Information System Security Officer

Base-2 Solutions

$90K — $130K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in computer science, software engineering, or a related field required.
  • 9 or more years of relevant experience required, additional experience may substitute for a degree.
  • Experience in developing and enforcing security policies for regulatory compliance.
  • Proven ability to conduct risk assessments and identify vulnerabilities.
  • Demonstrated capability in implementing strategies to mitigate security risks.
  • Strong experience in monitoring systems for security breaches and suspicious activities.
  • History of responding to security incidents and implementing corrective actions.

Responsibilities

  • Collaborate with technical teams to ensure systems meet security compliance standards.
  • Implement the Risk Management Framework (RMF) process for various testing scenarios.
  • Update and maintain Xacta documentation relevant to security assessments.
  • Load and manage artifacts including STIG checklists and ACAS scans.
  • Assist in implementing STIG checklists and addressing scan findings.
  • Provide informed responses to security-related queries during system development.
  • Support security assessment events and address inquiries from relevant security teams.

Benefits

  • 100% medical, dental, and vision premiums covered for employees and dependents.
  • 401(k) with immediate vesting and up to 8% total company contribution.
  • Flexible paid time off (PTO) up to 20 days plus 11 paid floating holidays.
  • Flexible work schedules, including options for compressed work periods.
  • Employee referral bonuses up to $10,000 per referral hired.
Full Job Description
  • Requisition ID: 3240
  • Standard Title:
  • Required Security Clearance: Top Secret/SCI with CI Polygraph
  • Location: Annapolis Junction, MD
  • Work Type: On-Site
  • Shift: First
  • Referral Eligibility: Eligible
  • U.S. Citizenship Required? Yes


Position Summary

Base-2 Solutions is seeking an Information System Security Officer to work with application leads, system administrators, database administrators, developers, and testers to ensure assigned systems are security compliant and achieve or maintain Authority to Operate (ATO). The role includes following the Risk Management Framework (RMF) process for full test, partial test, continuous monitoring (CONMON), and no test scenarios, updating Xacta documentation including System Security Plans (SSPs), Security Control Trace Matrices (SCTM), Security Test Plans (STPs), and Plans of Action and Milestones (POAMs). The specialist will load artifacts such as Security Technical Implementation Guide (STIG) checklists and ACAS scans, help implement STIG checklists, mitigate scan findings, and support security assessment events by responding to questions from the Security Test and Evaluation (ST&E) team, Information System Security Managers (ISSMs), and Security Control Assessors (SCAs).
Essential Duties and Responsibilities
  • Work with application leads, system administrators, database administrators, developers, and testers to ensure assigned systems are security compliant and achieve or maintain ATO.
  • Follow the RMF process for full test, partial test, continuous monitoring (CONMON), and no test scenarios.
  • Update Xacta documentation including SSPs, SCTM, STPs, and POAMs.
  • Load artifacts such as STIG checklists and ACAS scans.
  • Help implement STIG checklists and mitigate scan findings.
  • Answer questions to ensure systems are developed with security compliance built in.
  • Support security assessment events and respond to all questions from the PAT team, ISSMs, and SCAs.
Required Qualifications
  • Bachelor's degree in computer science, software engineering, or a field applicable to the position required.
  • 9 or more years of relevant experience required with a Bachelor's degree.
  • Additional experience may be considered in lieu of degree.
  • Demonstrated experience in developing, implementing, and enforcing security policies, standards, and procedures to ensure regulatory compliance and protect organizational information assets.
  • Proven track record in conducting risk assessments and identifying vulnerabilities in systems, networks, and applications.
  • Experience in developing and overseeing implementation of mitigation strategies to reduce security risks.
  • Strong background in monitoring systems and networks for security breaches and suspicious activity.
  • Successful history of responding to security incidents, investigating root causes, and implementing corrective actions.
Preferred Qualifications
  • Comprehensive knowledge of relevant laws, regulations, and industry standards.
  • Experience conducting audits and assessments to verify adherence to security requirements.
Required Education and Experience Equivalency
  • High School with 13 years of experience.
  • Associates with 11 years of experience.
  • Bachelor's with 9 years of experience.
  • Master's with 7 years of experience.
  • PhD with 5 years of experience.
Required Certifications
  • None specified.
Required Security Clearance
  • Active Top Secret/SCI with CI Polygraph


Pay & Benefit Highlights
Compensation
  • Competitive fixed salary or hourly pay (based on experience, skills, location, and internal equity).
  • Employee referral bonuses up to $10,000 per hired referral.
  • Additional bonus opportunities for exceptional performance and contributions to business development and company growth (role-dependent).
Health
  • 100% company-paid medical premiums for employees and eligible dependents.
  • Choose from multiple plan options with CareFirst, Kaiser, and UnitedHealthcare, including PPO, POS, HMO, and HSA-compatible plans.
  • 100% company-paid dental premiums for employees and eligible dependents.
  • 100% company-paid vision premiums for employees and eligible dependents.
Income Protection
  • 100% company-paid premiums for short-term disability.
  • 100% company-paid premiums for long-term disability.
  • 100% company-paid premiums for accidental death & dismemberment (AD&D).
  • 100% company-paid premiums for life insurance up to $200,000.
Retirement
  • 401(k) with immediate vesting: 4% company match plus a 4% non-elective company contribution (8% total).
  • 401(k) pre-tax and Roth options.
Leave
  • Up to 20 days of flexible paid time off (PTO).
  • 11 paid floating holidays.
Work-Life Balance
  • Flexible work schedules, including flex time and compressed work periods (contract and project-dependent).

Similar Jobs

More Jobs at Base-2 Solutions

More Information Technology Jobs

Find similar Information System Security Officer jobs: