Senior Information System Security Officer

Base-2 Solutions

$120K — $145K *
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • Active Top Secret/SCI security clearance with CI Polygraph is required.
  • Bachelor's degree plus 14+ years or Master's with 12+ years or PhD with 10+ years of relevant experience.
  • Proficient in loading STIG checklists and performing ACAS scans in security settings.
  • Experience in implementing STIG checklists and addressing findings effectively.
  • Familiarity with collaboration tools involving application leads, systems administrators, and developers for security compliance.

Responsibilities

  • Design and integrate information assurance and security systems for varied environments.
  • Analyze system architecture and functionality across multiple technologies.
  • Develop and evaluate potential attack scenarios to bolster security.
  • Prepare and present technical reports and briefings to stakeholders.
  • Implement the Risk Management Framework on program systems and networks.
  • Conduct technical security assessments to identify vulnerabilities and compliance issues.
  • Support the security incident response and risk mitigation processes throughout the program lifecycle.

Benefits

  • 100% company-paid medical, dental, and vision premiums for employees and their eligible dependents.
  • 401(k) plan with an 8% total company contribution.
  • Up to 20 days of flexible paid time off and 11 paid floating holidays.
  • Life insurance and disability premiums fully covered by the company.
  • Flexible work schedules promoting a better work-life balance.
Full Job Description
  • Requisition ID: 3938
  • Standard Title:
  • Required Security Clearance: Top Secret/SCI with CI Polygraph
  • Location: Annapolis Junction, MD
  • Work Type: On-Site
  • Shift: First
  • Referral Eligibility: Eligible
  • U.S. Citizenship Required? Yes


Position Summary

Senior Information Systems Security Officer responsible for safeguarding computer networks and systems to ensure data security, integrity, and confidentiality at the highest standards.
Essential Duties and Responsibilities
  • Designs, develops, implements and/or integrates IA and security systems and system components including those for networking, computing, and enclave environments with multiple enclaves and differing data protection/classification requirements.
  • Analyzes architecture and system functionality for multiple technologies.
  • Contributes to the development and evaluation of attack scenarios.
  • Prepares and delivers technical reports and briefings.
  • Has a complete understanding of Risk Management Framework and implements the process on program systems/networks.
  • Performs or reviews technical security assessments of computing environments to identify vulnerabilities, non-compliance with IA standards and regulations, and recommends mitigation strategies.
  • Validates and verifies system security requirements definitions and analysis and establishes system security designs.
  • Assists architects and systems developers in identifying and implementing appropriate information security functionality to ensure uniform application security policy and enterprise solutions.
  • Supports building security architectures and enforces trusted relations among external systems and architectures.
  • Assesses and mitigates system security threats/risks throughout the program life cycle.
  • Contributes to security planning, assessment, risk analysis, risk management, certification, and awareness activities for system and networking operations.
  • Reviews certification and accreditation (C&A) documentation, providing feedback on completeness and compliance.
  • Performs system installation, configuration, maintenance, account maintenance, signature maintenance, patch management, and troubleshooting of operational IA and CND systems.
  • Performs limited penetration testing and routine exploit analysis.
  • Performs system or network designs encompassing multiple enclaves with differing data protection/classification requirements.
  • Recommends system-level solutions to resolve security requirements.
  • Supports enforcement of design and implementation of trusted relationships among external systems and architectures.
  • Works with application leads, sysadmins, DBAs, developers, and testers to ensure assigned systems are security compliant and achieve/maintain ATO.
  • Loads artifacts such as STIG checklists and ACAS scans.
  • Helps implement STIG checklists and mitigate scan findings.
  • Supports security assessment events and responds to questions from PAT team, ISSMs, and SCA.
Required Qualifications
  • Experience loading artifacts such as STIG checklists and ACAS scans.
  • Experience helping to implement STIG checklists and mitigate scan findings.
  • Experience supporting security assessment events and responding to questions from PAT team, ISSMs, and SCA.
  • Experience working with application leads, sysadmins, DBAs, developers, and testers to ensure systems are security compliant and achieve/maintain ATO.
Preferred Qualifications
  • Experience working with Xacta.
Required Education and Experience Equivalency
  • Bachelor's degree with 14+ years of experience.
  • Master's degree with 12+ years of experience.
  • PhD with 10+ years of experience.
Required Certifications
  • None specified.
Required Security Clearance
  • Active Top Secret/SCI with CI Polygraph


Pay & Benefit Highlights
Compensation
  • Competitive fixed salary or hourly pay (based on experience, skills, location, and internal equity).
  • Employee referral bonuses up to $10,000 per hired referral.
  • Additional bonus opportunities for exceptional performance and contributions to business development and company growth (role-dependent).
Health
  • 100% company-paid medical premiums for employees and eligible dependents.
  • Choose from multiple plan options with CareFirst, Kaiser, and UnitedHealthcare, including PPO, POS, HMO, and HSA-compatible plans.
  • 100% company-paid dental premiums for employees and eligible dependents.
  • 100% company-paid vision premiums for employees and eligible dependents.
Income Protection
  • 100% company-paid premiums for short-term disability.
  • 100% company-paid premiums for long-term disability.
  • 100% company-paid premiums for accidental death & dismemberment (AD&D).
  • 100% company-paid premiums for life insurance up to $200,000.
Retirement
  • 401(k) with immediate vesting: 4% company match plus a 4% non-elective company contribution (8% total).
  • 401(k) pre-tax and Roth options.
Leave
  • Up to 20 days of flexible paid time off (PTO).
  • 11 paid floating holidays.
Work-Life Balance
  • Flexible work schedules, including flex time and compressed work periods (contract and project-dependent).

Similar Jobs

More Jobs at Base-2 Solutions

More Information Technology Jobs

Find similar Senior Information System Security Officer jobs: