> Markdown version of [/jobs/ext/3238886-senior-information-systems-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/3238886-senior-information-systems-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information Systems Security Officer (ISSO) - **Company:** Parsons Corporation - **Location:** Colorado Springs, CO, United States - **Experience:** Expert - **Salary:** $125,100.0 - $225,200.0 - **Contract:** Contract - **Skills:** Xacta, Microsoft Word, Microsoft Excel, Amazon Web Services, Microsoft Azure, Cloud Computing, Configuration Management, Cyber Security, Information Systems, DevOps, Information Security Management, Information Systems Security Architecture Professional, Network Security, Microsoft Office, Networking Basics, Network Diagrams, Microsoft PowerPoint, SAP Security, Security Information and Event Management, Scripting, Firewalls (Computer Science), Information Technology, Splunk, Devsecops, Plan of Action and Milestones, Vulnerability Analysis, Programming Languages - **Published:** September 9, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9155945/senior-information-systems-security-officer-isso ## About the Role * Utilize Joint Special Access Program Implementation Guide (JSIG) /Risk Management Framework (RMF) to achieve and maintain Authorization to Operate (ATO), Interim Authorization to Test (IATT), and Authority to Connect (ATC) for all existing and new Information Systems (IS) that require accreditation to include on premise and cloud platforms, * Strong ability to produce and maintain varied technical documentation * Knowledge of risk management processes (e.g., methods for assessing and mitigating risk) * Broad knowledge of Information Technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption); computer networking concepts and protocols, and network security methodologies; network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth) * Experience in reviewing and implementing secure configuration management techniques * Practical experience in guiding systems through NIST SP 800-37 RMF steps, from Prepare to Monitor, using CNSSI 1253 to ascertain appropriate Confidentiality, Integrity, and Availability levels, and the NIST SP 800-53 controls associated with each level * Experience with Enterprise Mission Assurance Support Service (eMASS) and Xacta * Must have a Bachelors' Degree in Computer Science/Engineering/Cybersecurity or other relevant Engineering field from an accredited university with minimum 8 years of experience * Top Secret (TS) security clearance with eligibility for Secret Compartmented Information (SCI) * Willingness to submit to a Counterintelligence polygraph to achieve SAP security Clearance within 3 months of hire * Possess a DoD 8140.03/8570.01 Information Assurance Manager II certification: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Authorization Professional (CAP), CompTIA Advanced Security Practitioner Plus (CASP+), GIAC Security Leadership Certification (GSLC), Chief Information Security Officer Certification (CCISO), or Healthcare Information Security and Privacy Practitioner (HCISPP) * Must have the ability to work in a dynamic environment and effectively interact with numerous DoW, military/civilian personnel, and industry partners * Working knowledge of Microsoft Office (Word, PowerPoint, and Excel) * 100% onsite is required in Colorado Springs, CO Desired Skills: * Experience with DEVOPS / DEVSECOPS operations and requirements * Knowledge of Cloud Computing such as Amazon AWS, and Microsoft Azure platforms * Knowledge of cyber tools such as Security Information and Event Management (SIEM) systems, vulnerability detection, scripting languages, and/or programming languages ## Description * Maintain and develop System Security Plans (SSP), Security Controls Traceability Matrices (SCTM), Risk Assessment Reports (RAR), Continuous Monitoring Plans (ConMon), Security Assessment Reports (SAR), and Plan of Actions and Milestones (POA&M) * Ability to Develop and update documentation, policy, and procedures such as: Ports Protocols and Services Management (PPSM) worksheets, system and network diagrams / descriptions, and SOPs * Expert knowledge of and hands on experience with Security Technical Implementation Guides (STIGs), Assured Compliance Assessment Solution (ACAS), Splunk, Netwrix, Endpoint Security Solutions (ESS)/Trellix * Coordinate and perform security audits and system updates to identify nonstandard events and maintain system and information integrity * Play an active role in conducting continuous monitoring activities on Accredited Information Systems (AIS) its environment of operation to include developing and updating the system artifacts, managing, and controlling changes to the system * Conduct security impact analysis activities and provide to the Information Systems Security Manager (ISSM) on all configuration management changes to the authorization boundaries * Report Cyber incidents or vulnerabilities to the ISSM and/or government chain of command