Senior Information System Security Officer

Peraton

$135K — $216K *
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • Active Top Secret clearance with SCI eligibility
  • 12+ years of experience with a BS/BA; 10+ years with an MS/MA, or 4 additional years of experience in lieu of a BS degree
  • 8+ years in information security/compliance for DOD/IC or government systems, with major RMF deliverable experience
  • Leadership experience coordinating across security, engineering, and customer stakeholders
  • Ability to provide mentorship to team members
  • Proficiency in writing risk decisions/packages for assessment scrutiny
  • Strong understanding of continuous monitoring at scale and NIST SP 800-53 controls
  • Hands-on RMF execution experience and maintaining authorization artifacts

Responsibilities

  • Lead ATO/reauthorization efforts for complex boundary systems
  • Mentor junior ISSOs and shape security operations playbooks
  • Perform risk analysis and author formal recommendations to leadership
  • Drive security engineering outcomes by collaborating with internal teams on compliance patterns
  • Brief senior stakeholders on security posture, systemic risk trends, and authorization readiness
  • Act as the Senior ISSO supporting the system security lifecycle across development and operations
  • Execute and maintain RMF activities including control implementation and continuous monitoring

Benefits

  • Professional development and mentorship opportunities
  • Dynamic work environment supporting high-profile government projects
  • Collaboration with various teams to drive security outcomes
  • Exposure to advanced information security practices
  • Support for certifications and continuous education
  • Robust security and risk management responsibilities for complex systems
Full Job Description
Responsibilities

Peraton is seeking a Senior ISSO to support our customer onsite in Annapolis Junction, MD. 

 

Key responsibilities include:

  • Lead or co-lead ATO/reauthorization efforts for complex boundary systems
  • Mentor junior ISSOs and shape security operations playbooks
  • Perform risk analysis and author formal recommendations to leadership
  • Drive security engineering outcomes by partnering with internal teams on scalable compliance patterns
  • Brief senior internal and customer stakeholders on security posture, systemic risk trends, remediation burn-down, and authorization readiness
  • Act as the Senior ISSO supporting the system security lifecycle across development, operations, and modernization
  • Execute and maintain RMF activities (e.g., control implementation oversight, evidence collection, assessment support, POA&M management, continuous monitoring)
  • Maintain security authorization artifacts (e.g., SSP, control narratives, diagrams, inheritance/leverage controls, CM plan, incident handling plan, contingency artifacts, user/admin procedures)
  • Operate continuous monitoring: vulnerability management, config compliance, patching coordination, scan result triage, risk acceptance, and remediation verification
  • Review and approve security-relevant changes through configuration/change control and validate security configurations after major upgrades
  • Support incident response and reporting: participate in investigations, coordinate containment actions, preserve evidence, and contribute to post-incident lessons learned
  • Ensure least privilege/access governance: account management oversight, privileged access workflows, periodic access reviews, and audit compliance requirements
  • Translate security requirements into implementation guidance that engineering teams can operationalize (clear, testable, and automatable where possible)
Qualifications

Required Qualifications

  • Requires active Top Secret clearance with SCI eligibility
  • Min 12 years with BS/BA, Min 10 years with MS/MA; may consider 4 additional years experience in lieu of BS degree.
  • 8+ years of experience in information security/compliance supporting DOD/IC or government systems, including ownership of major RMF deliverables and ATO events for complex systems
  • Demonstrated leadership experience coordinating across security, engineering, and customer stakeholders
  • Ability to provide mentorship and direction to team members
  • Proven ability to write risk decisions and packages that stand up to assessor/AO scrutiny
  • Deep understanding of continuous monitoring at scale (recurring evidence, metrics, audit readiness, remediation governance)
  • Hands-on experience executing RMF tasks and maintaining authorization artifacts (SSP, POA&Ms, continuous monitoring evidence)
  • Strong working knowledge of NIST SP 800-53 controls and how they map to technical implementations and procedures
  • Experience with vulnerability and configuration compliance workflows
  • Ability to communicate risk clearly to both technical engineers and non-technical leadership
  • One or moreactive/currentcertifications such as: CISSP, CISM, SecurityX, Security+, and etc.

 

Preferred Qualifications

  • Experience with SAP assessments and authorizations
  • Experience securing or assessing different platforms (applications, databases, operating systems, hardware, and etc )
  • Experience with SCRUM methodologies
  • Experience with Splunk and/or other auditing compliance tools.
  • Experience with ACAS, Nessus, and/or other vulnerability scanners
  • Experience with data protection requirements relevant to sensitive environments
Target Salary Range$135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individuals experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Similar Jobs

More Jobs at Peraton

More Information Technology Jobs

Find similar Senior Information System Security Officer jobs: