Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
Runavir in Hanover, MD seeks an Information Systems Security Officer II (ISSO2) to manage day-to-day security operations and monitor systems with limited supervision. The role emphasizes continuous monitoring, STIG checks, and secure tool health and coverage verification.
Responsibilities include coordinating remediation with admins and engineers, validating fixes via re-scan, maintaining evidence repositories, and providing posture inputs to support RMF reporting.
Location: Hanover, MD (On-Site) | Status: Open
We are currently seeking an Information Systems Security Officer II (ISSO2) to independently execute and coordinate day-to-day security operations for assigned systems with limited supervision. This role leads continuous monitoring technical activities, including scan scheduling and support, log/alert triage, STIG compliance verification, and security tool health and coverage checks. The ISSO2 coordinates remediation actions with system administrators and engineers, validates corrective actions through re-scan and re-check activities, and maintains accurate operational security evidence repositories, providing technical evidence and posture inputs to the ISSM to support RMF reporting and assessments. This role does not own RMF package governance, manage POA&Ms as the accountable authority, or make risk acceptance decisions.
If you are detail-oriented, comfortable owning day-to-day security operations, and enjoy driving remediation to closure, then this is the position for you!
Courses run 0800-1700, Monday through Friday. Contract core hours are 1000-1400.
General office environment. The work environment is fast-paced and sometimes involves extreme deadline pressures. The nature of the work requires a high degree of teamwork and cooperation with other members of the staff as well as individuals across the Company and Customers.
TS/SCI with Polygraph
One of the following:
A degree in Information Assurance, Information Security, Information Systems, Information Technology, Computer Networking, Information Science, Cybersecurity, or a related field is preferred.
Information Assurance Manager (IAM) Tier I certification must be obtained within six (6) months of assignment to the position. Continued certification must be maintained through continuous education or sustainment training while serving in this role.
Procedure Compliance: Each employee must read, understand, and implement the general and specific operational, safety, quality, and environmental requirements of all plans, procedures, and policies pertaining to his/her job. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, ancestry, marital status, sexual orientation, gender identity or expression, disability, genetic information, pregnancy or pregnancy-related conditions, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.
$160,000 - $200,000
The compensation range or hourly rate listed for this position is provided as a good faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws.
Our health and welfare benefits are designed to support you and your priorities. For a full overview of our offerings, visit runavir.com/benefits.
Note: Benefits may vary based on employment type, location, and applicable agreements.