Information System Security Officer

Leidos

Huntsville (TN)

Hybrid

USD 87,000 - 157,000

Full time

9 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Leidos Dynetics, reporting through our Digital sector, seeks an Information System Security Officer (ISSO) to join a diverse team in Huntsville, AL. You will support cybersecurity compliance for DoW classified systems in a DCSA approved environment, under the ISSM, maintaining ATO artifacts and RMF activities.

On-site work at Huntsville with up to 20% local telework; active DoD Secret clearance required with eligibility for Top Secret post hire.

Qualifications

  • Active DoD Secret clearance required now.
  • RMF implementation and assessment in regulated/classified environments.
  • Experience performing security assessments and vulnerability management.
  • Excellent written and verbal communication; able to convey security requirements to diverse teams.

Responsibilities

  • Oversee day-to-day cybersecurity compliance of classified systems.
  • Maintain Authorization to Operate artifacts and continuous monitoring evidence.
  • Evaluate controls, coordinate remediation with administrators and engineers.
  • Perform STIG/SCAP assessments and configuration reviews.
  • Provide cybersecurity guidance to system owners and engineers.
  • Support incident response, sanitization, and declassification activities.
  • Develop and maintain system security plans and assessment artifacts.

Skills

RMF knowledge
Security auditing
Technical writing
Communication skills

Education

Bachelor’s degree in CS/IS or related field
Master’s degree considered for experience

Tools

STIG Viewer
SCAP
eMASS
Splunk
Tenable/ACAS

Job description

Leidos Dynetics, reporting through our Digital sector, is seeking a talented Information System Security Officer (ISSO), to join a diverse team, to create unique solutions for complex problems. With offices across the United States engaging in the defense, space, cyber and commercial fields, Dynetics provides responsive, cost-effective engineering, scientific and IT solutions. This position will report to our Huntsville, AL location.

In this role, you will support the cybersecurity compliance and operational security of DoW classified information systems operating within a DCSA approved environment. Working under the direction of the Information System Security Manager (ISSM), you will assist in maintaining Authorization to Operate (ATO) compliance, supporting Risk Management Framework (RMF) activities, preparing for DCSA security reviews, and partnering with Information Technology teams to maintain secure and compliant classified information systems.

Location: All work will be performed on-site at our Huntsville, AL office with up to 20% local telework.

Clearance : You must currently hold an active DoD Secret clearance to be considered for this role. You must also be eligible to obtain Top Secret clearance post hire.

Primary Responsibilities

The ISSO is responsible for the day-to-day cybersecurity oversight and compliance of classified information systems, supporting the maintenance of system authorizations and continued compliance with applicable DCSA, DoW, and organizational security requirements.

  • Perform routine cybersecurity compliance assessments and security audits of classified information systems to verify compliance with NIST RMF, DCSA DAAG, NISPOM, organizational security policies and report identified deficiencies, risks, and noncompliance to the ISSM and appropriate stakeholders.
  • Support the Risk Management Framework (RMF) lifecycle, including development, review, and maintenance of authorization artifacts and the system Body of Evidence (BoE).
  • Evaluate implementation and effectiveness of security controls and maintain supporting evidence required for continuous monitoring, assessments, and authorization activities.
  • Perform technical security assessments, including Security Technical Implementation Guide (STIG), Security Content Automation Protocol (SCAP), vulnerability scanning, and configuration reviews.
  • Analyze security findings and vulnerabilities, coordinate remediation activities with system administrators and engineering teams, and validate corrective actions.
  • Review Configuration Management (CM) requests within delegated authority for hardware, software, system configuration, and security-relevant changes. Ensure changes are appropriately documented, assessed for security impact, and processed through the Configuration Control Board (CCB).
  • Provide cybersecurity guidance to system administrators, engineers, program personnel, and system owners regarding secure configurations, system changes, and implementation of security requirements.
  • Conduct periodic technical and administrative assessments to validate continued compliance with approved security plans, procedures, and authorization requirements.
  • Support security incident response activities, including investigation, documentation, evidence preservation, containment, corrective actions, and reporting.
  • Support sanitization, declassification, transfer, and release of information system hardware and media in accordance with applicable security requirements and Authorizing Official (AO) guidance.
  • Develop, review, and maintain cybersecurity documentation, procedures, system security plans, assessment artifacts, and other technical documentation.
  • Evaluate and support implementation of new cybersecurity processes, technologies, and tools to improve system security, compliance, and operational effectiveness.
  • Provide cybersecurity education and guidance to system users, administrators, and program personnel as required.
  • Support DCSA assessments, security reviews, inspections, and other internal or external cybersecurity assessment activities.

Required Qualifications

  • Bachelor’s degree with 4+ years of relevant cybersecurity, information technology, information assurance, or information systems security experience, or a Master’s degree with 2+ years of relevant experience. Additional relevant experience may be considered in lieu of a degree consistent with Leidos job-level requirements.
  • Current DoD 8140/DoD Cyber Workforce Framework (DCWF) certification (Security+ or higher) or equivalent approved education, training, or experience.
  • Working knowledge of the Risk Management Framework (RMF) and implementation and assessment of cybersecurity controls within regulated or classified environments.
  • Experience performing information system security assessments, compliance auditing, vulnerability assessment, system hardening, or security configuration management.
  • Working knowledge of Windows and/or Linux operating systems and associated security configurations.
  • Experience interpreting and applying cybersecurity requirements such as NIST SP 800-53, DISA STIGs, DCSA/DoW security requirements, or comparable government cybersecurity standards.
  • Ability to analyze technical security findings, identify risk, recommend corrective actions, and communicate security requirements to both technical and nontechnical stakeholders.
  • Demonstrated ability to develop and maintain detailed cybersecurity documentation and objective evidence supporting system compliance.
  • Strong organizational, analytical, written, and verbal communication skills with the ability to independently manage multiple cybersecurity activities and priorities.
  • Ability to work collaboratively with Information Technology, system administrators, engineers, program management, physical security, and other cybersecurity personnel.

Relevant Experience Considered

  • Relevant experience may include a combination of: Cybersecurity, information assurance, information systems security, system administration, system hardening, or Information Technology. RMF compliance, security control implementation or assessment, continuous monitoring, or maintenance of authorization packages.
  • DCSA Assessment and Authorization Guide (DAAG), NISPOM, NIST SP 800-53, DISA STIG, or comparable government cybersecurity requirements.
  • Administration or security assessment of Windows, Linux, Active Directory, Group Policy, Delinea, or comparable enterprise technologies.
  • Vulnerability scanning, security configuration assessment, audit log analysis, or security monitoring.
  • Technical support of classified information systems, laboratories, engineering environments, or other regulated computing environments.
  • Project or program management experience involving technical, cybersecurity, compliance, or information system activities.

Preferred Qualifications

  • Experience supporting DCSA-authorized classified information systems and maintaining systems through the RMF authorization and continuous monitoring lifecycle.
  • Experience developing and maintaining RMF authorization artifacts within eMASS.
  • Hands‑on experience performing STIG, SCAP, vulnerability, and configuration compliance assessments.
  • Experience with cybersecurity and monitoring tools such as Splunk, Trellix, Tenable/ACAS, SCAP, STIG Viewer, or comparable technologies.
  • Experience assessing security configurations across Windows and Linux environments, including Active Directory, Group Policy, and identity or privileged‑access management technologies.
  • Experience supporting DCSA assessments, authorization activities, inspections, or cybersecurity readiness reviews.
  • Experience analyzing cybersecurity findings, developing remediation strategies, and coordinating corrective actions with system administrators, engineers, and program personnel.
  • Knowledge of cybersecurity incident response activities, including identification, preservation, containment, eradication, recovery, and reporting. Industry cybersecurity certifications such as CISSP, CISM, CISA, CySA+, Security+, or other certifications relevant to the assigned DoD 8140/DCWF work role.

If you’re looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 — and moving faster than anyone else dares.

Original Posting:

September 22, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $87,100.00 - $157,450.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information System Security Officer
Information System Security Officer

Leidos • Huntsville (AL)

Hybrid
USD 87,000 - 157,000
Information System Security Officer
Information System Security Officer

Koitecc Solutions • Huntsville (AL)

Hybrid
USD 87,000 - 157,000
Health benefits
Paid leave
Retirement plan
+1
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Leidos Inc • Lorton (VA)

On-site
USD 87,000 - 157,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Leidos Inc • Oklahoma City (OK)

On-site
USD 87,000 - 157,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Leidos • Lorton (VA)

On-site
USD 87,000 - 157,000
Information System Security Officer
Information System Security Officer

Leidos • United States

Hybrid
USD 87,000 - 157,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Via Logic LLC • Lorton (VA)

On-site
USD 87,000 - 157,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Koitecc Solutions • Lorton (VA), Northern (KY)

Hybrid
USD 87,000 - 157,000
Senior Information System Security Officer(ISSO)
Senior Information System Security Officer(ISSO)

Leidos • Maryland

On-site
USD 131,000 - 237,000
Paid Time Off
11 paid Holidays
401K with 6% company match
+5
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Koitecc Solutions • Oklahoma City (OK)

On-site
USD 87,000 - 157,000