX, GSLC, or other DoD 8140-approved certifications. DoD Manual 8140.03 is the current qualification framework for DoD cyberspace workforce roles, and DoD maintains qualification matrices for approved certification/training alignment., * Bachelor's (Preferred), * cybersecurity, RMF, system security, or DoD compliance: 5 years (Preferred) * ISSO: 5 years (Preferred) * * RMF under DoDI 8510.01 and Air Force RMF processes. : 5 years (Preferred) * DoDI 8500.01, DoD 8140/8570 transition, NIST SP 800-53: 5 years (Preferred) * eMASS, ITIPS, STIG Viewer, ACAS/Nessus,: 5 years (Preferred) * SCAP, HBSS/ESS, POA&M tracking, vulnerability dashboards. : 5 years (Preferred) * * ATO packages, SSPs, SAR/RAR, RARS, POA&Ms: 5 years (Preferred) * Windows/Linux, network security, audit/log : 5 years (Preferred) License/Certification: * * Security+ CE, CySA+, GSEC, SSCP, CAP/CGRC (Preferred) ## Description The ISSO will serve as the day-to-day cybersecurity steward for assigned Air Force Financial Management systems within the DAF FM AO boundary. The role supports RMF lifecycle execution, ATO package maintenance, continuous monitoring, vulnerability tracking, system security documentation, user access reviews, STIG/IAVA compliance, and incident reporting. The ISSO works under the ISSM and supports the AO/AODR in maintaining compliant, secure, and audit-ready systems. The uploaded SOW specifically requires RMF lifecycle support, authorization artifacts including SSP, RAR/RARS, POA&Ms, eMASS and ITIPS support, vulnerability management, and Secret clearance for ISSO/ISSM personnel. Key Duties The ISSO will: RMF / Authorization * Support AO, AODR, ISSM, system owners, and program offices through all RMF phases. * Maintain ATO packages, including SSP, SAR/RAR, RARS, POA&M, control implementation evidence, inheritance documentation, and continuous monitoring artifacts. * Update and sustain eMASS and ITIPS records for assigned systems. * Ensure systems are operated, maintained, and disposed of in accordance with their authorization boundary and approved security authorization. Continuous Monitoring * Conduct periodic control reviews and self-assessments. * Monitor control compliance, log review, audit activity, and security-relevant events. * Report system security posture, significant changes, anomalies, and risk items to the ISSM. Vulnerability / STIG / Patch Management * Support vulnerability scans, risk analysis, mitigation planning, and remediation tracking. * Track STIG findings, IAVA/IAVB/IAVT compliance, patch status, and POA&M milestones. * Coordinate remediation with system owners, administrators, database teams, and program offices. * Use DISA STIGs/SRGs as the baseline source for hardening and compliance validation. Configuration and Change Management * Review hardware, software, firmware, and architecture changes for cybersecurity impact. * Maintain current hardware/software inventories. * Coordinate with the ISSM before changes are implemented. User Access / Account Management * Enforce least privilege, need-to-know, privileged-user documentation, and periodic account reviews. * Validate cybersecurity awareness and privileged-user training completion. Incident Response * Identify, document, preserve evidence, and report cybersecurity incidents. * Coordinate with the ISSM, Wing Cybersecurity Office, AFCYBER, and other reporting channels as required. Required Knowledge / Systems * RMF under DoDI 8510.01 and Air Force RMF processes. * DoDI 8500.01, DoD 8140/8570 transition, AFI 17-101, NIST SP 800-53, CNSSI 1253, FIPS 199. * eMASS, ITIPS, STIG Viewer, ACAS/Nessus, SCAP, HBSS/ESS, POA&M tracking, vulnerability dashboards. * ATO packages, SSPs, SAR/RAR, RARS, POA&Ms, control evidence, continuous monitoring plans. * IAVA/IAVB/IAVT tracking. * Windows/Linux baseline security, network security, privileged access, audit/log review. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Agent Smith Gets Hardware: Autonomous IoT Hacking From Debug Port to Cloud API](https://www.wearedevelopers.com/videos/100258-agent-smith-gets-hardware-autonomous-iot-hacking-from-debug-port-to-cloud-api) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)