Information Systems Security Officer

SonalystsWaterford, CT
Onsite

About The Position

Sonalysts, Inc. is seeking an Information Systems Security Officer (ISSO) for our Waterford, CT office. The ISSO will advise and interface with the Information Systems Security Manager (ISSM) on security considerations throughout the lifecycle of information systems, including procurement, development, implementation, operation, maintenance, and disposal, all under the Risk Management Framework (RMF). This role involves ensuring the security compliance of classified information systems according to NISPOM/32CFR§117, DAAPM, DODI 8500.01, and NIST SP 800 series. The ISSO will maintain essential security documentation such as system security plans, contingency plans, incident response plans, and configuration management plans. Responsibilities include monitoring daily server and network security operations, participating in Configuration Control Board (CCB) and configuration management activities, and serving as a point of contact for Department of Defense Information Network (DoDIN) connected systems. Occasional travel may be required for training, system installations, and oversight reviews.

Requirements

  • Bachelor’s degree in an Information Technology-related field and 4 years of relevant information systems security experience; OR 8 years relevant Information Systems security experience
  • Hold a current DOD Information Assurance Workforce (IAWF) Level II (or higher) IAM or IAT certification(s) (e.g., GSEC, Security+, SSCP, CCNA-Security, CISA, CISM, GCIH, GCED, CISSP, CASP)
  • Must be a U.S. citizen, possessing an active U.S. Department of Defense (DoD) Final SECRET security clearance
  • Maintaining a U.S. Government security clearance involves periodic comprehensive background checks. Candidates are eligible for a clearance if they have demonstrated sound financial management (including good credit) over time, are free of criminal records, have limited foreign contacts or ties, and other factors indicative of a position of trust to protect information sensitive to the U.S. Government.

Nice To Haves

  • Possessing an active U.S. Department of Defense (DoD) Top Secret Security Clearance
  • Technical aptitude administering and troubleshooting Microsoft Windows Server 2016 (or higher)
  • Technical aptitude administering and troubleshooting Microsoft Windows 10 (or higher)
  • Experience as an ISSO, ISSM, ISSE, or SCA supporting classified programs.
  • Experience with Linux OS
  • A Level III DOD IAWF Certification
  • Experience with Enterprise Mission Assurance Support Service (eMASS) system
  • Experience creating, maintaining, enforcing, and training Security policies
  • Experience communicating security policy and concepts to Leadership
  • Experience with security administration of a DOD classified network/information system.
  • Experience with network monitoring, testing and troubleshooting tools/utilities
  • Experience with vulnerability management to include creating and updating the Plan of Action and Milestones (POA&M) for an information system’s IA package, testing, applying, and verifying software updates and patches from an IA perspective
  • Experience with vulnerability scanning tools and techniques (Nessus/ACAS, Nmap, Eye Retina, Nexpose, Metasploit), Security Information and Event Management (SIEM) tools and techniques
  • Knowledgeable in the use of scripting languages/tools to automate information system administration and security functions (Shell Script, PowerShell, Python, etc.)
  • Experience with Security Content Automation Protocol (SCAP) tools

Responsibilities

  • Advise and interface with the Information Systems Security Manager (ISSM) on security considerations in information systems procurement, development and implementation, operation and maintenance, and disposal activities under the Risk Management Framework (RMF) company-wide
  • Assist with information systems security compliance of classified information systems in accordance with the National Industrial Security Program Operating Manual (NISPOM)/32CFR§117, DCSA Assessment & Authorization Process Manual (DAAPM), DODI 8500.01, and NIST SP 800 (series)
  • Maintain information system security plans, contingency plans, incident response plans, and configuration management plans for all systems under their responsibility
  • Monitor day-to-day server and network security operations
  • Participate in Configuration Control Board (CCB) and configuration management activities for all systems under their responsibility
  • Serve as focal point on Department of Defense Information Network (DoDIN) connected systems
  • Occasionally travel to receive training, complete system installations, and conduct oversight reviews

Benefits

  • Flexible Time Program enabling an optimal work-life balance
  • Paid Time Off
  • 401(k) Plan with company match
  • Employee Stock Ownership Plan (ESOP)
  • Sales Bonus Program
  • Special Performance and Retention Bonus Program
  • Health and Dental Insurance
  • Dependent Care Assistance Plan
  • Health Care Reimbursement Plan
  • Employee Referral Bonus Program
  • Professional Development through Tuition Reimbursement Program, Online Training Program and Targeted Skills Program
  • Relocation Assistance to Southeastern Connecticut
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service