×
Register Here to Apply for Jobs or Post Jobs. X

Information Systems Security Officer (ISSO) (GC-2

Job in Ellicott City, Howard County, Maryland, 21042, USA
Listing for: Legato, LLC
Full Time position
Listed on 2026-07-31
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, Network Security
Salary/Wage Range or Industry Benchmark: 160000 - 180000 USD Yearly USD 160000.00 180000.00 YEAR
Job Description & How to Apply Below
Position: Information Systems Security Officer (ISSO) (GC-2)

Information Systems Security Officer (ISSO) in Hanover, MD.

Security

Clearance Required:

TS/SCI w/ Polygraph

Salary Range: $160,000-$180,000, depending on experience.

What You Will Do

The Information Systems Security Officer (ISSO) will support the security posture of mission-critical information systems by implementing, maintaining, and enforcing information assurance policies, standards, and procedures throughout the system lifecycle. This role is responsible for ensuring systems remain compliant with security requirements while supporting the Risk Management Framework (RMF) authorization process for classified environments.

The ISSO will maintain the day-to-day operational security of assigned information systems, supporting approximately 10–15 System Security Plans (SSPs). They will work closely with system owners, engineers, ISSMs, and cybersecurity teams to ensure security controls are implemented, documented, and maintained in accordance with customer and regulatory requirements.

The successful candidate will prepare, review, and maintain RMF documentation, including System Security Plans (SSPs), Risk Assessment Reports (RARs), Security Assessment and Authorization (A&A) packages, and System Requirements Traceability Matrices (SRTMs). They will support security authorization activities in accordance with the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) and assist with vulnerability assessments, risk analysis, and continuous monitoring activities.

The ISSO will evaluate security solutions to ensure they meet security requirements for processing classified information, support configuration management activities for security-related hardware, software, and firmware, and assess the security impact of system changes. They will also coordinate with stakeholders to implement information system security policies, maintain compliance, and support ongoing cybersecurity operations.

Our

Minimum Requirements For This Role
  • Ten (10) years of experience as an Information Systems Security Officer (ISSO) supporting programs or contracts of similar scope, type, and complexity.
  • Experience supporting the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) and security authorization processes.
  • Experience preparing and maintaining System Security Plans (SSPs), Risk Assessment Reports (RARs), Assessment and Authorization (A&A) packages, and System Requirements Traceability Matrices (SRTMs).
  • Experience performing vulnerability assessments, risk analysis, continuous monitoring activities, and configuration management of security-related hardware, software, and firmware.
  • Experience evaluating the security impact of system changes and maintaining compliance with information assurance policies, standards, and procedures.
  • Experience supporting the day-to-day security operations of multiple information systems, typically managing a portfolio of approximately 10–15 System Security Plans (SSPs).
  • Strong written and verbal communication skills with the ability to collaborate effectively with system owners, engineers, cybersecurity professionals, and government stakeholders.
  • Bachelor's degree in Computer Science or a related technical discipline from an accredited college or university. Four (4) additional years of ISSO experience may be substituted for a bachelor's degree.
  • Current IAT Level II certification or higher.
Desired (not Required)
  • Experience with eMASS, Xacta, or similar RMF management tools.
  • Experience supporting classified systems
  • Knowledge of Security Technical Implementation Guides (STIGs), Security Content Automation Protocol (SCAP), and vulnerability scanning tools such as ACAS, Nessus, or Tenable Security Center.
  • Knowledge of current security tools, hardware and software security implementation, communication protocols, and encryption technologies.
  • Experience supporting security control assessments, audits, and continuous monitoring activities.
About Your New Company

Legato, LLC is a dynamic small business headquartered in Columbia, near Ft. Meade, MD. Our positions include Cyber, Software, Systems, Networking, Data Science and other complex…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary