Information System Security Officer
The Information System Security Officer (ISSO) at Confidential Client is responsible for managing cybersecurity policies, compliance, and risk management frameworks to secure classified computing environments. This role supports internal and external clients, prepares critical security documentation, conducts vulnerability assessments, and serves as an alternate Information Systems Security Manager. The position requires a Top-Secret/SCI clearance and strong analytical, leadership, and communication skills to maintain system accreditation and enforce security controls throughout the system lifecycle.
About Careertakes
👉 Important disclosure: Careertakes is a third-party recruiting platform supporting this hiring process. If selected, you will be employed directly by our client, Defense & Government IT (Cybersecurity).
Applicants for this role may also receive access to additional matched opportunities through the Careertakes platform.
What You’ll Do
This Information System Security Officer (ISSO) will support secured, classified computing environments for a confidential client in Chantilly, VA. Primary responsibilities include:
- Ensure network nodes are operated, maintained, and disposed of in accordance with established security policies and procedures.
- Serve as the ISSO for internal and external customers and act as the alternate Information Systems Security Manager (ISSM) as required.
- Manage cybersecurity compliance documentation and Information Assurance (IA) controls.
- Develop and implement standards, directives, policies, and security controls consistent with Intelligence Community Directive (ICD) 503.
- Apply Risk Management Framework (RMF) methods such as JSIG, CNSSI 1253, NIST SP 800-53, and applicable DoD/NISPOM guidance.
- Support and prepare A&A artifacts including System Security Plans (SSPs), Risk Assessment Reports (RARs), Security Controls Traceability Matrices (SCTMs), and other Assessment & Authorization deliverables.
- Perform and learn independent vulnerability and compliance scans (e.g., Nessus, DISA STIG checks, SCAP/SCC) for applications, networks, and databases.
- Participate in continuous monitoring, security reviews, and technical inspections to identify and remediate vulnerabilities.
Minimum Qualifications
- Bachelor’s degree plus a minimum of 2 years of relevant experience in Cybersecurity, IT, Computer Science, or a related technical area. (Professional experience, internships, lab work, or coursework count toward experience; an additional 2 years of experience may substitute for a degree.)
- At least 1 year of hands-on experience with Risk Management Framework (RMF), JSIG, or similar security frameworks.
- Must be compliant with DoD 8570/8140 and able to achieve IAT Level III certification within 6 months of hire.
- Strong analytical, critical-thinking, organizational, communication, and presentation skills. Able to multitask and collaborate effectively with technical and non-technical stakeholders.
Preferred Qualifications
- Experience obtaining and maintaining system accreditations across the System Development Life Cycle (SDLC).
- Experience with continuous monitoring, vulnerability management, and technical security inspections.
- Proven ability to work effectively under pressure in team-oriented environments.
Security Clearance Requirements
- Possess a current and active Top-Secret/SCI clearance and be able to obtain and maintain a polygraph.
- Eligibility for access to Special Access Program (SAP) information is required.
Physical & Workplace Requirements
- Able to remain stationary for extended periods (up to ~75% of the time) and move within an office to access files and equipment.
- Comfortable giving presentations and communicating clearly with colleagues, management, and clients.
- This is an on-site role based in Chantilly, VA; candidates must be able to work at the client facility as required.
Compensation (Estimated)
- Estimated pay: $123,175 per year (estimated). Actual salary offered will depend on experience and qualifications.
Why Join
- Work on mission-critical cybersecurity and information assurance tasks for a confidential government/defense client.
- Gain hands-on experience with RMF, ICD 503, NIST SP 800-53, DISA STIGS, and industry-leading security tools.
- Join a team-focused environment that supports professional growth and DoD certification attainment.
Equal Opportunity & Hiring Transparency
Careertakes and our client are Equal Opportunity Employers committed to building a diverse and inclusive workforce. We prohibit discrimination or harassment of any kind. To support a fair and efficient hiring process, AI tools may be used to assist with application review or resume screening. These tools do not replace human decision-making. Final hiring decisions are made by people.
If you have questions about how your data is used, please contact us directly.
Negotiate a higher salary! Check the salary ranges for this job type in your area.
View My Salary Range