At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills and training they need to succeed. We are all about trust, camaraderie, and a shared ambition to lead the world in defense technologies and national security services. We offer flexible work environment to support the balance in your life and keep you performing at your best. Be a part of a company that is part of the community; driven to improve our future and protect our freedom.
Our Sterling, VA based team supports a US Government (USG) agency program that engineers, deploys, and maintains a cloud-based Model Based Systems Engineering Ecosystem (DEE). We are seeking an Information Systems Security Officer (ISSO) to monitor and maintain the programs' security posture. The ISSE will work in coordination with fellow members of the project team and external service providers in accordance with the NIST 800-171 Risk Management Framework (RMF) and USG instructions.
Responsibilities include:
- Lead the charge for achieving Authority to Operate (ATO) and collaborate with the Information Security Officer (ISO) to maintain ATO
- Maintain Security-related records
- Monitor the project's information system security posture
- Perform Continuous Monitoring (ConMon) using enterprise Information Assurance (IA) tools
- Audit event log data for indications of unauthorized computer activity using analysis software
- Audit vulnerability and compliance scan results to identify threats using scanning software
- Validate administrative and operational Security Controls implementation
- Coordinate with the technical team to remediate vulnerability and compliance related findings
- Create Body of Evidence (BOE) documentation in support of ConMon and system authorization packages
- Attend Security-related meetings with customer and external service providers
- Provide security design guidance and analysis to ensure alignment with customer's security practices
- Single point of contact on all accreditation and continuous monitoring activities
- Manage Privilege User nomination process
- Contribute to documentation such as System Security Plans (SSP) and Standard Operating Procedures (SOP)
- POA&M development and implementation
- Ensure implementation and validation of security controls that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation
XYZ
Required Education, Experience, & Skills
- Minimum of Bachelor's Degree plus 7 years relevant experience
- 5 years Information Assurance / Information System Security experience
- Possess a DoD 8140 Cyber Workforce IAT Level II or IAM Level 1 certification
- Set and self-manage professional development & education goals
- Ability to prioritize competing demands and complete tasks on schedule
- Work as part of a team and independently without direct supervision Understanding of the NIST 800-171 Risk Management Framework
- Experience in administration of mixed Windows and Linux environments
- Experience using vulnerability scanning tools, such as Nessus
- Knowledge of STIG compliance and vulnerability management
- Ability to analyze technical content to determine if it meets the customer's defined security requirements
- Outstanding written and oral communications skills
- Listen and ask clarifying questions as needed
- Speak in group settings
- Draft clear, concise, and grammatically correct documentation
- Maintain organized and complete records
- Knowledge of the complex environment involving shared networks and multiple security enclaves
- Knowledge of engineering for Cyber engineering and integration services including security, authentication, identity management, authorization, and access control engineering
- Self-starter able to work independently and build relationships with technical reps across divisions, comfortable with cyber security and able to brief issues to the customer
- Over 5 years of experience working on Intelligence Community enterprise infrastructure and engineering programs
- Knowledge of Cloud security controls and implementation
Preferred Education, Experience, & Skills
- AWS Certified Security Specialty
- CISSP
- Experience with implementation or administration of AWS Cloud Security services
- Experience using Security Information and Event Management (SIEM) tools, such as Splunk
- Experience using Risk Management Framework Workflow Management Tool, such as ServiceNow
- Experience with:
- Security Control Testing
- Vulnerability Analysis
- Critical Incident Response
Pay Information
Full-Time Salary Range: $130355 - $221603
Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20+ hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.
About BAE Systems Intelligence & Security
BAE Systems, Inc. is a defense, aerospace, and security company headquartered in Falls Church, Virginia, with more than 40,000 employees worldwide. We serve, supply, and protect those who protect us. As one of the most geographically diverse international defense companies, we deliver a full range of products and services spanning air, land, maritime, space, and cyber, including advanced electronics, intelligence solutions, and dedicated customer support.
Our culture is performance-driven and values-led, built on curiosity, creativity, and collaboration. Purpose isn't a tagline here. It's what drives us. We're developing breakthrough technologies that defend national security and make a lasting impact on our communities and our planet. When you join BAE Systems, you're not just building a career. You're contributing to a mission that truly matters.
This position will be posted for at least 5 calendar days. The posting will remain active until the position is filled, or a qualified pool of candidates is identified.
Skills Required
- Bachelor’s degree and at least 7 years of relevant experience
- At least 5 years of Information Assurance or Information System Security experience
- DoD 8140 Cyber Workforce IAT Level II or IAM Level 1 certification
- Understanding of the NIST 800-171 Risk Management Framework
- Experience administering mixed Windows and Linux environments
- Experience using vulnerability scanning tools such as Nessus
- Knowledge of STIG compliance and vulnerability management
- Ability to analyze technical content against customer security requirements
- Strong written and oral communication skills
- Knowledge of shared networks and multiple security enclaves
- Knowledge of cyber engineering, security, authentication, identity management, authorization, and access control engineering
- More than 5 years working on Intelligence Community enterprise infrastructure and engineering programs
- Knowledge of cloud security controls and implementation
- Ability to prioritize competing demands and complete tasks on schedule
- Ability to work independently and collaboratively without direct supervision
- AWS Certified Security Specialty
- CISSP certification
- Experience implementing or administering AWS Cloud Security services
- Experience using SIEM tools such as Splunk
- Experience using RMF workflow management tools such as ServiceNow
- Experience with security control testing, vulnerability analysis, and critical incident response
BAE Systems, Inc. Compensation & Benefits Highlights
-
Healthcare Strength — Medical, dental, and vision coverage is presented as comprehensive, paired with an EAP, fertility and transgender care options, and HSA‑compatible plans that can include employer contributions with coverage starting on day one in some cases. These resources are reinforced by wellness tools and immediate eligibility noted on official benefits materials.
-
Retirement Support — A 401(k) savings plan is broadly available, with employer matching and other contributions that vary by business unit, and some U.S. employee groups retain pension arrangements. Company‑paid basic life insurance equal to 2x base salary (up to $1M) further strengthens financial security.
-
Parental & Family Support — Paid parental leave (e.g., 160 hours for full‑time employees) sits alongside adoption and surrogacy reimbursement and Bright Horizons backup child and elder care. These benefits help reduce care gaps and complement PTO and applicable state programs.
BAE Systems, Inc. Insights
What We Do
Improving the future and protecting lives is an ambitious mission, but it’s what we do. As a leading aerospace, defense, and security company, we work together to deliver a full range of products and services for air, land, space, and naval forces, as well as advanced electronics, security, information technology solutions and customer support services. How we work is rooted in purpose – a purpose to protect those who protect us, to unite our community of colleagues and customers, and to drive forward the growth and development of our exceptional team members. It's where purpose connects.
Why Work With Us
We believe your career should be filled with innovation and discovery. And that's exactly what you'll find at BAE Systems. As you work to develop the latest technology and defend national security, you will continually hone your skills and expand knowledge. On a sharp and collaborative team, you will be challenged – and supported – at every turn.
Gallery
BAE Systems, Inc. Teams
BAE Systems, Inc. Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.
As the work place continues to evolve, so do we. Remote and hybrid opportunities are available at BAE Systems depending on the nature of the role. Check your job requisition to learn more.








