Information System Security Officer

PeratonWashington, DC
$104,000 - $166,000Onsite

About The Position

Peraton is seeking an Information System Security Officer (ISSO) to support our customer onsite in Washington D.C. Responsibilities include: Assist the Information System Security Manager (ISSM) with information assurance efforts, and systems across numerous environments. Perform Information System Security Officer (ISSO) roles and responsibilities as prescribed by the JSIG and other applicable regulations. Execute and maintain RMF activities (e.g., control implementation oversight, evidence collection, assessment support, POA&M management, continuous monitoring). Maintain security authorization artifacts (e.g., SSP, control narratives, diagrams, inheritance/leverage controls, CM plan, incident handling plan, contingency artifacts, user/admin procedures). Operate continuous monitoring: vulnerability management, config compliance, patching coordination, scan result triage, risk acceptance, and remediation verification. Review and approve security-relevant changes through configuration/change control and validate security configurations after major upgrades. Support incident response and reporting: participate in investigations, coordinate containment actions, preserve evidence, and contribute to post-incident lessons learned. Ensure least privilege/access governance: account management oversight, privileged access workflows, periodic access reviews, and audit compliance requirements. Translate security requirements into implementation guidance that engineering teams can operationalize (clear, testable, and automatable where possible).

Requirements

  • Active Top Secret clearance with SCI eligibility
  • 5 years with BS/BA; 3 years with MS/MA; 4 years additional relevant experience may be considered in lieu of BS degree
  • Security+ or equivalent certification (DoD 8570 IAM Level II)
  • Experience with SAP assessments and authorizations
  • 3+ years experience with Authority to Operate (ATO) process, continuous monitoring, POA&Ms, Security Authorizations (SA), NIST 800-37, NIST 800-53 Rev4/ Rev5, working with Information System Owners (ISO) and Program Managers (PM)
  • Experience with SCAP, STIGs, and other compliance tools
  • Proven written and verbal communication skills, and the ability to work well with team members
  • Active TS clearance with ability to obtain SCI

Nice To Haves

  • Experience with SCRUM methodologies
  • Experience with Ongoing Authorizations
  • Experience with Splunk and/or other auditing compliance tools
  • Experience with ACAS, Nessus, and/or other vulnerability scanners

Responsibilities

  • Assist the Information System Security Manager (ISSM) with information assurance efforts, and systems across numerous environments
  • Perform Information System Security Officer (ISSO) roles and responsibilities as prescribed by the JSIG and other applicable regulations
  • Execute and maintain RMF activities (e.g., control implementation oversight, evidence collection, assessment support, POA&M management, continuous monitoring)
  • Maintain security authorization artifacts (e.g., SSP, control narratives, diagrams, inheritance/leverage controls, CM plan, incident handling plan, contingency artifacts, user/admin procedures)
  • Operate continuous monitoring: vulnerability management, config compliance, patching coordination, scan result triage, risk acceptance, and remediation verification
  • Review and approve security-relevant changes through configuration/change control and validate security configurations after major upgrades
  • Support incident response and reporting: participate in investigations, coordinate containment actions, preserve evidence, and contribute to post-incident lessons learned
  • Ensure least privilege/access governance: account management oversight, privileged access workflows, periodic access reviews, and audit compliance requirements
  • Translate security requirements into implementation guidance that engineering teams can operationalize (clear, testable, and automatable where possible)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service