We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Information System Security Officer

Leidos Inc
$87,100.00 - $157,450.00 / yr
United States, Alabama, Huntsville
Aug 08, 2026

Description

Leidos Dynetics, within the Digital Sector, is seeking a talented Information System Security Officer (ISSO) to join a diverse team to create unique solutions for complex problems. With offices across the United States engaging in the defense, space, cyber and commercial fields, Leidos Dynetics provides responsive, cost-effective engineering, scientific and IT solutions.

The Information System Security Officer (ISSO) will support the cybersecurity compliance and operational security of DoD classified information systems operating within a SIPRNet environment. Working under the direction of the Information System Security Manager (ISSM), you will assist in maintaining Authorization to Operate (ATO) compliance, supporting Risk Management Framework (RMF) activities, preparing for DCSA Cyber Operational Readiness Assessments (CORA), and partnering with Information Technology teams to maintain secure and compliant classified information systems.

Primary Responsibilities

In this role, your primary duties will consist of managing the day-to-day compliance of our classified information system for SIPRNet and maintaining the ATO by:

  • Perform routine cybersecurity compliance assessments and security audits to verify compliance with NIST RMF, DCSA DAAG, NISPOM, and organizational security policies.

  • Perform in Risk Management Framework (RMF) authorization process by developing and maintaining artifacts for the IS Body of Evidence (BoE).

  • Review security-relevant Configuration Management (CM) changes and participate in Change Control Board (CCB) activities to ensure security requirements are maintained throughout the system lifecycle.

  • Perform sanitization and release of hardware in accordance with security policies or Authorizing Official (AO) guidance.

  • Perform security control assessments, vulnerability analysis, and STIG compliance reviews using approved assessment tools.

  • Maintain security authorization artifacts within eMASS and support continuous monitoring activities throughout the system lifecycle.

  • Assess and monitor system compliance, auditing, security plan development and delivering information systems security education and awareness

  • Investigating information system security violations and help prepare reports specifying corrective and preventative actions

  • Conduct technical and administrative assessments

  • Integrate new cybersecurity processes, procedures, and tools

  • Support the creation, review and update of cybersecurity documentation and other technical writing

  • Review audit logs, vulnerability scan results, and security events to identify compliance issues and coordinate corrective actions.

  • Coordinate closely with System Administrators, Network Engineers, Program Management, and Physical Security personnel to ensure cybersecurity requirements are integrated into daily operations.

  • Cyber Operational Readiness Assessment (CORA) inspection preparation

Basic Qualifications

  • Must currently hold an active DoD Secret clearance with eligibility to obtain Top Secret.

  • Bachelor's degree with 4+ years of relevant experience, or Master's degree with 2+ years of experience. Additional relevant experience may be considered in lieu of a degree

Relevant Experience Considered (experience in one or more of the following):

  • Cybersecurity

  • Information Assurance

  • Information Technology

  • Systems Administration

  • Systems Security

  • RMF Compliance

  • Vulnerability Management

  • Information System Auditing

  • Must possess one or more industry certifications aligned with the applicable DoD 8140/DoD Cyber Workforce Framework (DCWF) work role (for example, CompTIA Security+, CySA+, CISSP, CISM or equivalent), or the ability to otherwise satisfy DoD 8140 qualification requirements through approved education, training, or experience.

  • Compliance-based auditing using the Risk Management Framework (RMF), DCSA Assessment and Authorization Guide (DAAG), National Industrial Security Program Operating Manual (NISPOM)

  • Experience working with and/or supporting computer technologies (such as databases, operating systems, computer network hardware, software programs, hardware troubleshooting or electronics)

  • Experience administering or supporting Windows and/or Linux operating systems within Active Directory enterprise environments, including Group Policy, identity management solutions (such as Delinea), and security hardening.

  • Physical security, Project or program management, office management, senior administration, or account management

  • Highly organized and self-motivated with excellent documentation skills and the ability to work with minimal supervision.

Preferred Qualifications:

  • Working knowledge of DCSA Cyber Operational Readiness Assessments (CORA), Security Vulnerability Assessments (SVA), or other government cybersecurity inspections.

  • Familiarity with DoD classified information systems, including SIPRNet or other classified computing environments.

  • Knowledge of enterprise vulnerability management and security monitoring tools, such as Splunk, Trellix, Tenable Security Center, ACAS, SCAP Compliance Checker, and STIG Viewer.

  • Working knowledge of Windows and Linux operating systems, Active Directory, virtualization technologies, and enterprise identity management solutions.

  • Familiarity with the implementation of cybersecurity requirements derived from NIST, DoD, DCSA DAAG, STIGs, and the National Industrial Security Program Operating Manual (NISPOM).

  • Knowledge of the Risk Management Framework (RMF), Assessment and Authorization (A&A) processes, and eMASS.

  • Ability to provide cybersecurity guidance and collaborate effectively with Information Technology (IT), engineering teams, customers, and other stakeholders in support of classified information systems.

  • Familiarity with cyber incident response activities, including detection, containment, eradication, recovery, and reporting.

  • One or more additional technical or cybersecurity certifications (for example, Network+, CySA+, CISSP, CISM, CISA, Linux+, Red Hat, Microsoft, VMware, or similar).

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:August 7, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.


Pay Range:Pay Range $87,100.00 - $157,450.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Securing Your Data

Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Applied = 0

(web-77cf7d65c7-rcc7h)