Peraton is seeking an Information System Security Officer (ISSO) to support our customer onsite in Annapolis Junction, MD. The ISSO will assist the Information System Security Manager (ISSM) with information assurance efforts and systems across numerous environments. This role involves performing ISSO roles and responsibilities as prescribed by the JSIG and other applicable regulations. The position requires executing and maintaining Risk Management Framework (RMF) activities, including control implementation oversight, evidence collection, assessment support, Plan of Action & Milestones (POA&M) management, and continuous monitoring. The ISSO will maintain security authorization artifacts such as the System Security Plan (SSP), control narratives, diagrams, inheritance/leverage controls, Configuration Management (CM) plan, incident handling plan, contingency artifacts, and user/administrator procedures. Key responsibilities include operating continuous monitoring processes such as vulnerability management, configuration compliance, patching coordination, scan result triage, risk acceptance, and remediation verification. The role also involves reviewing and approving security-relevant changes through configuration/change control and validating security configurations after major upgrades. Additionally, the ISSO will support incident response and reporting, including participating in investigations, coordinating containment actions, preserving evidence, and contributing to post-incident lessons learned. Ensuring least privilege/access governance through account management oversight, privileged access workflows, periodic access reviews, and audit compliance requirements is also crucial. The ISSO will translate security requirements into implementation guidance for engineering teams, aiming for clear, testable, and automatable solutions where possible.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level