Amentum

Information System Security Officer (ISSO)

Amentum • $100K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active Top Secret US Government security clearance with SCI eligibility required.
  • Current certification meeting DoD 8140 for Intermediate ISSM (IAM Level II) or a relevant bachelor's degree.
  • Minimum 2 years of experience as an ISSO/ISSM or in a similar cybersecurity role.
  • Hands-on experience with Risk Management Framework (RMF) package development and processing.
  • Familiarity with security tools like Splunk and Tenable Nessus.
  • Proficient in technical writing and MS Office products.
  • Experience with Windows and/or Linux system administration.

Responsibilities

  • Monitor changes to DoW/DoD cybersecurity policies and update local policies accordingly.
  • Review system security audit logs to identify and report anomalous activity.
  • Manage network account authorizations and access requests, ensuring compliance with least privilege.
  • Utilize Tenable Nessus to identify vulnerabilities and collaborate on remediation efforts.
  • Provide cybersecurity and user awareness training to personnel.
  • Conduct annual RMF self-inspections and continuous monitoring assessments.
  • Develop and maintain RMF ATO packages and associated artifacts.

Benefits

  • Medical, Dental, Vision insurance.
  • 401k retirement plan.
  • Paid time off (PTO) accrued weekly.
  • 11 paid holidays.
Full Job Description
Amentum is seeking an experienced Information System Security Officer (ISSO) in Spokane, WA in support of a Department of War (DoW) customer. In this role, you will ensure required cybersecurity measures are implemented across multiple DoW information systems. You will lead all efforts to establish and maintain Authority to Operate (ATO) approvals for standalone networks, collaborating with cybersecurity counterparts to maintain ATOs for shared Wide Area Networks (WANs). A successful candidate is a highly organized self-starter with strong attention to detail, capable of working independently with minimal supervision or as part of a collaborative, mission-focused team.

The ISSO must be familiar with the National Institute of Standards and Technology (NIST) publications: SP 800-53v4, SP 800-53v5, SP 800-37, SP 800-30, 800-39, SP 800-137.

Responsibilities include but are not limited to:
  • Monitor and maintain awareness of changes to DoW/DoD cybersecurity policies, assessing operational impacts and updating local policies accordingly.
  • Review system security audit logs on standalone and networked systems to identify, investigate, and report anomalous activity.
  • Manage all network account authorization, access requests, and required user paperwork for standalone networks and WANs within portfolio, ensuring strict compliance with the principle of least privilege.
  • Utilize Tenable Nessus scanning tools to identify system vulnerabilities and assess STIG compliance. Partner with systems administration and IT teams to remediate and mitigate identified vulnerabilities.
  • Provide required system cybersecurity and user awareness training to personnel.
  • Perform annual RMF self-inspections and continuous monitoring assessments for all supported systems.
  • Develop, update, and maintain Risk Management Framework (RMF) ATO packages and associated artifacts
  • Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM/AO/AODR through established Configuration Control Boards (CCB).
  • Ensure systems are operated, maintained, and disposed of in accordance with applicable DoW/DoD and local security policies and procedures.
  • Support Information System Security Incident Response activities in accordance with DoW/DoD and local Incident Response Plans.
  • Interface with, brief, and advise system stakeholders on all system security-related matters.
  • Maintain the Plan of Action and Milestones (POA&M) to track, prioritize, and resolve system security weaknesses.


Minimum Qualifications:
  • Must have an active Top Secret US Government security clearance with SCI eligibility. Note: US Citizenship is required to maintain a Top Secret Clearance.
  • Must have and be current in at least one of the following certifications to meet DoD 8140 (formerly DoD 8570) for Intermediate ISSM (or IAM Level II): SecurityX/CASP+, CCSP, CCISO, CGRC/CAP, CISSO, Cloud+, GCSA, GSEC, Security+, or SSCP. A bachelor's degree in Information Technology, Cybersecurity, Data Science, Information Systems, or Computer Science can also meet the requirements. Meeting the requirements for Advanced ISSM (IAM III) will also meet the 8140 requirements for Intermediate ISSM.
  • At least 2 years of previous experience as an ISSO/ISSM, System Administrator, or equivalent cybersecurity role.
  • Direct hands-on experience developing, submitting, and processing Risk Management Framework (RMF) packages.
  • Familiarity using any of the following security tools: Splunk, Tenable Nessus, Change Auditor, and Trellix ePolicy Orchestrator (ePO).
  • Technical and professional writing expertise; high proficiency with MS Office products (Word, Excel, Visio, PowerPoint).
  • Previous system administration experience, including familiarity with Windows and/or Linux operating systems, system configuration, account management, security settings, patching, and system hardening


Preferred Qualifications:
  • Bachelor's degree in a Cybersecurity or IT-related field.
  • At least 4 years' previous experience as an ISSO/ISSM or another organizational equivalent.
  • Active certification meeting DoD 8140 IAM Level III requirements (e.g., CISSP, CISM, or GSLC).
  • Experience implementing and assessing Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs).


Other Requirements:
  • This is a non-remote, full-time on-site position located in Spokane, Washington.
  • Standard work schedule is 40 hours per week/8 hours per day with the occasional need to flex hours based on customer support needs.
  • Some after-hours or short-term shift work may be required to support urgent customer requirements, including weekends and holidays.
  • Must be able to sit and/or stand for extended periods of time working at a desk or in a mixed-use office/lab environment where the associated IT equipment and networks are present.
  • Must be able to lift various sizes of materials and equipment (up to 45 lbs).
  • Occasional travel may be required (0-10%).


Compensation & Benefits:

HIRING SALARY RANGE: $100,000 to $130,000 (Annual rate to be determined by the education, experience, knowledge, skills, and abilities of the applicant, internal equity, and alignment with market data.) This position includes a competitive benefits package. Benefits to include:
  • Medical, Dental, Vision, 401k.
  • Paid time off (PTO) accrued weekly at 2.31 hours per week. Accruals are based on years of service.
  • 11 Paid holidays.


Compensation Details:
$100,000 - $130,000

Original Posting:
10/02/2026 - Until Filled
Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may change based on business needs.

About Amentum

Amentum is a leading provider of engineering and technical services to the U.S. government and commercial customers worldwide. The company offers a wide range of services, including environmental remediation, facilities management, and logistics and supply chain management, among others. Amentum has a global presence, with operations in over 20 countries, and serves a diverse range of customers, including the Department of Defense, the Department of Energy, and the Department of State. The company is committed to providing high-quality services and has a strong reputation for technical expertise, innovation, and customer satisfaction.
Learn more about Amentum
Size
20,000 employees
Industry
Net Income
$200 million
Founded
2014
Revenue
$5 billion

Similar Jobs

More Jobs at Amentum

More Information Technology Jobs

Find similar Information System Security Officer (ISSO) jobs: