Information System Security Officer (ISSO)

Peraton

Laurel (MD)

On-site

USD 120,000 - 190,000

Full time

46 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Sign-on bonus (may apply)

Job summary

Peraton Labs is seeking a poly-cleared Information System Security Officer to manage RMF and day-to-day security operations in a high-availability HPC environment. You will own continuous monitoring, maintain ATO posture, and collaborate with subcontractor and customer staff to ensure secure implementation and compliance.

The role requires full-time on-site work in Laurel, MD, with responsibilities across development, operations, and modernization of security controls and incident response.

Qualifications

  • 6+ years of experience with BS or 10 years with no degree, in computer science/IT or related field
  • 4+ years of experience supporting DoD/IC or government systems
  • Hands-on RMF tasks and authorization artifacts (SSP/POA&Ms/continuous monitoring evidence)
  • Strong knowledge of NIST SP 800-53 controls and mapping to implementations
  • Experience with vulnerability and configuration compliance workflows
  • Familiarity with Linux-based enterprise environments and hardening concepts
  • Ability to communicate risk clearly to engineers and leadership
  • Strong documentation discipline
  • Active TS/SCI with polygraph is required

Responsibilities

  • Act as the ISSO supporting the system security lifecycle across development and operations
  • Execute and maintain RMF activities including control implementation oversight and evidence collection
  • Maintain authorization artifacts (SSP, narratives, diagrams, CM plan, incident handling)
  • Oversee continuous monitoring: vulnerability management, config compliance, patching coordination
  • Review and approve security changes and validate configurations after upgrades
  • Support incident response and post-incident lessons learned
  • Ensure least privilege and access governance across accounts and privileged workflows
  • Translate security requirements into actionable engineering guidance

Skills

RMF tasks
NIST SP 800-53 mapping
Vulnerability/configuration workflows
Linux-based enterprise environments
Risk communication
Documentation discipline
Security clearance TS/SCI with poly

Education

BS in CS/IT or related technical discipline

Tools

eMASS

Job description

Required qualifications

  • 6+ years of experience and a BS in computer science, IT, or related technical discipline, MS and 4+ years of experience. Four years of additional experience is required in lieu of a Bachelors’ degree for a total of 10 years of experience
  • 4+ years of experience supporting DoD/IC or government systems
  • Hands-on experience executing RMF tasks and maintaining authorization artifacts (SSP, POA&Ms, continuous monitoring evidence)
  • Strong working knowledge of NIST SP 800-53 controls and how they map to technical implementations and procedures
  • Experience with vulnerability and configuration compliance workflows
  • Familiarity with Linux-based enterprise environments and common hardening concepts
  • Ability to communicate risk clearly to both technical engineers and non-technical leadership
  • Strong documentation discipline
  • Active TS/SCI security clearance with a current polygraph is required.

Preferred qualifications

  • Experience securing or assessing containerized workflows (e.g., container runtime hardening, image governance, supply chain considerations)
  • Experience with eMASS (or comparable GRC tooling), security control inheritance models, and assessor engagement.
  • Familiarity with vulnerability tooling and security monitoring concepts
  • Active certifications such as: CISSP, CISM, CAP, GSLC, Security+, CCSP, etc.
  • Experience with data protection requirements relevant to sensitive environments

#MDPM

#MDFSP

Peraton Labs is seeking a poly cleared Information System Security Officer for a mission-critical, highly complex HPC environment enabling research across multiple security domains. You will own day-to-day security operations aligned to RMF, drive continuous monitoring, maintain ATO posture, and partner closely with subcontractor and customer personnel to ensure implementation and compliance.

This position requires full-time on-site work in Laurel, MD.

Key responsibilities may include

  • Act as the ISSO supporting the system security lifecycle across development, operations, and modernization
  • Execute and maintain RMF activities (e.g., control implementation oversight, evidence collection, assessment support, POA&M management, continuous monitoring)
  • Maintain security authorization artifacts (e.g., SSP, control narratives, diagrams, inheritance/leverage controls, CM plan, incident handling plan, contingency artifacts, user/admin procedures)
  • Operate continuous monitoring: vulnerability management, config compliance, patching coordination, scan result triage, risk acceptance, and remediation verification
  • Review and approve security-relevant changes through configuration/change control and validate security configurations after major upgrades
  • Support incident response and reporting: participate in investigations, coordinate containment actions, preserve evidence, and contribute to post-incident lessons learned
  • Ensure least privilege/access governance: account management oversight, privileged access workflows, periodic access reviews, and audit compliance requirements
  • Translate security requirements into implementation guidance that engineering teams can operationalize (clear, testable, and automatable where possible)

*This position may be eligible for an increased sign-on bonus. Eligibility, bonus amount, and applicable terms and conditions will be discussed during the recruiting process*

#MDFSP

#PLABS26

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

ME00673-Senior Information System Security Officer (ISSO)
ME00673-Senior Information System Security Officer (ISSO)

Momentum Engineering, Inc • Washington, Northern (KY)

On-site
USD 120,000 - 165,000
Paid holidays
3 weeks PTO
Group medical plan
+4
ME00673-Senior Information System Security Officer (ISSO)
ME00673-Senior Information System Security Officer (ISSO)

Momentum Engineering, Inc. • Washington

On-site
USD 120,000 - 180,000
11 paid holidays
3 weeks PTO
Company medical plan
+4
Information System Security Officer
Information System Security Officer

Peraton • Maryland

On-site
USD 110,000 - 170,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Power3 Solutions • Fort Meade (MD)

On-site
USD 170,000 - 230,000
401(k) with Company Match
Profit Sharing & Performance Bonuses
Leave Buy-Back Program
+2
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Peraton Labs • Laurel (MD)

On-site
USD 104,000 - 166,000
Medical benefits
401(k)
Paid time off (PTO)
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

Peraton • Laurel (MD)

On-site
USD 135,000 - 216,000
Competitive salary
Discretionary bonus
Information Systems Security Officer
Information Systems Security Officer

Base-2 Solutions, LLC • Maryland

On-site
USD 120,000 - 160,000
Senior Information Systems Security Officer (ISSO)
Senior Information Systems Security Officer (ISSO)

Independent Software, Inc. • Maryland

On-site
USD 100,000 - 130,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

JFL Consulting LLC • Omaha (NE)

On-site
USD 120,000 - 140,000
Full medical coverage (incl. depend.)
FSAs
Life and disability insurance
+3
Information System Security Officer (ISSO) / System Administrator
Information System Security Officer (ISSO) / System Administrator

Sanmina-SCI Systems de México • Huntsville (AL)

On-site
USD 90,000 - 150,000