> Markdown version of [/jobs/ext/2877677-information-systems-security-officer](https://www.wearedevelopers.com/jobs/ext/2877677-information-systems-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Officer - **Company:** Booz Allen Hamilton Inc. - **Location:** Fort Meade, MD, United States (Remote available) - **Experience:** Expert - **Salary:** $99,000.0 - $225,000.0 - **Contract:** Internship / Graduate position - **Skills:** Xacta, Configuration Management, Communications Protocols, Cyber Security, Information Systems, Firmware, Identity and Access Management, Information Security Management, Software Requirements Analysis, Software Security, National Industrial Security Program Operating Manual (NISPOM) - **Published:** September 13, 2026 - **Apply:** https://careers.boozallen.com/jobs/JobDetail?jobId=130115 ## About the Role * Experience supporting major federal information systems and applications * Experience with security tools, hardware, software security implementation, communication protocols, or encryption techniques and tools * Experience developing Risk Management products and working through system accreditations * Experience interfacing with information assurance managers, including reviewing documentation, SSPs, Risk Assessment Reports, C&A packages, or Plans of Action and Milestones (POA&Ms) * Experience working with XACTA IA Manager and Risk Management Frameworks * Experience with national security information system security requirements, including JSIG, ICD 503, DAAPM, or NISPOM * Experience in the oversight and execution of the Assessment and Authorization processes or C&A * TS/SCI clearance with a polygraph * Bachelor's degree and 10+ years of experience in Information Systems Security, or 14+ years of experience in Information Systems Security in lieu of a degree * DoD 8570 IAM Level I Certification ## Description Provide support for a program, organization, system, or enclave's information assurance program proposing, coordinating, implementing, and enforcing information systems security policies, standards, and methodologies. Maintain operational security posture for an information system or program to ensure information systems security policies, standards, and procedures are established and followed. Assist with the management of security aspects of the information system, perform day-to-day security operations of the system, and evaluate security solutions to ensure they meet security requirements for processing classified information. Perform vulnerability and risk assessment analysis to support certification, accreditation, and configuration management (CM) for information system security software, hardware, and firmware. Manage changes to the system and assess the security impact of those changes. Prepare and review documentation, including System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements Traceability Matrices (SRTMs), and support security authorization activities in compliance with Information System Certification and Accreditation Process (ISCAP) and DoD Risk Management Framework (RMF). ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Agent Smith Gets Hardware: Autonomous IoT Hacking From Debug Port to Cloud API](https://www.wearedevelopers.com/videos/100258-agent-smith-gets-hardware-autonomous-iot-hacking-from-debug-port-to-cloud-api) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)