Information System Security Officer

Leidos Holding$107K — $195K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • US citizenship is required per contract.
  • BS degree with 8 to 12 years of relevant experience.
  • Active TS-SCI clearance with Polygraph required.
  • Experience with ICD-503 and NIST risk management framework.
  • Familiarity with XACTA, XACTA 360, HBSS, ACAS, Nessus, SPLUNK.

Responsibilities

  • Develop risk mitigation strategies for projects and processes.
  • Maintain and update security documentation such as System Security Plans and POA&Ms.
  • Drive security changes through control boards to meet Risk Management milestones.
  • Provide guidance for secure software/hardware processes and apply security standards.
  • Resolve complex security problems using technical knowledge and critical thinking.
  • Conduct security audits and assessments, tracking remediation efforts on POA&Ms.
  • Manage security profiles and coordinate with Systems Administrators to remediate vulnerabilities.

Benefits

  • Provides leadership over security assessment activities.
  • Assists with vulnerability management program using Nessus and Tenable-ACAS.
  • Engages with program lab team to implement security best practices.
  • Works collaboratively to improve security processes and meet requirements.
  • Participates in Assessment and Authorization (A&A) activities.
Full Job Description

The National Solutions Business Area is currently seeking an Information System Security Officer (ISSO).  The ISSO will be responsible for managing the authorizations and risks related to the processing, storage, and transmission of information for one or more programs within the Analysis Sustainment portfolio.  The ISSO is responsible for meeting regulatory and non-regulatory compliance (security best practices) demands, providing leadership over security assessment activities, working across system ownership and management organizations to test security controls, policies, and procedures, providing program management support, team leadership, and participating in and coordinating the support as needed for security assessment and activities  The ISSO also manages and enforces government and corporate information security policies, provides training, and educates end users and program staff about proper security practices.

The ISSO conducts security and risk assessments as required using a range of security accreditation frameworks (e.g., NIST, RMF, Common Criteria, DoD, the Intelligence Community Directives (ICDs)), and works to mitigate risks by applying security controls effectively to achieve an acceptable degree of operational risk.  As part of this process, the ISSO performs testing and security assessments to sustain required accreditations.  The ISSO promotes the use of secure hardware and software within the systems affected by government and corporate approval standards.  The ISSO works to ensure all required security policies and practices are effectively applied to systems and ensures security controls implementing these policies are applied and achieve the proper levels of confidentiality, integrity, availability, and privacy protection throughout the system life cycle. 

The ISSO also assists with the execution, analysis, and remediation activities for the vulnerability management program (scanning, assessment, reporting, and mitigation verification) that spans different accreditation entities, three distinct classification domain enclaves (U), (S) and (TS), using the Nessus and Tenable-ACAS vulnerability scanning tools.   

Primary Responsibilities:

  • Develops risk mitigation strategies that contribute to the effectiveness, efficiencies, and performance outcomes for strategic projects, program goals, and business processes.

  • Must be able to quickly respond to the needs for updates and maintenance of security documentation, especially System Security Plans, Plans of Actions and Milestones (POA&Ms); Security Impact Assessment for proposed system changes, and Concept of Operations that identify and explain how each system satisfies its assigned security control baselines.

  • Maintains system security plans and related configuration records in customer Service+ (ServiceNow), XACTA-360 platform, and Leidos-CIO security tools.

  • Drives necessary security changes through steering groups and control (review) boards to meet Risk Management milestones.

  • Can work independently as well as collaboratively to drive security process improvements, especially to address gaps in meeting customer or Leidos security requirements and meet due diligence responsibilities.

  • Provides guidance and engages the program lab team to implement secure software and hardware processes, apply government security standards, and commercial best security practices.

  • Resolves highly complex security problems by applying technical knowledge, conceptualizing, reasoning, and interpretation of requirements.

  • Communicating with Leidos and NGA leadership (internally or client) regarding matters of significant importance to the organization/project.

  • Apply in-depth understanding of information security technical principles, theories, concepts, and their application across a range of programs.

  • Develop and maintain security documentation per NGA/IC/DoD-DISA/NIST/Industry standards and policies.

  • Initiate and coordinate all Assessment and Authorization (A&A) and renewal activities working with the NGA Designated Authorization Officials (DAO or DAOR).

  • Address any Information Assurance or Cybersecurity notices, orders, tasking, or directives as required following the NGA operations vulnerability and patch management processes.

  • Measure effectiveness of defense-in-depth architecture and Zero Trust policy implementations against known vulnerabilities.

  • Perform security audits and assessments, including creating, tracking, and assisting in remediation of Plan of Action and Milestones (POA&Ms).

  • Coordinate with System Administrators and others to remediate all vulnerabilities and report results.  Track open vulnerabilities and obtain and document approvals while managing POA&M status.

  • Update Security CONOPS and Information Technology Disaster Recovery (ITDR) plans for each Security Plan.

  • Manage security profiles and implementation for systems and services scheduled for Assessment and Authorization (A&A).

  • Work with the Systems Engineers and Administrators, Senior ISSO, ISSMs, Lab Team, and Leidos Corporate Security as required to develop and maintain security plans and associated documentation.

  • Maintain records and documentation on program IT systems, upgrades, patches, and connectivity configurations.

  • Evaluate security solutions and implementation strategies for program IT systems and services and maintains operational security posture of development, integration, and deployed capabilities.

  • Provide training and approve user access and IAA (identification, authorization, and authentication) mechanisms for information systems.

Basic Qualifications:

  • US citizenship is required per contract.

  • BS degree and 8 to 12 years of prior relevant experience to operate within the scope of responsibilities.

  • Active TS-SCI clearance with Polygraph

  • NGA experience desired.

  • Experience that demonstrates an understanding and application of the ICD-503 and NIST risk management framework.

  • Experience desired with the following systems/platforms/tools: XACTA; XACTA 360 (preferred); HBSS; ACAS; Nessus, SPLUNK.

Preferred Qualifications:

  • Has 3+ years of experience operating, analyzing, and resolving vulnerability scan results using tools such as Nessus, Tenable Security Center, or a comparable commercial or GOTs product.

  • Active Certified Information Systems Security Professional (CISSP) certification or ISACA Certified Information Security Manager (CISM) certification.

  • Intelligence Community experience preferred.



Original Posting:
June 10, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:
Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos Holding

Leidos Holding Careers

Joining Leidos Holding presents an unparalleled opportunity to advance one's career with a leader in innovation and technology. The company offers a plethora of job opportunities aimed at fostering professional growth and development in a diverse and inclusive environment.

Explore Career Opportunities

Leidos Holding is actively seeking skilled professionals who are passionate about leveraging their expertise to drive innovation and leadership in their fields. With a variety of open positions, Leidos Holding provides a platform for individuals to challenge themselves in a dynamic work environment.

Innovation and Professional Growth

At Leidos Holding, innovation is at the core of everything they do. Employees are encouraged to think creatively and push boundaries. The company supports this drive for innovation through comprehensive professional development and diversity training programs that are designed to enhance skills and foster leadership.

Commitment to Diversity and Inclusion

Leidos Holding is committed to creating a workplace where diversity is not only recognized but celebrated. With a culture that values and promotes diversity, Leidos Holding ensures that all team members have the opportunity to contribute, learn, and grow.

Internship Programs

For those starting their career, Leidos Holding offers internship programs that provide a robust foundation in the industry. Internships are a great way to develop essential skills, gain valuable work experience, and build professional networks.

Benefits and Culture

Employees at Leidos Holding enjoy a range of benefits designed to support their professional and personal lives. The company culture is built on a foundation of respect and integrity, providing a supportive and collaborative environment where every team member is valued.

Join the Team

Leidos Holding is hiring! Explore job opportunities that match your skills and interests. Leidos Holding looks for driven, curious, and innovative individuals to join their team. Positions are available across various disciplines and experience levels.

Stay Connected

Stay informed with the latest career tips, industry insights, and company news from Leidos Holding. Subscribe to receive updates and be the first to know about new job opportunities, company developments, and more.

Prepare for Your Interview

To prepare for an interview at Leidos Holding, candidates should familiarize themselves with the company's missions and values, update their resumes, and be ready to discuss how their background and skills align with the position they are applying for.

Networking and Career Advancement

Leidos Holding encourages its employees to engage in networking within the company to discover new opportunities for career advancement. The leadership team at Leidos Holding is dedicated to supporting employees in their career paths with ample opportunities for networking and growth.

Explore Leidos Holding Jobs and Careers

Discover the exciting career opportunities at Leidos Holding today. With a commitment to employee growth, innovation, and diversity, Leidos Holding is the perfect place to advance your career. Check out the latest job listings and find your perfect fit at Leidos Holding.

SEARCH LEIDOS HOLDING JOBS

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts and insider tips tailored to your preferences from Leidos Holding. See what exciting and rewarding opportunities await in your professional journey.
Learn more about Leidos Holding

Similar Jobs

More Jobs at Leidos Holding

More Information Technology Jobs

Find similar Information System Security Officer jobs: