NewInformation Systems Security Officer Centuria CorporationInformation Systems Security OfficerMAProvide timely coordination and support to the Hanscom JWICS Site Information Systems Security Manager (ISSM) in all matters related to ICD 503 and Risk Management Framework (RMF) to ensure Hanscom JWICS maintains it Authorization to Operate (ATO) and high security posture. The ideal candidate brings extensive DoD cybersecurity experience, strong knowledge of Air Force and Federal security requirements, a Security+ certification, and an active Top Secret clearance, along with the ability to effectively support mission-critical SCI systems and stakeholders.
Senior Director, Chief Information Security Officer Scholar RockSenior Director, Chief Information Security OfficerCambridge, MASummary of Position: Scholar Rock is seeking a Senior Director, Cybersecurity to serve as the company’s Chief Information Security Officer, responsible for building and scaling enterprise cybersecurity capabilities that protect the organization’s people, data, technology assets, intellectual property, and business operations. This role is ideal for a cybersecurity leader who has successfully led multiple cybersecurity functions and is ready to assume broader enterprise cybersecurity leadership responsibilities in a lean, high-growth biotechnology environment.
Information Security Risk And Compliance Analyst Car GurusInformation Security Risk And Compliance AnalystBoston, MA$84,000–$106,000 / yearThe analyst works closely with security, engineering, legal, internal audit, privacy, finance, procurement and business stakeholders to build scalable processes, improve operational maturity and reduce organizational risk. The information security risk and compliance analyst supports the organization's governance, risk, and compliance program by managing security risk, ensuring regulatory compliance and partnering across the business to strengthen the company's security posture.
NewInformation Systems Security Manager (ISSM) with TS/SCI Macpower Digital Assets Edge Private LimitedInformation Systems Security Manager (ISSM) with TS/SCIBedford, MA$100,000–$139,000 / yearProvide support for Special Access Programs (SAPs) within Department of Defense (DoD) environments. Integrate security controls for SAP network infrastructures and ensure compliance with RMF and JSIG.
Information Security Risk Specialist Booz Allen HamiltonInformation Security Risk SpecialistLexington, MassachusettsSalary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. Onsite : If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
NewInformation Security Systems Officer - DoD Secret American Operations CorporationInformation Security Systems Officer - DoD SecretHanscom Air Force Base, MA$90,000–$95,000Ensure all users have the required security clearances, supervisory need-to-know authorization, and awareness of their IA responsibilities before receiving access to Air Force information systems, in accordance with AFSSI 8522. American Operations Corporation (AOC) is seeking an Information Security Systems Officer (ISSO) to support the customer organization’s Information Assurance (IA) program at Hanscom Air Force Base.
NewVice President, Information Security - Remote Spring HealthVice President, Information Security - RemoteBoston, MARemote$250,000–$291,000 / yearLead audit readiness and certification execution for information security programs, including evidence collection, technical control validation, remediation tracking, and partnership with the CISO, Legal, Privacy, and Compliance teams on frameworks such as HITRUST, SOC 2, ISO 27001, HIPAA, and PCI DSS. Experience leading or supporting HITRUST CSF, SOC 2, ISO 27001, PCI DSS, and comparable certification programs through strong technical controls, remediation management, evidence support, audit readiness, and cross-functional partnership.
Corporate Counsel, Information Security & Privacy NetcrackerCorporate Counsel, Information Security & PrivacyWaltham, MassachusettsThe primary responsibility is negotiating security, privacy, and compliance-related provisions in customer agreements, particularly in the context of software development, delivery, and professional services in the Telco/ISP industry, with customers across the globe, primarily in North America, Europe Middle East, and APAC. Negotiate and advise on information security, data protection, and compliance provisions in customer contracts, including MSAs, DPAs, Support and Maintenance agreements, and security annexes.
55-019 – Information Systems Security Officer (ISSO) III Sandy Mac Evolution55-019 – Information Systems Security Officer (ISSO) IIIHanscom Afb, MassachusettsThe selected candidate will work closely with the Information Systems Security Manager and other cybersecurity and information technology personnel to maintain authorization documentation, monitor system security, implement configuration-management requirements, assess security impacts associated with system changes, conduct continuous monitoring, and support assessment and authorization activities. The ISSO III is responsible for maintaining the appropriate operational security posture of assigned information systems and supporting day-to-day cybersecurity activities across Collateral, Sensitive Compartmented Information (SCI), and Special Access Program (SAP) environments.
Information Security Lead Alloy TherapeuticsInformation Security LeadWaltham, MARemoteFull timeThis is a rare role that offers breadth of scope: you will be equally responsible for hands-on technical work (configuring IAM controls, participating in system architecture, managing endpoint security and patching, running vulnerability management) and for the governance work that sits alongside it (writing policies, maintaining compliance documentation, and satisfying the increasingly rigorous security requirements of our enterprise partners). Vulnerability & Patch Management: You run a structured vulnerability management program with defined remediation SLAs (including tight timelines for critical-severity findings), integrate CVE and CSIRT advisory feeds into a regular review cadence, and work directly with IT to ensure patch coverage across endpoints and internet-exposed services.
Information System Security Officer (ISSO) III Amatriot Group, LLCInformation System Security Officer (ISSO) IIIHanscom AFB, MA$132,000–$140,000 / yearThis role manages the day-to-day security operations of systems supporting Department of Defense (DoD) Special Access Programs (SAPs), including Collateral, Sensitive Compartmented Information (SCI), and SAP environments. The Information System Security Officer (ISSO) III is responsible for maintaining the operational security posture of assigned information systems in close collaboration with the Information System Security Manager (ISSM) and Information Security Officer (ISO).
Information Systems Security Administrator RTXInformation Systems Security AdministratorMassachusettsCollaborate with cross‑functional teams and Information Systems Security Engineers to deploy and validate new IT and security solutions, contributing effectively in Agile (Scrum) environments and resolving complex technical issues independently within defined priorities and timelines. In this role with the Global ISR Sensors & Software business unit you will support and maintain both virtual and physical desktop environments across Windows and Linux systems, perform routine maintenance such as security updates and patching, and manage hardware and software assets throughout their lifecycle.
Information Systems Security Manager (ISSM) Abacus TechnologyInformation Systems Security Manager (ISSM)Hanscom AFB, Massachusetts$175,800–$195,100 / yearAuthor, review, certify, and/or maintain security management plans and RMF package artifacts including but not limited to: RMF Implementation Plans, System Security Management Plans, Information Support Plans, Program Protection Plans (PPPs), Security Risk Analyses, Security Vulnerability and Countermeasure Analyses, Vulnerability Management Plans, Common Control Packages, Security Concepts of Operations, OPSEC Plans, Authority-to-Connect guest system packages, and other system/network security related documents. Evaluate system sources of changes such as Deficiency Reports (DRs), Problem Reports (PRs), Change Requests/Proposals (CRs/CPs), and AF Form 1067s; provide inputs to the root cause analysis reporting and the formulation of recommended solution from alternatives; determine the security impacts of proposed or actual changes to the system, environment, threats, and vulnerabilities; and if any, document in written reports the changes/revisions to the system’s RMF artifacts.
NewInformation Systems Security Officer (ISSO) III General Dynamics Information TechnologyInformation Systems Security Officer (ISSO) IIIPeabody, MassachusettsCisco Certified Network Associate (CCNA) Security - Cisco - Cisco, GICSP: Global Industrial Cyber Security Professional - Global Information Assurance Certification (GIAC), GSEC: GIAC Security Essentials Certification - Global Information Assurance Certification (GIAC) - Global Information Assurance Certification (GIAC) Experience: USA MA Avon, USA MA Boston, USA MA Braintree, USA MA Burlington, USA MA Cambridge, USA MA Fort Devens, USA MA Norwood, USA MA Peabody, USA MA Quincy, USA MA Taunton, USA MA Waltham, USA MA Westwood Total Rewards at GDIT:
Information Systems Security Officer (ISSO) III (TS, with SCI Eligibility) RedTrace Technologies IncInformation Systems Security Officer (ISSO) III (TS, with SCI Eligibility)Hanscom AFB, MAFull timeThe primary function is working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense (OSD) and Military Compartments efforts. The position shall have the detailed knowledge and expertise required to manage the security aspects of an information system and, in many organizations, is assigned responsibility for the day-to-day security operations of a system.
Senior Information Security Analyst - Attack Surface Management Lead Brigham and Women's HospitalSenior Information Security Analyst - Attack Surface Management LeadSomerville, MA$93,953.60–$136,739.20 / yearThis role will help lead the function into a risk-driven, validation-focused capability that identifies meaningful exposure, prioritizes remediation based on exploitability and business impact, and connects findings to detection engineering, threat hunting, threat intelligence, and broader Cyber Defense priorities. The Mass General Brigham Senior Information Security Analyst - Attack Surface Management Function Lead will be responsible for advancing and coordinating the MGB Attack Surface Management capability across vulnerability discovery, penetration testing, attack surface analysis, and attack simulation.
Information Systems Security Manager ANDURIL INDUSTRIESInformation Systems Security ManagerQuincy, MA$164,000–$194,000 / yearThis third-party service provider provides risk-intelligence services that may include analysis of sanctions and watchlists, adverse media, public-record information, and other lawful open-source or commercial data sources. To ensure your safety and help you navigate your job search with confidence, please keep the following critical points in mind: No Financial Requests: Anduril will never solicit payment or demand personal financial details (such as banking information, credit card numbers, or social security numbers) at any stage of our hiring process.
Senior Information System Security Engineer Odyssey Systems Consulting Group, Ltd.Senior Information System Security EngineerHanscom AFB, MassachusettsFull timePosition Summary: Odyssey Systems has an exciting opportunity for a Senior Information Systems Security Engineer (ISSE) supporting the AFLCMC/HNJ Communications and Networks Directorate Special Programs Division, located at Hanscom Air Force Base, MA. In this role, you will lead Authorization and Accreditation (A&A) documentation efforts and provide Systems Security Engineering (SSE) expertise across highly classified environments, ensuring cybersecurity protections are embedded into system architectures from concept through sustainment.
Information Systems Security Manager (ISSM) I TAC Integrated SolutionsInformation Systems Security Manager (ISSM) IMassachusettsinclude accountability, access rights, and special handling requirements Ensure the development and implementation of an information security education, training, and awareness program, to include attending, monitoring, and presenting local cybersecurity training. Primary support will be working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense, and Military Compartmentalized efforts.
Information Security Engineer III Brigham and Women's HospitalInformation Security Engineer IIISomerville, MA$93,953.60–$136,739.20 / yearThe ideal candidate possesses strong analytical and problem-solving abilities, can rapidly develop an understanding of unfamiliar technologies and business challenges, and is comfortable working across a diverse range of technical and operational domains. Collaborate with technical teams, business stakeholders, vendors, project leaders, and security professionals to address security concerns and help ensure that security considerations are incorporated into decision-making processes.