Information Systems Security Officer

Base-2 Solutions

$95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience with security frameworks and policies such as NIST SP 800-53 and RMF.
  • Expertise in managing security documentation like SSPs and SARs.
  • Proficiency with security tools including Nessus, Splunk, and eMASS.
  • Knowledge of security technologies like Firewalls, SIEMs, and Multi-Factor Authentication.
  • Experience with cloud environments such as AWS and Azure.
  • Familiarity with vulnerability scanning and incident response processes.
  • Professional security certifications including CISSP, CAP, and AWS Security Specialty.

Responsibilities

  • Ensure compliance with federal, DoD, and IC cybersecurity regulations.
  • Maintain and update comprehensive system security documentation.
  • Coordinate security assessments and audits with stakeholders.
  • Conduct risk assessments and recommend risk mitigation strategies.
  • Oversee system authorization activities per the RMF process.
  • Monitor and report system security posture and incident responses.
  • Collaborate with technical teams to integrate security requirements.

Benefits

  • 100% company-paid medical, dental, and vision premiums for employees and eligible dependents.
  • 401(k) with an 8% total company contribution and immediate vesting.
  • Up to 20 days flexible paid time off (PTO) plus 11 floating holidays.
  • Flexible work schedules available, promoting work-life balance.
Full Job Description
  • Requisition ID: 3794
  • Standard Title:
  • Required Security Clearance: Top Secret/SCI with Full Scope Polygraph
  • Location: Annapolis Junction, MD
  • Work Type: On-Site
  • Shift: First
  • Referral Eligibility: Eligible
  • U.S. Citizenship Required? Yes


Position Summary

Our ISSOs are responsible for ensuring the security posture of mission-critical systems by supporting compliance efforts, managing risk, and enforcing security policies. We're looking for individuals who excel at navigating complex cybersecurity environments, maintaining meticulous documentation, and fostering collaboration between technical teams and government stakeholders. The ideal candidate will have strong knowledge of security regulations, be adaptable, and possess excellent communication skills to drive information security initiatives forward.
Essential Duties and Responsibilities
  • Ensure system compliance with federal, DoD, and IC cybersecurity regulations and standards, including NIST, ICD 503, CNSS, and RMF.
  • Maintain and update security documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plan of Action and Milestones (POA&Ms), and Continuous Monitoring Plans.
  • Coordinate and support security assessments, audits, and inspections by internal and external stakeholders.
  • Conduct risk assessments and vulnerability analysis, providing recommendations for mitigating identified risks.
  • Facilitate and oversee system authorization activities in accordance with the Risk Management Framework (RMF) process.
  • Monitor and report on system security posture, incident response, and remediation efforts.
  • Collaborate with Information Systems Security Engineers (ISSEs), system administrators, and program managers to integrate security requirements into system lifecycle.
  • Provide security awareness training to system users and enforce proper security practices.
  • Act as a liaison between the organization and government customers, ensuring timely communication of security updates and issues.
Required Qualifications
  • Experience with security frameworks and policies: NIST SP 800-53, RMF, ICD 503, CNSS, DoD STIGs, FISMA, FedRAMP.
  • Experience managing security documentation: SSPs, POA&Ms, Security Controls Assessment (SCA) artifacts, SARs, SCTM.
  • Experience with security tools such as ACAS, Nessus, Splunk, HBSS, eMASS, Xacta.
  • Knowledge of security technologies: Firewalls, SIEMs, VPNs, IDS/IPS, DLP, PKI, Multi-Factor Authentication.
  • Experience with operating systems: Windows, Linux, Unix, macOS.
  • Experience with Cloud environments (AWS, Azure, Google Cloud) and cloud security controls.
  • Familiarity with vulnerability scanning, security testing, and incident response processes.
  • Experience with collaboration tools like JIRA, Confluence, ServiceNow.
  • Strong knowledge of system authorization process, audit support, and compliance reporting.
  • Security certifications such as CISSP, CAP, Security+, CISM, CEH, AWS Security Specialty.
Preferred Qualifications
  • Not specified.
Required Education and Experience Equivalency
  • None specified.
Required Certifications
  • CISSP
  • CAP
  • Security+
  • CISM
  • CEH
  • AWS Security Specialty
Required Security Clearance
  • Active Top Secret/SCI with Full Scope Polygraph


Pay & Benefit Highlights
Compensation
  • Competitive fixed salary or hourly pay (based on experience, skills, location, and internal equity).
  • Employee referral bonuses up to $10,000 per hired referral.
  • Additional bonus opportunities for exceptional performance and contributions to business development and company growth (role-dependent).
Health
  • 100% company-paid medical premiums for employees and eligible dependents.
  • Choose from multiple plan options with CareFirst, Kaiser, and UnitedHealthcare, including PPO, POS, HMO, and HSA-compatible plans.
  • 100% company-paid dental premiums for employees and eligible dependents.
  • 100% company-paid vision premiums for employees and eligible dependents.
Income Protection
  • 100% company-paid premiums for short-term disability.
  • 100% company-paid premiums for long-term disability.
  • 100% company-paid premiums for accidental death & dismemberment (AD&D).
  • 100% company-paid premiums for life insurance up to $200,000.
Retirement
  • 401(k) with immediate vesting: 4% company match plus a 4% non-elective company contribution (8% total).
  • 401(k) pre-tax and Roth options.
Leave
  • Up to 20 days of flexible paid time off (PTO).
  • 11 paid floating holidays.
Work-Life Balance
  • Flexible work schedules, including flex time and compressed work periods (contract and project-dependent).

Similar Jobs

More Jobs at Base-2 Solutions

  • Software Engineer Level 2
    $110K — $130K *
    Annapolis, MD 21401 (Anne Arundel County)
    Aerospace & Defense
    In-Person
  • Software Engineer Level 2
    $110K — $130K *
    Annapolis Junction, MD 20701 (Howard County)
    Information Technology
    In-Person
  • Software Engineer 2
    $95K — $115K *
    Bethesda, MD 20817 (Montgomery County)
    Aerospace & Defense
    In-Person
  • Software Engineer 4
    $120K — $145K *
    Bethesda, MD 20817 (Montgomery County)
    Aerospace & Defense
    In-Person
  • Software Engineer Level 2
    $110K — $130K *
    Annapolis, MD 21401 (Anne Arundel County)
    Aerospace & Defense
    In-Person

More Information Technology Jobs

Find similar Information Systems Security Officer jobs: