Information System Security Officer

Leidos Holding$87K — $157K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree plus 4+ years in cybersecurity; or Master's degree with 2+ years; relevant experience may substitute for degree.
  • Ability to meet DoD 8140/DCWF qualification requirements via certification or experience.
  • Working knowledge of Risk Management Framework and cybersecurity controls in classified settings.
  • Experience in conducting security assessments and compliance audits.
  • Familiarity with Windows and Linux OS security configurations.
  • Knowledge of NIST SP 800-53, DISA STIGs, and comparable cybersecurity standards.
  • Strong organizational and communication skills; ability to handle multiple activities.

Responsibilities

  • Oversee day-to-day cybersecurity compliance of classified systems.
  • Monitor and assess security compliance, reporting deficiencies.
  • Support the RMF lifecycle by developing and maintaining documentation.
  • Evaluate the effectiveness of security controls and maintain necessary evidence for assessments.
  • Conduct technical security assessments including STIG and SCAP reviews.
  • Analyze vulnerabilities and coordinate remediation with teams.
  • Guide system administrators in implementing secure configurations.

Benefits

  • Flexible work arrangement with up to 20% telework allowed.
  • Supportive work environment for cybersecurity professionals.
  • Opportunities for professional development and training in cybersecurity.
  • Engagement with diverse teams and technical challenges.
  • Involvement in critical national security projects.
Full Job Description
Location: Work will be performed onsite in Huntsville, AL, and up to 20% telework will be allowed.

Clearance: You must currently hold an active DoD Secret clearance to qualify for consideration.

As the Information System Security Officer (ISSO), you will be responsible for supporting our Classified Information System Cybersecurity/Information Assurance Program. You will report to the Information System Security Manager (ISSM) on all aspects of classified information system security compliance.

Primary Responsibilities

The ISSO is responsible for the day-to-day cybersecurity oversight and compliance of classified information systems, supporting the maintenance of system authorizations and continued compliance with applicable DCSA, DoD, and organizational security requirements. You will:
  • Perform ongoing security monitoring and compliance assessments of classified information systems and report identified deficiencies, risks, and noncompliance to the ISSM and appropriate stakeholders.
  • Support the Risk Management Framework (RMF) lifecycle, including development, review, and maintenance of authorization artifacts and the system Body of Evidence (BoE).
  • Evaluate implementation and effectiveness of security controls and maintain supporting evidence required for continuous monitoring, assessments, and authorization activities.
  • Perform technical security assessments, including Security Technical Implementation Guide (STIG), Security Content Automation Protocol (SCAP), vulnerability scanning, and configuration reviews.
  • Analyze security findings and vulnerabilities, coordinate remediation activities with system administrators and engineering teams, and validate corrective actions.
  • Review Configuration Management (CM) requests within delegated authority for hardware, software, system configuration, and security-relevant changes. Ensure changes are appropriately documented, assessed for security impact, and processed through the Configuration Control Board (CCB).
  • Provide cybersecurity guidance to system administrators, engineers, program personnel, and system owners regarding secure configurations, system changes, and implementation of security requirements.
  • Conduct periodic technical and administrative assessments to validate continued compliance with approved security plans, procedures, and authorization requirements.
  • Support security incident response activities, including investigation, documentation, evidence preservation, containment, corrective actions, and reporting.
  • Support sanitization, declassification, transfer, and release of information system hardware and media in accordance with applicable security requirements and Authorizing Official (AO) guidance.
  • Develop, review, and maintain cybersecurity documentation, procedures, system security plans, assessment artifacts, and other technical documentation.
  • Evaluate and support implementation of new cybersecurity processes, technologies, and tools to improve system security, compliance, and operational effectiveness.
  • Provide cybersecurity education and guidance to system users, administrators, and program personnel as required.
  • Support DCSA assessments, security reviews, inspections, and other internal or external cybersecurity assessment activities.


Basic Qualifications
  • Bachelor's degree coupled with 4+ years of relevant cybersecurity, information technology, information assurance, or information systems security experience, or a Master's degree with 2+ years of relevant experience. Additional relevant experience may be considered in lieu of a degree consistent with Leidos job-level requirements.
  • Must meet, or be capable of meeting, applicable DoD 8140/DoD Cyber Workforce Framework (DCWF) qualification requirements for the assigned work role through approved certification, education, training, or experience.
  • Possess working knowledge of the Risk Management Framework (RMF) and implementation and assessment of cybersecurity controls within regulated or classified environments.
  • Demonstrated experience performing information system security assessments, compliance auditing, vulnerability assessment, system hardening, or security configuration management.
  • Possess working knowledge of Windows and/or Linux operating systems and associated security configurations.
  • Direct experience interpreting and applying cybersecurity requirements such as NIST SP 800-53, DISA STIGs, DCSA/DoW security requirements, or comparable government cybersecurity standards.
  • Ability to analyze technical security findings, identify risk, recommend corrective actions, and communicate security requirements to both technical and nontechnical stakeholders.
  • Demonstrated ability to develop and maintain detailed cybersecurity documentation and objective evidence supporting system compliance.
  • Possess strong organizational, analytical, written, and verbal communication skills with the ability to independently manage multiple cybersecurity activities and priorities.
  • Able to work collaboratively with Information Technology, system administrators, engineers, program management, physical security, and other cybersecurity personnel.


Relevant Experience Considered

Relevant experience may include a combination of:
  • Cybersecurity, information assurance, information systems security, system administration, system hardening, or Information Technology.
  • RMF compliance, security control implementation or assessment, continuous monitoring, or maintenance of authorization packages.
  • DCSA Assessment and Authorization Guide (DAAG), NISPOM, NIST SP 800-53, DISA STIG, or comparable government cybersecurity requirements.
  • Administration or security assessment of Windows, Linux, Active Directory, Group Policy, Delinea, or comparable enterprise technologies.
  • Vulnerability scanning, security configuration assessment, audit log analysis, or security monitoring.
  • Technical support of classified information systems, laboratories, engineering environments, or other regulated computing environments.
  • Project or program management experience involving technical, cybersecurity, compliance, or information system activities.


Preferred Qualifications:
  • Experience supporting DCSA-authorized classified information systems and maintaining systems through the RMF authorization and continuous monitoring lifecycle.
  • Experience developing and maintaining RMF authorization artifacts within eMASS.
  • Hands-on experience performing STIG, SCAP, vulnerability, and configuration compliance assessments.
  • Experience with cybersecurity and monitoring tools such as Splunk, Trellix, Tenable/ACAS, SCAP, STIG Viewer, or comparable technologies.
  • Experience assessing security configurations across Windows and Linux environments, including Active Directory, Group Policy, and identity or privileged-access management technologies.
  • Experience supporting DCSA assessments, authorization activities, inspections, or cybersecurity readiness reviews.
  • Experience analyzing cybersecurity findings, developing remediation strategies, and coordinating corrective actions with system administrators, engineers, and program personnel.
  • Knowledge of cybersecurity incident response activities, including identification, preservation, containment, eradication, recovery, and reporting.
  • Industry cybersecurity certifications such as CISSP, CISM, CISA, CySA+, Security+, or other certifications relevant to the assigned DoD 8140/DCWF work role.


Original Posting:
August 31, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:
Pay Range $87,100.00 - $157,450.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos Holding

Leidos Holding Careers

Joining Leidos Holding presents an unparalleled opportunity to advance one's career with a leader in innovation and technology. The company offers a plethora of job opportunities aimed at fostering professional growth and development in a diverse and inclusive environment.

Explore Career Opportunities

Leidos Holding is actively seeking skilled professionals who are passionate about leveraging their expertise to drive innovation and leadership in their fields. With a variety of open positions, Leidos Holding provides a platform for individuals to challenge themselves in a dynamic work environment.

Innovation and Professional Growth

At Leidos Holding, innovation is at the core of everything they do. Employees are encouraged to think creatively and push boundaries. The company supports this drive for innovation through comprehensive professional development and diversity training programs that are designed to enhance skills and foster leadership.

Commitment to Diversity and Inclusion

Leidos Holding is committed to creating a workplace where diversity is not only recognized but celebrated. With a culture that values and promotes diversity, Leidos Holding ensures that all team members have the opportunity to contribute, learn, and grow.

Internship Programs

For those starting their career, Leidos Holding offers internship programs that provide a robust foundation in the industry. Internships are a great way to develop essential skills, gain valuable work experience, and build professional networks.

Benefits and Culture

Employees at Leidos Holding enjoy a range of benefits designed to support their professional and personal lives. The company culture is built on a foundation of respect and integrity, providing a supportive and collaborative environment where every team member is valued.

Join the Team

Leidos Holding is hiring! Explore job opportunities that match your skills and interests. Leidos Holding looks for driven, curious, and innovative individuals to join their team. Positions are available across various disciplines and experience levels.

Stay Connected

Stay informed with the latest career tips, industry insights, and company news from Leidos Holding. Subscribe to receive updates and be the first to know about new job opportunities, company developments, and more.

Prepare for Your Interview

To prepare for an interview at Leidos Holding, candidates should familiarize themselves with the company's missions and values, update their resumes, and be ready to discuss how their background and skills align with the position they are applying for.

Networking and Career Advancement

Leidos Holding encourages its employees to engage in networking within the company to discover new opportunities for career advancement. The leadership team at Leidos Holding is dedicated to supporting employees in their career paths with ample opportunities for networking and growth.

Explore Leidos Holding Jobs and Careers

Discover the exciting career opportunities at Leidos Holding today. With a commitment to employee growth, innovation, and diversity, Leidos Holding is the perfect place to advance your career. Check out the latest job listings and find your perfect fit at Leidos Holding.

SEARCH LEIDOS HOLDING JOBS

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts and insider tips tailored to your preferences from Leidos Holding. See what exciting and rewarding opportunities await in your professional journey.
Learn more about Leidos Holding

Similar Jobs

More Jobs at Leidos Holding

More Information Technology Jobs

Find similar Information System Security Officer jobs: