Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information System Security Officer

$107.9k - $195.05k

Leidos

Description

Leidos Intel Sector combines technology-enabled services and mission software capabilities in the areas of cyber, logistics, security operations, and decision analytics to support our defense and intel customers' mission to defend against evolving threats around the world. Our team's focus is to ensure our customers have the right tools, technologies, and tactics to keep pace with an ever-evolving security landscape and succeed in their pursuit to protect people and critical assets.

The National Solutions Business Area is currently seeking an Information System Security Officer (ISSO). The ISSO will be responsible for managing the authorizations and risks related to the processing, storage, and transmission of information for one or more programs within the Analysis Sustainment portfolio. The ISSO is responsible for meeting regulatory and non-regulatory compliance (security best practices) demands, providing leadership over security assessment activities, working across system ownership and management organizations to test security controls, policies, and procedures, providing program management support, team leadership, and participating in and coordinating the support as needed for security assessment and activities The ISSO also manages and enforces government and corporate information security policies, provides training, and educates end users and program staff about proper security practices.

The ISSO conducts security and risk assessments as required using a range of security accreditation frameworks (e.g., NIST, RMF, Common Criteria, DoD, the Intelligence Community Directives (ICDs)), and works to mitigate risks by applying security controls effectively to achieve an acceptable degree of operational risk. As part of this process, the ISSO performs testing and security assessments to sustain required accreditations. The ISSO promotes the use of secure hardware and software within the systems affected by government and corporate approval standards. The ISSO works to ensure all required security policies and practices are effectively applied to systems and ensures security controls implementing these policies are applied and achieve the proper levels of confidentiality, integrity, availability, and privacy protection throughout the system life cycle.

The ISSO also assists with the execution, analysis, and remediation activities for the vulnerability management program (scanning, assessment, reporting, and mitigation verification) that spans different accreditation entities, three distinct classification domain enclaves (U), (S) and (TS), using the Nessus and Tenable-ACAS vulnerability scanning tools.

Primary Responsibilities:

  • Develops risk mitigation strategies that contribute to the effectiveness, efficiencies, and performance outcomes for strategic projects, program goals, and business processes.

  • Must be able to quickly respond to the needs for updates and maintenance of security documentation, especially System Security Plans, Plans of Actions and Milestones (POA&Ms); Security Impact Assessment for proposed system changes, and Concept of Operations that identify and explain how each system satisfies its assigned security control baselines.

  • Maintains system security plans and related configuration records in customer Service+ (ServiceNow), XACTA-360 platform, and Leidos-CIO security tools.

  • Drives necessary security changes through steering groups and control (review) boards to meet Risk Management milestones.

  • Can work independently as well as collaboratively to drive security process improvements, especially to address gaps in meeting customer or Leidos security requirements and meet due diligence responsibilities.

  • Provides guidance and engages the program lab team to implement secure software and hardware processes, apply government security standards, and commercial best security practices.

  • Resolves highly complex security problems by applying technical knowledge, conceptualizing, reasoning, and interpretation of requirements.

  • Communicating with Leidos and NGA leadership (internally or client) regarding matters of significant importance to the organization/project.

  • Apply in-depth understanding of information security technical principles, theories, concepts, and their application across a range of programs.

  • Develop and maintain security documentation per NGA/IC/DoD-DISA/NIST/Industry standards and policies.

  • Initiate and coordinate all Assessment and Authorization (A&A) and renewal activities working with the NGA Designated Authorization Officials (DAO or DAOR).

  • Address any Information Assurance or Cybersecurity notices, orders, tasking, or directives as required following the NGA operations vulnerability and patch management processes.

  • Measure effectiveness of defense-in-depth architecture and Zero Trust policy implementations against known vulnerabilities.

  • Perform security audits and assessments, including creating, tracking, and assisting in remediation of Plan of Action and Milestones (POA&Ms).

  • Coordinate with System Administrators and others to remediate all vulnerabilities and report results. Track open vulnerabilities and obtain and document approvals while managing POA&M status.

  • Update Security CONOPS and Information Technology Disaster Recovery (ITDR) plans for each Security Plan.

  • Manage security profiles and implementation for systems and services scheduled for Assessment and Authorization (A&A).

  • Work with the Systems Engineers and Administrators, Senior ISSO, ISSMs, Lab Team, and Leidos Corporate Security as required to develop and maintain security plans and associated documentation.

  • Maintain records and documentation on program IT systems, upgrades, patches, and connectivity configurations.

  • Evaluate security solutions and implementation strategies for program IT systems and services and maintains operational security posture of development, integration, and deployed capabilities.

  • Provide training and approve user access and IAA (identification, authorization, and authentication) mechanisms for information systems.

Basic Qualifications:

  • US citizenship is required per contract.

  • BS degree and 8 to 12 years of prior relevant experience to operate within the scope of responsibilities.

  • Active TS-SCI clearance with Polygraph

  • NGA experience desired.

  • Experience that demonstrates an understanding and application of the ICD-503 and NIST risk management framework.

  • Experience desired with the following systems/platforms/tools: XACTA; XACTA 360 (preferred); HBSS; ACAS; Nessus, SPLUNK.

Preferred Qualifications:

  • Has 3+ years of experience operating, analyzing, and resolving vulnerability scan results using tools such as Nessus, Tenable Security Center, or a comparable commercial or GOTs product.

  • Active Certified Information Systems Security Professional (CISSP) certification or ISACA Certified Information Security Manager (CISM) certification.

  • Intelligence Community experience preferred.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:June 10, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at

Securing Your Data

Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at View email address on click.appcast.io.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Information System Security Officer in Gaithersburg, MD vacancy
  •  ...Information System Security Officer (ISSO) Washington, DC Metro Are you a dedicated cybersecurity professional with a passion for safeguarding organizational information assets? We are seeking an experienced Information System Security Officer (ISSO) to lead our cybersecurity... 
    Suggested

    Take2 Consulting LLC

    Germantown, MD
    4 days ago
  • $135k - $160k

     ...Overview We are Ennoble First. The people supporting and securing some of the most complex government, defense, and...  ...opportunity. Position Overview Ennoble First is seeking an Information System Security Officer (ISSO) to support mission-critical intelligence systems... 
    Suggested
    Full time
    Relocation package
    Shift work

    Ennoble First, Inc.

    Gaithersburg, MD
    4 days ago
  •  ...ISSO Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems... 
    Suggested
    Full time
    Local area
    Flexible hours

    CGS Federal (Contact Government Services)

    Rockville, MD
    2 days ago
  • $175k

     ...Management Framework to support a NIST SP 800-53 HHM systems through the A&A process. Construct thorough and complete security documentation to include, but not limited to,...  ...working experience with public and private information security groups and organizations. Possesses... 
    Suggested
    Full time
    Work experience placement
    Local area

    Dezign Concepts LLC

    Bethesda, MD
    1 day ago
  • $150k - $190k

     ...are seeking a highly skilled Senior Cybersecurity Analyst / Information Security Manager with expertise in IT security, risk management, and...  ...confidentiality, integrity, and availability of information systems and data, along with at least two (2) years of supervisory experience... 
    Suggested
    Full time
    Contract work
    Part time

    Akima

    Rockville, MD
    4 days ago
  •  ...include travel for on-site collection efforts as well as an in-office presence at the primary firm office which includes the...  ...additional job opportunities with CGS on our Job Board: For more information about CGS please visit: or contact: Email: ****@*****.***... 
    Full time
    Work at office
    Remote work
    Flexible hours

    Contact Government Services LLC

    Rockville, MD
    4 days ago
  • $140k - $184k

    ActioNet, Inc. is seeking a Digital Forensics Subject Matter Expert (SME) to provide advanced digital forensics and incident response (DFIR) expertise. You will support investigations, analysis, and remediation of complex cybersecurity incidents across the agency. Key responsibilities...

    ActioNet, Inc.

    Rockville, MD
    12 hours ago
  • $140k - $184k

    ActioNet is seeking a Digital Forensics SME located in Rockville, Maryland. You will provide advanced digital forensics and incident response expertise. Your responsibilities will include performing forensic analysis, identifying root causes of incidents, and supporting...

    ActioNet

    Rockville, MD
    12 hours ago
  •  ...Define and execute the company's IT strategy aligned with business goals and federal client needs Oversee technology infrastructure, security policies, and compliance programs Lead and mentor engineering managers and technical leads across multiple project teams Manage IT... 
    Permanent employment

    Softek

    Rockville, MD
    1 day ago
  • $102.17k

     ...Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst,...  ...DevSecOps to protect critical software systems that support water utilities and infrastructure...  ...status, citizenship status, genetic information or any other characteristic protected by... 
    H1b

    Trinnex

    Gaithersburg, MD
    2 days ago
  •  ...A federal services provider is seeking an experienced Records Information Manager to provide crucial technical, management, and documentation...  ...experience and be skilled in using automated information systems. This position involves supervising staff and contributing to... 

    CGS Federal (Contact Government Services)

    Rockville, MD
    1 day ago
  •  ...investigations, including observed IOCs and TTPs, system(s) impacted, criticality and scope of...  ...group of teams including engineering, security, and network & system operations to...  ...or perceived sexual orientation, genetic information or any other protected status. If you... 
    Flexible hours

    Donnelley Financial, LLC

    Rockville, MD
    12 hours ago
  • Financial Industry Regulatory Authority, Inc. is seeking a Senior Principal Risk Specialist - Cyber Engagements in Rockville, MD. This role is central to reinforcing cybersecurity resilience across the financial sector by leading tabletop exercises that simulate real-world...

    Financial Industry Regulatory Authority, Inc.

    Rockville, MD
    2 days ago
  • $141.92k - $212.89k

     ...largest independent regulator of securities firms doing business in the...  ...firms, 152,000 branch offices, and nearly 624,000 registered...  ...to safeguarding the financial system and empowering investors. The...  ...attendee engagement with relevant information and aligned with company... 
    For contractors
    For subcontractor
    Local area

    FINRA

    Rockville, MD
    12 hours ago
  •  ...Regulatory Authority) is the largest independent regulator of securities firms in the U.S. It protects investors and ensures market...  ...age, national origin, ethnicity, religion, disability, genetic information, military or veteran status, sex, or any other status or classification... 
    Local area

    Financial Industry Regulatory Authority, Inc.

    Rockville, MD
    4 days ago
  • FINRA is seeking a Senior Principal Risk Specialist in Rockville, Maryland to lead cybersecurity resilience initiatives in the financial sector. You'll design and facilitate tabletop exercises and workshops to strengthen member firms' response to cyber threats. The ideal...

    Dormont Manufacturing Co

    Rockville, MD
    1 day ago
  • $131.2k - $238.3k

    FINRA is seeking a Senior Principal Risk Specialist focused on cybersecurity in Rockville, Maryland. In this role, you will lead cybersecurity tabletop exercises and workshops, develop formal engagement documentation, and serve as a trusted advisor on incident management...

    FINRA

    Rockville, MD
    12 hours ago
  •  ...government’s most critical national security and defense priorities,...  ...begins. Ardent is seeking an Information Security Program Manager to...  ...the Chief Information Security Officer (CISO) in strategic planning...  ...investigation process prior to receiving system access. We highly encourage... 
    Contract work
    For contractors
    Local area
    Flexible hours

    Ardent Services

    Rockville, MD
    2 days ago
  • Dormont Manufacturing Co is seeking an Information Security Program Manager to lead cybersecurity operations in a hybrid role based in Rockville, MD. The successful candidate will have proven leadership in managing cybersecurity programs, ensuring alignment with federal... 
    For contractors

    Dormont Manufacturing Co

    Rockville, MD
    2 days ago
  • Westat, based in Bethesda, MD, is hiring an IT Business Analyst (Lead IT Associate) for a hybrid position. The ideal candidate will bridge the gap between software development and project teams, supporting the missions in public health, education, and social policy. The...

    Westat

    Bethesda, MD
    12 hours ago
  • A technology solutions firm is seeking a STARLIMS Sr Systems Architect in Rockville, MD. The ideal candidate will have strong experience with STARLIMS and be skilled in developing large-scale information systems. Responsibilities include designing system architecture to... 

    360 IT Professionals

    Rockville, MD
    12 hours ago
  • Leidos Inc., located in Gaithersburg, Maryland, is seeking an experienced Information System Security Officer (ISSO) to oversee compliance with security policies and manage risks related to information systems. The ISSO will conduct assessments, develop documentation, and... 

    Leidos Inc

    Gaithersburg, MD
    12 hours ago
  •  ...computer forensics services including evidence seizure, computer forensic analysis, and data recovery Ability to convey technical information effectively and concisely to a wide range of audiences Working experience in hardware configuration and network/data... 
    Temporary work
    Work experience placement

    Vexterra Group

    Bethesda, MD
    3 days ago
  •  ...Jira and Confluence for CI/CD, and collaborate with stakeholders to optimize information systems. You will also mentor teams on best practices, manage integration of plugins, and ensure security clearances are in place to support DHS-related initiatives and government... 

    Contact-Government-Services,-LL

    Rockville, MD
    1 day ago
  • A government services provider is seeking an experienced Information Systems Security Officer (ISSO) based in Rockville, Maryland, who has a strong background in DIACAP and RMF. This position involves managing cybersecurity risks, conducting security assessments, and maintaining... 

    CGS Federal (Contact Government Services)

    Rockville, MD
    12 hours ago
  • Lockheed Martin’s Computer Incident Response Team (LM-CIRT) is hiring an Associate Cyber Intel Analyst in a hybrid role with about 50% on-site work in Rockville, MD. Eligibility to obtain a DoD Secret clearance is required, and a portion of remote telework may be available...
    Remote work

    Lockheed Martin

    Rockville, MD
    1 day ago
  • $130k - $170k

     ...intelligence-driven SOC model, fusing multi-source data to identify, analyze, and mitigate sophisticated cyber threats impacting Agency systems. Salary $130k-170K Key Responsibilities Lead advanced incident detection, response, and escalation support for high-severity... 

    ActioNet

    Rockville, MD
    12 hours ago
  •  ...role requires 8+ years of experience in cybersecurity investigation and incident response, as well as strong knowledge of operating systems and cloud environments. Join a team committed to innovative software solutions and comprehensive employee well-being, including... 
    Flexible hours

    Donnelley Financial, LLC

    Rockville, MD
    12 hours ago
  •  ...Overview Join us and make a difference in National Security! This role protects customer information systems and networks from cyber-attacks. The Cyber Security Engineer – Technical Lead will be a hands-on, player-coach, dedicating approximately 75% of time to direct engineering... 

    Leidos

    Bethesda, MD
    1 day ago
  •  ...the development and execution of cyber security strategies to support plant design and engineering...  ...building a lab for industrial control systems. Ideal candidates will have at least...  ...role in maintaining and securing our information systems while ensuring compliance with internal... 

    X energy LLC

    Rockville, MD
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information System Security Officer. Be the first to apply!