Sandy Mac Evolution LLC is seeking an Information Systems Security Officer (ISSO) III to support Department of Defense Special Access Program environments at Hanscom AFB, Massachusetts.
The ISSO III is responsible for maintaining the operational security posture of assigned information systems and supporting information system security activities across Collateral, SCI, and SAP environments.
The selected candidate will work closely with the ISSM and information technology personnel to maintain authorization documentation, perform continuous monitoring, assess system changes, identify cybersecurity vulnerabilities, and support DoD and contractor organizations with assessment and authorization activities.
- Assist the ISSM in meeting assigned cybersecurity duties and responsibilities.
- Prepare, review, and update system authorization packages.
- Ensure approved procedures exist for clearing, sanitizing, and destroying hardware and media.
- Notify the ISSM of changes that may affect system authorization determinations.
- Conduct periodic information system reviews to ensure compliance with approved security authorization packages.
- Coordinate hardware, software, and firmware changes with the ISSM and appropriate authorization authorities.
- Monitor system recovery activities to ensure security features and procedures are properly restored.
- Ensure security documentation is current and accessible to authorized personnel.
- Ensure audit records are collected, reviewed, and documented.
- Execute cybersecurity portions of organizational self-inspections.
- Identify cybersecurity vulnerabilities and support implementation of corrective measures.
- Conduct security impact analyses for configuration management changes.
- Conduct continuous monitoring activities for authorization boundaries.
- Assist DoD, national agency, and contractor organizations with Assessment and Authorization efforts.
- Prepare reports regarding the status of security safeguards applied to information systems.
- Perform ISSO duties in support of internal and external customers.
- 5–7 years of related experience.
- Experience developing RMF packages, authorization packages, or cybersecurity bodies of evidence.
- Prior performance in roles such as System Administrator, Network Administrator, or ISSO.
- Minimum 2 years of SAP experience required.
- Working knowledge of DoD cybersecurity policy, RMF, configuration management, system authorization, and continuous monitoring.
- Ability to support classified information systems operating within SAP environments.
- Must be able to regularly lift up to 50 pounds.
- Bachelor’s degree or equivalent related experience.
- A Bachelor’s degree may be considered equivalent to four years of experience.
- DoD 8570.01-M IAM Level II qualification required in lieu of IAT Level II.
- Must satisfy applicable cybersecurity certification requirements associated with the labor category.
- Active Top Secret clearance required.
- Must possess or be eligible for SCI access.
- Must be eligible for SAP access.
- Must be willing to submit to a Counterintelligence Polygraph.
Skills Required
- 5-7 years of related experience
- Experience developing RMF packages, authorization packages, or cybersecurity bodies of evidence
- Prior performance as System Administrator, Network Administrator, or ISSO
- Minimum 2 years of SAP experience
- Working knowledge of DoD cybersecurity policy, RMF, configuration management, system authorization, and continuous monitoring
- Ability to support classified information systems operating within SAP environments
- Must be able to regularly lift up to 50 pounds
- Bachelor's degree or equivalent related experience
- DoD 8570.01-M IAM Level II qualification (in lieu of IAT Level II)
- Must satisfy applicable cybersecurity certification requirements associated with the labor category
- Active Top Secret clearance required
- Must possess or be eligible for SCI access
- Must be eligible for SAP access
- Must be willing to submit to a Counterintelligence Polygraph
What We Do
Sandy Mac Evolution LLC (SME) is a certified Service-Disabled Veteran-Owned Small Business (SDVOSB) delivering cleared mission support and professional services across federal, defense, and government environments. The company specializes in operational, administrative, technical, and IT support through vetted cleared professionals, connecting top talent with impactful roles across government missions and prime contractor teams, bringing disciplined, veteran-led leadership to every engagement.








