Information Systems Security Officer
$150k - $190kRaft Company Website
Job Description
Job Description
This is a U.S. based position. All of the programs we support require U.S. citizenship to be eligible for employment. All work must be conducted within the continental U.S.
Who we are:
Raft ( is a customer-obsessed non-traditional defense tech company dedicated to empowering U.S. military and government agencies with cutting-edge AI/ML and data solutions. We are a leader in autonomous data fusion and Agentic AI, with a purposeful focus on Distributed Data Systems, Platforms at Scale, and Complex Application Development. With headquarters in McLean, VA, our range of clients includes innovative federal and public agencies leveraging design thinking, cutting-edge tech stack, and cloud-native ecosystem. We build digital solutions that impact the lives of millions of Americans.
About the role:
As an Information Systems Security Officer and Manager, you will manage security and compliance activities supporting Raft's cloud-native products and customer environments. You will work closely with engineering and program teams to apply the Risk Management Framework, maintain accurate authorization documentation, assess security risk, and support IATT and ATO efforts across systems at different stages of authorization.
This role requires strong working knowledge of RMF and NIST guidance and experience applying security controls in Kubernetes, containerized workloads, and other cloud-native environments.
What you will do- Provide ISSO oversight across Raft's product contracts, applying consistent RMF practices while accounting for each customer's system boundary and authorization requirements.
- Develop and maintain mature RMF authorization packages, including System Security Plans, security control traceability matrices, Ports Protocols and Services Management artifacts, architecture and data-flow diagrams, POA&Ms, and bodies of evidence.
- Translate system architectures and operational processes into accurate control implementation statements, policies, procedures, and supporting evidence aligned with applicable security control baselines.
- Coordinate control owners, engineers, system administrators, and program stakeholders to collect evidence, address gaps, prepare for assessments, and maintain authorization readiness across supported environments.
- Partner with engineering teams to make evidence collection and recurring compliance reporting more automated, repeatable, reusable across systems, and traceable to authoritative sources.
- Conduct ongoing security risk assessments using findings from cloud and Kubernetes posture reviews, vulnerability and CVE analysis, DISA STIG scans, network monitoring, software-supply-chain reviews, configuration-drift detection, and endpoint protection tools.
- Manage POA&Ms from identification through validated closure, including risk prioritization, owners, milestones, due dates, remediation evidence, and status reporting.
- Evaluate proposed architecture, configuration, boundary, and deployment changes for security-control and authorization impact.
- Conduct continuous monitoring, configuration reviews, control assessments, and readiness reviews; embed security requirements early and help technical teams select practical mitigations.
What we are looking for:
- At least four years of experience in ISSO, ISSM, cybersecurity compliance, information assurance, or a closely related role.
- Strong understanding of the Risk Management Framework and applicable NIST guidance, including NIST SP 800-37, NIST SP 800-53 Revision 5, and NIST SP 800-60.
- Demonstrated experience applying RMF and NIST security controls in cloud-native environments, including Kubernetes and containerized workloads.
- Experience developing and maintaining RMF artifacts such as SSPs, control implementation statements, traceability matrices, PPSM packages, POA&Ms, risk assessments, assessment plans and reports, vulnerability results, and supporting evidence.
- Experience with continuous monitoring, vulnerability management, DISA STIG compliance, security assessments, and remediation tracking in federal or DoD environments.
- Ability to organize and prioritize security activities, evidence, risks, and authorization milestones across multiple systems and customer environments.
- Ability to understand technical architectures and findings, connect them to security controls and mission risk, and communicate clearly with engineers, program leaders, and security stakeholders.
- Security+ or another qualifying DoD 8140 or contract-required certification at hire, or the ability to obtain it within six months of employment with Raft.
Highly preferred:
- Bachelor's degree in cybersecurity, information assurance, information technology, or a related field.
- CISSP, CISM, CISA, CGRC, or another relevant advanced cybersecurity certification.
- Experience with eMASS or a similar governance, risk, and compliance tool.
- Experience supporting or completing an IATT or ATO process.
- Experience securing Kubernetes-based DevSecOps platforms or software factories, particularly within Platform One or a comparable DoD environment.
- Experience implementing or assessing FIPS requirements.
- Experience writing and reviewing RMF control implementation statements, security policies, and procedures.
- Experience communicating security risk and authorization status to program or executive leadership.
Clearance Requirements:
Active Secret security clearance with the ability to obtain and maintain a Top Secret security clearance.
Salary Range: $150,000.00 - $190,000.00
Work Type:
The selected candidate will work onsite in Honolulu, Hawaii; Hanscom Air Force Base, Massachusetts; Tampa, Florida; Colorado Springs, CO; or the National Capital Region.
The position may require up to 35 percent travel to CONUS and OCONUS locations. Candidates must possess a valid, active U.S. passport with at least six months of validity beyond the intended travel period.
What we will offer you:
- Highly competitive salary
- Fully covered healthcare, dental, and vision coverage
- 401(k) and company match
- Take as you need PTO + 11 paid holidays
- Education & training benefits
- Generous Referral Bonuses
- And More!
Our Vision Statement:
We bridge the gap between humans and data through radical transparency and our obsession with the mission.
Our Customer Obsession:
We will approach every deliverable like it's a product. We will adopt a customer-obsessed mentality. As we grow, and our footprint becomes larger, teams and employees will treat each other not only as teammates but customers. We must live the customer-obsessed mindset, always. This will help us scale and it will translate to the interactions that our Rafters have with their clients and other product teams that they integrate with. Our culture will enable our success and set us apart from other companies.
How do we get there?
Public-sector modernization is critical for us to live in a better world. We, at Raft, want to innovate and solve complex problems. And, if we are successful, our generation and the ones that follow us will live in a delightful, efficient, and accessible world where out-of-box thinking, and collaboration is a norm.
Raft's core philosophy is Ubuntu: I Am, Because We are . We support our "nadi"by elevating the other Rafters. We work as a hyper collaborative team where each team member brings a unique perspective, adding value that did not exist before. People make Raft special. We celebrate each other and our cognitive and cultural diversity. We are devoted to our practice of innovation and collaboration.
We're an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.
$130k - $170k
...Information System Security Officer (ISSO) Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position...SuggestedRemote workFlexible hours- ...Job Description Job Description Description: Information Systems Security Officer (ISSO) Position Description: We are seeking an Information System Security Officer (ISSO) to support the day-to-day cybersecurity posture of assigned information systems. This...Suggested3 days per week
- ...IT Cyber Security Specialist Location: APG, MD Journeyman to... ...matter expert on Cybersecurity/Information Assurance activities based... ...CPE IEW&S program management office, HQ staff, and other external... ...consultation to Information System Security Officers (ISSO's) to...SuggestedWork experience placementInterim roleWork at office
$86.9k - $198k
...Job Number: R0250162 Cyber Security Analyst The Opportunity: As a cyber mission specialist... ...abilities to adequately assess and inform operators, senior leadership, and... ...cybersecurity analysis for Federal or DoW systems ~5+ years of experience conducting incident...SuggestedFull timeContract workPart timeLocal areaRemote workWorldwide$90.22k - $175k
DCS is looking for a cybersecurity analyst to support development and update of NIST 800-53 Revision 5 security controls, identification and association of artifacts supporting the security controls, import of Security Technical Implementation Guides (STIGs) and Assured...SuggestedContract workWork experience placement$35.68 - $58.84 per hour
...person. As part of MedStar Health, the largest healthcare system in the Maryland–Washington, D.C., region, you will grow your... ...proficiency. ~ Familiarity with computerized clinical information systems, including Clinicians View, Chart View, and PACS....Full timeRelocation packageRotating shift- Information Security Manager Founded in 2009, RSC2, Inc. is a Small Business Administration (SBA) Certified... ...to make operations, programs and systems of record perform better. Our... ...IEW&S, Unified Cross Domain Management Office, and other agencies as needed. Coordinate...Full timeContract workWork experience placementWork at office
- ...lifecycle, from raw concept and prototyping to secure production, we eliminate the "valley of... ...critical defense projects to leading system modernization, this role ensures high... ...up to a Blue Award level referral bonus. For more information, visit the Employee Portal....Contract workLocal areaImmediate start
$76.46k - $114.69k
...Detection's threat detection and security screening technology helps to... ...expertise spans 21 global offices, seven manufacturing sites... ...alongside a senior analyst and the Information & Cyber Security Manager,... ...screenshots, and checklists as systems change. Policy Support:...InternshipWork from home- Mssi Inc is looking for an experienced Cybersecurity Analyst in Aberdeen, Maryland. You will provide cybersecurity expertise, ensuring compliance with military RMF requirements and conducting technical assessments. The ideal candidate possesses a Bachelor’s degree in Cybersecurity...
- ...solutions and in the application of information technology. Produces and... ...and managementVerifying security clearances, providing security... ...Defense Information Security System (DISS) (formerly Joint Personnel... ...tasks such as: scheduling office calls, creating agendas, arranging...Work at office
- ...implementing, and maintaining our company's network infrastructure. You will work closely with our IT team to ensure that our network is secure, reliable, and efficient. Your main goal will be to ensure that our network meets the needs of our business and supports our growth...
- ...Job Description Job Description About the Role: As a System Engineer, you will be responsible for designing, implementing, and... ...of our clients. You will work on-site and be required to have a security clearance. Your main goal will be to ensure that our clients'...
- ...with check-in and check-out; Answer department telephone within 3 rings and greet customers; Process guest payments and input information into system; Handle special requests and provide information on hotel services; Resolve guest complaints and maintain positive guest...
$69.4k - $158k
Cyber Security Code Analyst, MidThe Opportunity:Integrates security practices throughout... ...eligibility requirements for access to classified information; Secret clearance is required.... ...primarily be performed at a Booz Allen office or customer facility, where employees will...Full timeContract workPart timeWork at officeLocal areaRemote work$98.31k - $147.47k
...Detection’s threat detection and security screening technology helps to... ...expertise spans 21 global offices, seven manufacturing sites... ...analyst works directly with the Information & Cyber Security Manager to... ...customer audits. Maintain the System Security Plan (SSP) and POA&M...For contractorsWork at office- ...work hours, budgets, payrolls, and other information. Screen job applicants, and hire new... .../or valet services. Advise the front office of rooms ready for occupancy. Perform... .... ~ Experience with hotel information systems preferred. Crestline Hotels & Resorts...Work at office
- ...software applications that meet the needs of our clients. You will work closely with our team of engineers to ensure that our software is secure, reliable, and efficient. Your work will directly impact the success of our projects and the satisfaction of our clients....
- ...Job Description Job Description Description: Information System Security Manager (ISSM) We are seeking an experienced Information System Security Manager (ISSM) to lead cybersecurity oversight for assigned systems, programs, or enclaves. The ISSM is responsible...3 days per week
- ...particular focus on Defense and National Security mission sets. We leverage more than 17... ...modernization of Government program management systems and databases. The successful candidate... ...automation, and secure Government information systems.ResponsibilitiesMaintain, administer...For contractors
- ...LLC is a mission-focused technology and security solutions provider supporting defense and... ...of common-user suites and integrated systems. Align managed systems concerning Windows... ...Cybersecurity posture of administered information systems within the applicable network in...Contract workWorldwide
$125.1k - $225.2k
...designing and implementing robust security solutions for mission-critical systems supporting the Department of War... ...solutions and architectures to protect information systems and networks. Implement... ...skills. Proficiency in Microsoft Office Suite and other standard business...Full timeWork at officeFlexible hours- ...particular focus on Defense and National Security mission sets. We leverage more than 17... ...Specialist to provide network administration, information technology (IT), and cybersecurity... ...of enterprise and standalone information systems within laboratory and operational environments...For contractors
$125.1k - $225.2k
...defects related to the developed software systems.Oversees the quality of test activities... ...Windows, Linux, etc)Proficient in Microsoft Office applicationsAdvanced time management and... ...and solutions in the areas of defense, security, intelligence, infrastructure, and environmental...Full timeWork at officeFlexible hours$88.4k - $154.7k
...redefine what’s possible.Job Description:As a Systems Administrator at Parsons, you will join... ...with experience in maintaining, securing, and optimizing complex IT environments... ...Computer Engineering, Computer Science, or Information Systems. (Advanced degree preferred) 3-1...Full timeLocal areaFlexible hours- ...mission-focused technology and security solutions provider supporting... ..., including Microsoft Office products, Adobe Cloud and/or... ...and other visual assets for informational and briefing purposes Provide... ...design, computer information systems, Commercial art, fine arts, art...Contract workWork at officeWorldwide
- ...clients. Founded in 2006, we specialize in cybersecurity, information assurance, systems engineering, enterprise IT and network support, C4ISR,... ...in a related field Clearance Requirements Active TS-SCI Security Clearance Equal Opportunity Envision Innovative Solutions...
$145k - $158k
...clients. Founded in 2006, we specialize in cybersecurity, information assurance, systems engineering, enterprise IT and network support, C4ISR,... ...Mechanical Engineering or a related engineering discipline. Security Clearance Requirements ~ Active Secret / Top Secret...Hourly payContract workWork experience placement$112.2k - $196.4k
...delivering expertise in software development, systems integration, and technical innovation... ...to enable interoperability and seamless information exchange. Write modular, scalable, and... .... Ability to obtain and maintain a security clearance if required. Security Clearance...Full timeFlexible hours- ...clients. Founded in 2006, we specialize in cybersecurity, information assurance, systems engineering, enterprise IT and network support, C4ISR,... ...with DoD or government logistics processes and regulations Security Clearance Requirements: Active TS-SCI Security Clearance...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Systems Security Officer. Be the first to apply!
- information security Aberdeen Proving Ground, MD
- chief information security officer ciso
- business information security officer biso
- business information security officer
- information systems security officer
- information security officer
- information systems security officer sso
- ciso
- information security officer iso
- chief information security officer



