Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Systems Security Officer

Actalent

Job Description

Job Description

Job Title: Information Systems Security Officer

Job Description

The Information Systems Security Officer will lead cybersecurity efforts for complex software projects within a United States Department of Defense (DoD) environment, with a strong focus on Risk Management Framework (RMF) compliance and secure cloud-based workloads. This role drives the creation, submission, and maintenance of security packages and authorizations, including obtaining and sustaining Authorization to Operate (ATO) for Amazon Web Services (AWS) container-based solutions. The position requires deep expertise in DoD cybersecurity processes, tools, and standards, as well as strong communication and collaboration skills across engineering, cybersecurity, business, and customer stakeholders.

Responsibilities

  • Serve as an Information Systems Security Engineer (ISSE) for DoD software projects, providing cybersecurity leadership and guidance across the full system lifecycle.
  • Generate and submit complete System Security Packages (SSPs), Plans of Action and Milestones (POA&Ms), and other required artifacts to support DoD Risk Management Framework (RMF) and Security Technical Implementation Guide (STIG) processes.
  • Apply DoD cybersecurity tools, including eMASS and STIG Viewer, to build, manage, and validate security packages and supporting documentation.
  • Obtain and maintain at least one DoD Authorization to Operate (ATO) for AWS-deployed container-based workloads, ensuring ongoing compliance with DoD security requirements.
  • Inform and define software mitigation requirements based on results from static application security testing (SAST) tools such as SonarQube and container scanning tools such as Trivy.
  • Recommend and validate data protection mechanisms, including encryption and access control strategies, to safeguard sensitive information in deployed workloads.
  • Test and verify security controls to ensure they function as designed and effectively reduce risk across applications and infrastructure.
  • Conduct threat modeling activities to identify potential attack vectors and prioritize security mitigations for software systems and cloud workloads.
  • Lead vulnerability management activities, including identifying, tracking, and coordinating remediation of security findings across development and operations teams.
  • Monitor the security posture of deployed workloads, leveraging appropriate tools and processes to detect and respond to anomalous or malicious activity.
  • Collaborate effectively with engineering, cybersecurity, business, and customer stakeholders throughout the RMF cybersecurity lifecycle, ensuring clear communication of risks, requirements, and progress.
  • Provide security guidance and input to DevSecOps teams across multiple software releases, helping integrate security best practices into continuous integration and deployment processes.
  • Use system security tools such as Wiz or eMASSter to support security posture assessment, reporting, and ongoing compliance activities.
  • Contribute to the design and operation of Security Operations Center (SOC) functions, using tools such as Splunk or CloudWatch to support monitoring and incident response.
  • Leverage AWS security services, including Security Hub and GuardDuty, to strengthen detection, response, and compliance capabilities in cloud environments.
  • Apply knowledge of CIS benchmarks and other industry security standards to align system configurations and controls with recognized best practices.
  • Support or coordinate activities related to penetration testing, fuzz testing, and dynamic application security testing (DAST), and use results to drive remediation and improvement.
  • Document security requirements, decisions, and outcomes clearly and comprehensively to support audits, assessments, and continuous improvement.

Essential Skills

  • At least 5 years of experience serving as an Information Systems Security Engineer (ISSE) for United States Department of Defense (DoD) software projects.
  • Proven experience generating and submitting System Security Packages (SSPs), Plans of Action and Milestones (POA&Ms), and other artifacts required for DoD Risk Management Framework (RMF) and Security Technical Implementation Guide (STIG) processes.
  • Hands-on experience applying DoD cybersecurity tools such as eMASS and STIG Viewer to develop and manage security packages.
  • Demonstrated success obtaining and maintaining at least one DoD Authorization to Operate (ATO) for an AWS-deployed container-based workload.
  • Strong background in cyber security, including threat modeling, vulnerability management, security monitoring, and data protection for deployed workloads.
  • Experience informing software mitigation requirements based on output from static application security testing (SAST) tools such as SonarQube.
  • Experience using container scanning tools such as Trivy to identify and remediate vulnerabilities in containerized workloads.
  • Demonstrated expertise in recommending and validating data protections and testing security controls for complex systems.
  • Track record of effective communication and collaboration throughout the RMF cybersecurity lifecycle with engineering, cybersecurity, business, and customer stakeholders.
  • Possession of one or more relevant cybersecurity certifications, such as CISSP, CASP, or Security+.

Additional Skills & Qualifications

  • Experience with United States Intelligence Community (IC) system cybersecurity processes and tools.
  • background in establishing or operating Security Operations Center (SOC) functions, including use of tools such as Splunk or CloudWatch.
  • Hands-on experience with AWS security services, such as Security Hub and GuardDuty, to enhance cloud security monitoring and compliance.
  • Experience serving as an ISSE on a DevSecOps team through multiple software releases, integrating security into continuous delivery pipelines.
  • Familiarity with system security tools such as Wiz or eMASSter for posture assessment and compliance tracking.
  • Knowledge of CIS benchmarks and other industry security standards, and the ability to apply them to system hardening and configuration.
  • Exposure to penetration testing, fuzz testing, and dynamic application security testing (DAST) tools and techniques, with the ability to interpret results and support remediation.

Work Environment

The role focuses on securing DoD and cloud-based software workloads, particularly AWS-deployed container environments, using a range of cybersecurity tools, frameworks, and industry standards. You will work closely with engineering, cybersecurity, business, and customer stakeholders in a collaborative setting that values clear communication and thorough documentation. The environment emphasizes adherence to DoD RMF, STIG requirements, and ATO processes, and makes extensive use of tools such as eMASS, STIG Viewer, SonarQube, Trivy, Wiz, eMASSter, Splunk, CloudWatch, and AWS security services like Security Hub and GuardDuty. The position supports a culture of continuous improvement in security posture, integration with DevSecOps practices, and proactive monitoring and vulnerability management across deployed workloads. Dress code and specific onsite or remote arrangements are determined by organizational policies and project needs.

Job Type & Location

This is a Contract position based out of Morrisville, NC.

Pay and Benefits

The pay range for this position is $150000.00 - $170000.00/hr.

Individual compensation offered for this position within this range will depend on many factors, including qualifications, skills, relevant experience, job knowledge, geographic location, internal equity, and other pertinent job-related factors.

Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: Medical, dental & vision Critical Illness, Accident, and Hospital 401(k) Retirement Plan Pre-tax and Roth post-tax contributions available Life Insurance (Voluntary Life & AD&D for the employee and dependents) Short and long-term disability Health Spending Account (HSA) Transportation benefits Employee Assistance Program Time Off/Leave (PTO, Vacation or Sick Leave)

Workplace Type

This is a hybrid position in Morrisville,NC.

Application Deadline

This position is anticipated to close on Oct 15, 2026.

About Actalent

Actalent is a global leader in engineering and sciences services and talent solutions. We help visionary companies advance their engineering and science initiatives through access to specialized experts who drive scale, innovation and speed to market. With a network of almost 20,000 consultants and 5,000 clients across the U.S., Canada, Asia and Europe, Actalent serves many of the Fortune 500. We are proud to be an Engineering News-Record (ENR) Top 500 Design Firm for our engineering design services and a ClearlyRated Best of Staffing® winner for both client and talent service.

The company is an equal opportunity employer and will consider all applications withoutregard to race, sex, age, color, religion, national origin, veteran status, disability,sexual orientation, gender identity, genetic information or any characteristic protectedby law.

If you would like to request a reasonable accommodation, such as the modification oradjustment of the job application process or interviewing process due to a disability,please email View email address on ziprecruiter.com for other accommodation options.

San Francisco Fair Chance Ordinance: Pursuant to the San Francisco Fair Chance Ordinance, for all positions located in thecity and county of San Francisco, we will consider for employment qualified applicantswith arrest and conviction records.

Massachusetts Lie Detector: It is unlawful in Massachusetts to require or administer a lie detector test as acondition of employment or continued employment. An employer who violates this lawshall be subject to criminal penalties and civil liability.

Use of Artificial Intelligence (AI): We may use Artificial Intelligence (AI) to support parts of our hiring process,including sourcing, screening, and evaluating candidates. AI helps assess applicationsand qualifications, but final decisions are made by our hiring team. By applying, youacknowledge and agree that your application may be reviewed using AI tools.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Information Systems Security Officer in Morrisville, NC vacancy
  •  ...Let’s see what we can achieve. Together. Summary The Chief Information Security Officer (CISO), working in collaboration with and in support of...  ...direction for the firm’s Information Security Management System, security governance, risk management, incident response,... 
    Suggested
    Work at office
    Remote work
    Relocation
    Visa sponsorship
    Relocation package

    DLA Piper

    Raleigh, NC
    2 days ago
  •  ...About the job We are seeking a Chief Information Security Officer (CISO) with a global vision to build and lead our cybersecurity and information assurance strategies. The CISO will play a pivotal, leadership role in driving innovative strategies for protecting our... 
    Suggested
    Contract work

    Security Executive Council

    Durham, NC
    4 days ago
  •  ...enterprise programs on penetration testing and online application security Worked extensively on Web & Mobile Application, Network device,...  ...assessment and penetration testing services, detecting system weaknesses and making recommendations for mitigation Provide individual... 
    Suggested

    Omni Inclusive

    Cary, NC
    1 day ago
  • $84.5k - $107.5k

     ...Join to apply for the Cyber Security Analyst role at Infinite Computer Solutions Join to apply for the Cyber Security Analyst role...  ...Security Analyst Qualifications Bachelor of Science in Information Systems Security, ITT-Technical Institute Range Of Year Experience-Min... 
    Suggested
    Full time

    Infinite Computer Solutions

    Raleigh, NC
    2 days ago
  •  ...Hardware, Linux, Management, Programming, Security Location Cary, NC Total Experience...  ..., and supporting Linux operating systems and hardware  * System administration and...  ...Bachelor degree in Computer Science, Information Systems, Mathematics, Engineering or related... 
    Suggested
    Full time

    Jobsbridge

    Cary, NC
    more than 2 months ago
  • $82.6k - $162.8k

     ...operational resilience programs * Analyzing client processes, systems, dependencies, and risks to identify resilience gaps and...  ...: * BA/BS in Computer Engineering, Computer Science, Information Systems, Cyber Security, or equivalent demonstrated technical background * 2+... 
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    2 days ago
  •  ...Senior Legal Counsel to the Chief Technology Officer (CTO) Office About the Company Well-recognized Fortune 500 computer manufacturer...  ...& Components Personal Computers & Peripherals Retail Information Technology & Services Web Services & Apps Consumer... 
    Work at office

    Confidential

    Morrisville, NC
    1 day ago
  •  ...provider in helping to transform the cyber security services marketplace. Managing our...  ...and trusted advisor to client chief information security officers, chief information officers, and...  ...Management (SIEM), Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS... 
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    2 days ago
  •  ...contract renewals, and Requests for Proposal and Requests for Information activities, including solution scoping, staffing models,...  ...ID. - Bachelor’s degree in computer science, information systems, information security, mathematics, decision sciences, risk management,... 
    Contract work
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    2 days ago
  •  ...Chief Financial and Operations Officer (CFOO) Supervises:...  ...Academy is seeking a Director of Information Technology (Director of IT) to...  ...team and is responsible for the systems, infrastructure,...  ...applications, communications, and security platforms. Ensure a secure... 
    Full time
    Work at office
    Immediate start
    Monday to Friday

    RiseMe

    Raleigh, NC
    3 days ago
  •  ...for the outcomes that keep our clients secure?If yes, then Deloitte's Cyber Detect and...  ...including delivery-model evolution, Security Information and Event Management (SIEM)...  ...degree in computer science, information systems, information security, mathematics, decision... 
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    2 days ago
  •  ...Associates (ARA), Inc. has an immediate need for an early-career Information Systems Security Manager (ISSM) in Raleigh, NC. This role will provide day-...  ...owners and continues to grow rapidly. Together, our offices throughout the U.S. and Canada provide a broad range of... 
    Full time
    Work experience placement
    Immediate start
    Relocation
    Flexible hours

    Applied Research Associates

    Raleigh, NC
    4 days ago
  • $105.4k - $207.8k

     ...confidence, and proactively manage to secure success. Recruiting for this...  ...on response action plans for information risk events and incidents...  .../IP, DNS, and knowledge in system security architecture and...  ...50% of time from a Deloitte office.Limited immigration sponsorship... 
    Work at office
    Local area
    Visa sponsorship
    Shift work
    Rotating shift

    Deloitte

    Raleigh, NC
    7 hours ago
  • $161k - $242k

     ...deep hands-on expertise in Data Loss Prevention (DLP), Information Protection, and Data Security Posture Management. You thrive in complex, highly...  ...property, sensitive information, and critical business systems. The team is responsible for advancing enterprise data... 
    Remote work

    Synopsys Inc

    Morrisville, NC
    more than 2 months ago
  •  ...Wolfspeed seeks a strategic Chief Information Security Officer to build and lead global cybersecurity and information assurance programs. You will protect IP, customer data, and design assets, while fostering a security-first culture across the organization. The role... 

    Jobleads-US

    Durham, NC
    4 days ago
  • $233.9k - $330.4k

     ...customers, fostering a culture of curiosity, collaboration, and rapid iteration. Your ImpactAs a Principal Engineer leading software security, you will be a primary technical authority responsible for defining and driving the security architecture across our software... 
    Full time
    Contract work
    Temporary work
    Local area
    Flexible hours

    CISCO Systems

    Research Triangle Park, NC
    7 hours ago
  •  ...The Security Executive Council is seeking a Chief Information Security Officer (CISO) with a global vision to build and lead our cybersecurity and information assurance strategies. The CISO will play a pivotal, leadership role in driving innovative strategies for protecting... 

    Jobleads-US

    Durham, NC
    4 days ago
  •  ...direction, management, and participation in the delivery and support of information systems, security and technology resources for the Firm, and gives strategic guidance to the Chief Operating Officer and Executive Committee toward achieving the firm's operational goals.... 
    Work at office
    Remote work
    Flexible hours

    Smith Debnam

    Raleigh, NC
    13 hours ago
  •  ...experienced Senior Infrastructure Cloud Systems Manager to lead an IT team overseeing a...  ...to maximize operational efficiency and security. Key duties include building vendor partnerships...  ...federal, state, or law law. All your information will be kept confidential according to... 

    Arista Networks

    Cary, NC
    1 day ago
  • $76 - $76.9 per hour

     ...76.90/hr Job Description Immediate need for a talented Cyber Security Analyst - Lead. This is a 04 months contract opportunity with...  ...Applicable Employment type Contract Job function Analyst and Information Technology Industries Banking Pyramid Consulting, Inc. provides... 
    Contract work
    Local area
    Immediate start
    Remote work

    Pyramid Consulting, Inc

    Raleigh, NC
    13 hours ago
  •  ...in a delivery or development capacity College diploma or university degree in the field of business administration, finance, or information systems is considered advantage. Nice to have knowledge of other Agile approaches: Kanban, etc. #J-18808-Ljbffr TechDigital Group

    TechDigital Group

    Cary, NC
    2 days ago
  • Join to apply for the Cyber Security Analyst II role at SECU Join to apply for the Cyber...  ...implementing, managing, and optimizing Security Information and Event Management (SIEM) solutions to...  ...%) Design, implement, and maintain the systems and infrastructure that support the SOC,... 
    16 hours
    Full time
    Internship
    Work from home

    SECU

    Raleigh, NC
    3 days ago
  • $140k - $155k

     ...Overview Cypress Creek Energy is hiring an Information Security Manager to lead the company's security...  ..., and maintain an accurate view of every system in the environment. You will report directly to the Chief Technology Officer and partner closely with IT, Counsels, and... 
    For contractors
    Work at office
    3 days per week

    Cypress Creek Renewables

    Durham, NC
    3 days ago
  •  ...Director of Technology Reports to: Chief Information Technology Officer Our Organization We are a...  ...that platforms, architecture, security, data, and delivery capabilities evolve...  ...infrastructure and network engineering, systems architecture, database administration... 
    Contract work
    For contractors
    2 days per week

    American Board of Anesthesiology Inc

    Raleigh, NC
    a month ago
  •  ...driven individual to join our fast-paced security team, engaged in enterprise-wide...  ...Windows, Linux, and other popular Operating Systems.Working knowledge in related vulnerability...  ...fully remote roles.Certifications:Category:Information TechnologyPlease be advised that... 
    Full time

    Fidelity Investments

    Durham, NC
    4 days ago
  •  ...Anywhere Type: Contract-to-Hire Category: Security Industry: Government Workplace Type:...  ...of security controls for the systems tested. Relate test results to controls...  ...Qualys. 3+ years of experience in the information technology field. Knowledge of and experience... 
    Hourly pay
    Permanent employment
    Contract work
    Local area
    Remote work

    Eliassen Group

    Raleigh, NC
    4 days ago
  •  ...helping the team deliver reliable, scalable, secure and customer-focused solutions while...  ...a strong understanding of distributed systems and service-oriented architectures. Experience...  .... Strategic Planning - Obtaining information and identifying key issues and... 
    Full time
    Local area
    Work visa

    SAS

    Cary, NC
    4 days ago
  • $125k - $185k

     ...Title Senior Network Engineer – Network Security & Wireless Network Corporate Title...  ...A hybrid working model, allowing for in-office / work from home flexibility, generous vacation...  ...Experience in a TISO, technical information security, security architecture, cyber risk... 
    Full time
    Work at office
    Remote work
    Work from home
    Shift work
    Cary, NC
    more than 2 months ago
  •  ...expectations. Education Qualifications: Bachelor's degree in information systems, business, engineering, or a related field, or equivalent...  ...grown into a multi-billion-dollar family of companies with offices around the world. Working at DPR, you'll have the chance... 
    For contractors
    Work experience placement

    DPR Construction

    Morrisville, NC
    3 days ago
  • $134.5k - $265.1k

     ...people, facilities, assets, and operations. Join our Physical Security consulting team to help clients address evolving threats through...  ...Center technology; physical security technology; video management systems; access control systems; risk intelligence; mass communication... 
    Contract work
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Systems Security Officer. Be the first to apply!