Senior Information Systems Security Officer (ISSO)

Veracity Software Inc

Annapolis, MD

JOB DETAILS
SKILLS
Cloud Computing, Communication Skills, CompTIA Security+, Computer Security, Documentation, Government, Information Systems Security Engineering (ISSE), Intelligence Community, International Classification of Diseases (ICD), Internet Security, Leadership, Maintain Compliance, Mentoring, Operations Security (OPSEC), Risk Analysis, Risk Management, Risk Management Framework (RMF), Security Analysis, Security Attacks, Security Auditing, Sensitive Compartmented Information (SCI), Sensitive Compartmented Information Facility (SCIF), Splunk, Systems Administration/Management, Systems Engineering, Team Lead/Manager, Top Secret Clearance, U.S. National Institute of Standards and Technology (NIST)
LOCATION
Annapolis, MD
POSTED
30+ days ago

Senior Information Systems Security Officer (ISSO)

Location: Annapolis, MD / Reston, VA / Washington, DC
Work Model: 100% Onsite (SCIF Environment)
Work Type: Full-Time
Experience Required: 13+ Years

The Senior ISSO will support mission-critical cybersecurity initiatives within a highly secure government environment. This role involves risk management, compliance, ATO processes, and system security documentation, ensuring systems meet stringent federal and intelligence community security standards.

This position requires deep expertise in RMF, XACTA, Splunk, and ICD 503 compliance frameworks, along with active TS/SCI clearance with CI Polygraph.

Key Responsibilities

Cybersecurity & Compliance

• Conduct technical security assessments and risk analysis
• Ensure system compliance with RMF and ICD 503 frameworks
• Support full lifecycle ATO/IATT processes

Documentation & RMF Activities

• Develop and maintain SSPs, POA&Ms, SAPs, and security artifacts
• Use XACTA for documentation and compliance tracking
• Coordinate with ISSMs, ISSEs, AOs, and system owners

ATO & Risk Management

• Drive ATO and IATT efforts across programs
• Implement and validate NIST 800-53 security controls
• Support audits and security assessment events

Technical & Operational Security

• Work with developers, DBAs, and system admins for compliance
• Apply Zero Trust principles in cloud/data environments
• Utilize Splunk for monitoring and analysis

Must-Have Qualifications

Active TS/SCI clearance with CI Polygraph (Mandatory)
Security+ or IAT II/III Certification (Active)
• 13+ years of experience in cybersecurity / systems engineering
• Strong experience with RMF (Risk Management Framework)
• Proficiency in XACTA and ATO/IATT processes
• Experience with Splunk
• Experience with ICD 503 / NIST 800-53 frameworks
• Experience creating SSPs, POA&Ms, SAPs, and security documentation
• Ability to work in SCIF (100% onsite)

Preferred Qualifications

• Prior ISSO or ISSE experience
• Experience leading cybersecurity programs
• Team leadership and mentoring experience
• Strong stakeholder communication skills

Core Competencies

• Cybersecurity compliance & RMF
• Risk management & ATO processes
• Documentation & audit readiness
• Technical security expertise
• Communication & leadership

Work Environment

• Secure SCIF environment
• Mission-critical government systems
• Highly regulated cybersecurity setting

Recruiter Submission Template –

Full Name:
Degree Major with University and Completion Year:
Do you have an active TS/SCI clearance with CI Polygraph? (Yes/No – provide details):
Do you have an active Security+ or IAT II/III certification? (Yes/No – provide details):
Total Years of Experience in Cybersecurity / ISSO / RMF roles:
Do you have experience working as an ISSO or ISSE? (Yes/No – provide details):
Do you have experience with RMF (Risk Management Framework)? (Yes/No – explain):
Do you have hands-on experience with XACTA tool? (Yes/No – explain):
Do you have experience managing ATO / IATT processes? (Yes/No – explain):
Do you have experience working with Splunk? (Yes/No – explain):
Do you have experience with ICD 503 / NIST 800-53 frameworks? (Yes/No – explain):
Do you have experience creating and maintaining SSPs, POA&Ms, SAPs, and security documentation? (Yes/No – explain):
Do you have experience leading or supporting cybersecurity initiatives/programs? (Yes/No – explain):
Do you have experience working with ISSMs, ISSEs, AOs, and system owners? (Yes/No – explain):
Do you have experience collaborating with developers, DBAs, and engineering teams? (Yes/No – explain):
Motivation / Reason for interest in this position:
Why is the candidate seeking a new opportunity?

Contact Details

Contact Number:
Email ID:
LinkedIn Profile URL:
Full Address (City, State):

Availability & Compensation

Notice Period (in weeks):
Expected Salary:
Work Authorization?
Are you ready to relocate on your own expenses and work onsite in Annapolis, MD / Reston, VA / Washington, DC (SCIF environment)? (Yes/No):

About the Company

V

Veracity Software Inc