Senior Information Systems Security Officer

Washington, DC, US • Posted 1 hour ago • Updated 1 hour ago
Full Time
On-site
USD $120,001.00 - 160,000.00 per year
Company Branding Image
Fitment

Dice Job Match Score™

🔗 Matching skills to job...

Job Details

Skills

  • Security Clearance
  • Information Systems
  • SSP
  • Security Analysis
  • SAR
  • SCA
  • Impact Analysis
  • Computer Hardware
  • IaaS
  • Change Control
  • Continuous Monitoring
  • Authorization
  • IT Governance
  • Security Awareness
  • Training
  • Technical Writing
  • Status Reports
  • IT Security
  • Security Controls
  • Risk Management Framework
  • RMF
  • NIST SP 800 Series
  • FISMA
  • OMB
  • Risk Assessment
  • Cloud Security
  • Amazon Web Services
  • Google Cloud Platform
  • Google Cloud
  • Microsoft Office
  • Microsoft Azure
  • Cisco
  • Oracle
  • Network
  • System Security
  • IDS
  • IPS
  • Virtual Private Network
  • Encryption
  • Hardening
  • Auditing
  • Documentation
  • Reporting
  • Communication
  • Microsoft Word
  • Microsoft Excel
  • Microsoft PowerPoint
  • Microsoft SharePoint
  • Cyber Security
  • CISSP
  • CISM
  • Security+
  • SAP GRC
  • EMC RSA Archer
  • eMASS
  • XACTA
  • FedRAMP
  • Cloud Computing
  • Regulatory Compliance
  • Privacy
  • OWASP
  • Software Security
  • Management
  • Information Technology
  • Systems Engineering
  • FOCUS

Summary

Job ID: 2610109

Location: Washington, DC, US

Date Posted: 2026-03-10

Category: Cyber

Subcategory: Cyber GRC

Schedule: Full-Time

Shift: Day Job

Travel: No

Minimum Clearance Required: None

Clearance Level Must Be Able to Obtain: Public Trust

Potential for Remote Work: ORA_HYBRID

Description

SAIC is seeking a Senior Information Systems Security Officer (ISSO) to support a critical U.S. government agency in the National Capital Region. This senior-level role is responsible for ensuring the security and compliance of agency information systems by implementing and managing security controls aligned with federal cybersecurity frameworks, including the NIST Risk Management Framework (RMF), FISMA, and NIST SP 800-53.

Hybrid: 3 Days On-site / 2 Days Remote

Responsibilities:
  • Develop, implement, and maintain IT security controls in accordance with NIST SP 800-53, RMF, and agency security policies.
  • Support the preparation, review, and submission of Security Authorization packages, including the System Security Plan (SSP), Security Assessment Report (SAR), and Plan of Action and Milestones (POA&M).
  • Coordinate and prepare systems for Security Control Assessments (SCA), ensuring all artifacts are accurate and complete.
  • Conduct and document Security Impact Analyses (SIAs) for changes to hardware, software, cloud infrastructure, or connectivity.
  • Participate in configuration and change control processes, ensuring secure baselines are maintained and reflected in documentation.
  • Assist in system categorization and validate asset inventories to ensure appropriate control baselines are applied.
  • Assess control implementation effectiveness and identify deficiencies for remediation or risk acceptance.
  • Document business justifications and mitigation strategies for risk acceptance proposals for Authorizing Officials.
  • Support Continuous Monitoring by reviewing security alerts, system changes, and compliance evidence to ensure ongoing authorization.
  • Contribute to the development, revision, and enforcement of security policies, procedures, and technical guidelines.
  • Participate in internal IT governance processes, including exception handling, standards reviews, and control waivers.
  • Support security awareness and training compliance for personnel with system access.
  • Monitor evolving threats and recommend adaptive security controls in response to risk landscape changes.
  • Prepare high-quality technical documentation, status reports, and risk briefings for internal and external stakeholders.


Qualifications

Requirements:
  • Bachelor's degree and 9+ years of IT security or systems security engineering experience, or Master's degree with 7+ years of experience.
  • Ability to obtain and maintain a public trust requiring U.S. Citizenship
  • Hands-on experience implementing and managing security controls in enterprise or federal IT environments.
  • Strong understanding of the NIST RMF, NIST SP 800-53, FISMA, and federal security policies including EO 14028 and OMB M-22-09.
  • Experience performing risk assessments, preparing ATO documentation, and tracking control deficiencies in POA&Ms.
  • Working knowledge of cloud security (AWS, Azure, Google Cloud Platform) and hybrid environments.
  • Familiarity with enterprise platforms such as Microsoft 365, Azure AD, Cisco, and Oracle.
  • Proficient in network and system security concepts, including IDS/IPS, VPNs, encryption, secure baselining, and OS hardening.
  • Experience supporting third-party security assessments or audits.
  • Strong documentation, reporting, and communication skills, including the ability to convey complex technical issues to non-technical audiences.
  • Proficient in Microsoft Office (Word, Excel, PowerPoint, SharePoint).

Preferred Qualifications:
  • Current cybersecurity certification such as CISSP, CISM, or Security+.
  • Experience with GRC and SA&A tools such as Archer, eMASS, CSAM, or Xacta.
  • Familiarity with FedRAMP, cloud compliance requirements, and federal privacy regulations.
  • Knowledge of OWASP Top 10 and modern application security best practices.
  • Understanding of adversary TTPs and frameworks such as MITRE ATT&CK.
  • Ability to work independently and manage priorities in a fast-paced, dynamic environment.


Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.


Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10111346
  • Position Id: 2610109
  • Posted 1 hour ago

Company Info

About SAIC

SAIC® is a premier Fortune 500 mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, civilian and intelligence markets include secure high-end solutions in mission IT, enterprise IT, engineering services and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 24,000 strong; driven by mission, united by purpose, and inspired by opportunities. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.5 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

About_Company_One
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

McLean, Virginia

Today

Full-time

Chantilly, Virginia

Today

Full-time

Chantilly, Virginia

Today

Full-time

Reston, Virginia

Today

Full-time

Search all similar jobs