Senior Information System Security Officer (ISSO)

Posted 2 Days Ago
Be an Early Applicant
Laurel, MD, USA
In-Office
135K-216K Annually
Senior level
Aerospace • Information Technology • Security • Cybersecurity • Defense
Do the can't be done.
The Role
Lead information system security operations for a complex HPC environment across multiple security domains. Responsibilities include RMF execution, ATO and reauthorization efforts, continuous monitoring, vulnerability and configuration compliance, authorization artifact maintenance, incident response support, access governance, risk analysis, and stakeholder briefings. The role also mentors junior ISSOs and translates security requirements into actionable guidance for engineering teams.
Summary Generated by Built In
Responsibilities

Peraton Labs is seeking a poly cleared Senior Information System Security Officer for a mission-critical, highly complex HPC environment enabling research across multiple security domains. You will own day-to-day security operations aligned to RMF, drive continuous monitoring, maintain ATO posture, and partner closely with subcontractor and customer personnel.


This position requires full-time on-site work in Laurel, or a customer site near College Park, MD.


Key responsibilities may include

  • Lead or co-lead ATO/reauthorization efforts for complex boundary systems
  • Mentor junior ISSOs and shape security operations playbooks
  • Perform risk analysis and author formal recommendations to leadership
  • Drive security engineering outcomes by partnering with internal teams on scalable compliance patterns
  • Brief senior internal and customer stakeholders on security posture, systemic risk trends, remediation burn-down, and authorization readiness
  • Act as the Senior ISSO supporting the system security lifecycle across development, operations, and modernization
  • Execute and maintain RMF activities (e.g., control implementation oversight, evidence collection, assessment support, POA&M management, continuous monitoring)
  • Maintain security authorization artifacts (e.g., SSP, control narratives, diagrams, inheritance/leverage controls, CM plan, incident handling plan, contingency artifacts, user/admin procedures)
  • Operate continuous monitoring: vulnerability management, config compliance, patching coordination, scan result triage, risk acceptance, and remediation verification.
  • Review and approve security-relevant changes through configuration/change control and validate security configurations after major upgrades
  • Support incident response and reporting: participate in investigations, coordinate containment actions, preserve evidence, and contribute to post-incident lessons learned
  • Ensure least privilege/access governance: account management oversight, privileged access workflows, periodic access reviews, and audit compliance requirements
  • Translate security requirements into implementation guidance that engineering teams can operationalize (clear, testable, and automatable where possible)

*This position may be eligible for an increased sign-on bonus. Eligibility, bonus amount, and applicable terms and conditions will be discussed during the recruiting process*


#MDFSP

#PLABS26

Qualifications

Required qualifications

  • 12+ years of experience and a BS in Computer Science, Cybersecurity, or related technical discipline, MS and 10+ years of experience, or a PhD and 8+ years of experience. Four years of additional experience is required in lieu of a Bachelors’ degree for a total of 16 years of experience
  • 8+ years of experience in information security/compliance supporting DOD/IC or government systems, including ownership of major RMF deliverables and ATO events for complex systems
  • Demonstrated leadership experience coordinating across security, engineering, and customer stakeholders
  • Ability to provide mentorship and direction to team members
  • Proven ability to write risk decisions and packages that stand up to assessor/AO scrutiny
  • Deep understanding of continuous monitoring at scale (recurring evidence, metrics, audit readiness, remediation governance)
  • Hands-on experience executing RMF tasks and maintaining authorization artifacts (SSP, POA&Ms, continuous monitoring evidence)
  • Strong working knowledge of NIST SP 800-53 controls and how they map to technical implementations and procedures
  • Experience with vulnerability and configuration compliance workflows
  • Familiarity with Linux-based enterprise environments and common hardening concepts
  • Ability to communicate risk clearly to both technical engineers and non-technical leadership
  • One or more active/current certifications such as: CISSP, CISM, CAP, GSLC, Security+, CCSP, INCOSE, CCNA, RHCE, MCSE, VCP, ITIL, PMP, Agile, and etc.
  • This position requires an active/current TS/SCI w/ Polygraph.

Preferred qualifications

  • Experience securing or assessing containerized workflows (e.g., container runtime hardening, image governance, supply chain considerations)
  • Experience with eMASS (or comparable GRC tooling), security control inheritance models, and assessor engagement.
  • Familiarity with vulnerability tooling and security monitoring concepts
  • Experience with data protection requirements relevant to sensitive environments
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range$135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Skills Required

  • 12+ years of experience and a bachelor's degree in Computer Science, Cybersecurity, or a related technical discipline; alternatively, a master's degree with 10+ years or a PhD with 8+ years of experience
  • Four additional years of experience in lieu of a bachelor's degree, for 16 total years of experience
  • 8+ years of information security or compliance experience supporting DoD, intelligence community, or government systems
  • Experience owning major RMF deliverables and ATO events for complex systems
  • Leadership experience coordinating security, engineering, and customer stakeholders
  • Ability to mentor and direct team members
  • Ability to write risk decisions and authorization packages that withstand assessor and authorizing official scrutiny
  • Deep understanding of continuous monitoring at scale, including recurring evidence, metrics, audit readiness, and remediation governance
  • Hands-on experience executing RMF tasks and maintaining SSPs, POA&Ms, and continuous monitoring evidence
  • Strong working knowledge of NIST SP 800-53 controls and their mapping to technical implementations and procedures
  • Experience with vulnerability and configuration compliance workflows
  • Familiarity with Linux-based enterprise environments and hardening concepts
  • Ability to communicate risk to technical engineers and non-technical leadership
  • One or more active/current certifications such as CISSP, CISM, CAP, GSLC, Security+, CCSP, INCOSE, CCNA, RHCE, MCSE, VCP, ITIL, PMP, or Agile
  • Active/current TS/SCI clearance with polygraph
  • Experience securing or assessing containerized workflows
  • Experience with eMASS or comparable GRC tooling, security control inheritance models, and assessor engagement
  • Familiarity with vulnerability tooling and security monitoring concepts
  • Experience with data protection requirements for sensitive environments

Peraton Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Peraton and has not been reviewed or approved by Peraton.

  • Healthcare Strength Healthcare offerings are described as broad, including medical, dental, vision, mental health support, and specialty programs like virtual physical therapy and surgical/cancer care navigation. Medical coverage is also characterized as a standout part of the overall package in terms of perceived quality.
  • Retirement Support Retirement support includes a 401(k) with employer matching and is repeatedly positioned as a strong component of total rewards. The 401(k) benefit is frequently singled out as one of the most valued parts of the package.
  • Leave & Time Off Breadth Time-off benefits are positioned as robust, including PTO, holidays, paid sick days, and floating holidays, with some roles offering notably generous accrual. Leave breadth is reinforced by related programs such as short/long-term disability and bereavement leave.

Peraton Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Reston, VA
18,000 Employees
Year Founded: 2017

What We Do

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Why Work With Us

We are fearlessly solving the world’s most complex challenges to keep people safe and secure. You can be a part of protecting and promoting that freedom around the world.

Gallery

Gallery

Similar Jobs

Independent Software, Inc. Logo Independent Software, Inc.

Senior Information System Security Officer (ISSO)

Cloud • Information Technology • Professional Services • Cybersecurity
In-Office
Annapolis Junction, MD, USA
30 Employees

CDW Logo CDW

Product Manager

Information Technology
Remote or Hybrid
US
15100 Employees
124K-170K Annually

CDW Logo CDW

Consultant

Information Technology
Remote or Hybrid
US
15100 Employees
132K-193K Annually

Wipfli Logo Wipfli

Director - Transaction Advisory Services

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Remote or Hybrid
United States
2900 Employees
142K-212K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account