1

Fso Isso Issm Jobs (NOW HIRING)

Coordinate with the Information System Security Manager (ISSM) and Facility Security Officer (FSO ... Previous experience with RMF as Information Systems Security Officer (ISSO). * Experience as a ...

Facility Security Supervisor

Nashua, NH · On-site

$120K - $140K/yr

... ISSM/ISSO) and a Facility Security Officer (FSO). You will work closely with the Senior Management Official (SMO), the SOAR Deputy Sector Security Manager, and program leadership to ensure compliance ...

Onsite - Buffalo, NY Moog is looking for an Information Systems Security Officer (ISSO) to support ... Coordinate with the ISSM, the Security Control Assessor (SCA), and the Authorizing Official (AO ...

Onsite - Buffalo, NY Moog is looking for an Information Systems Security Officer (ISSO) to support ... Coordinate with the ISSM, the Security Control Assessor (SCA), and the Authorizing Official (AO ...

Coordinate with ISSM/ISSO personnel, IT teams, and program leadership to align security controls ... Experience serving as a Facility Security Officer (FSO), Security Manager, Program Security Officer ...

next page

Showing results 1-20

Fso Isso Issm information

See salary details

$46K

$118.3K

$184.5K

How much do fso isso issm jobs pay per year?

As of May 29, 2026, the average yearly pay for fso isso issm in the United States is $118,327.00, according to ZipRecruiter salary data. Most workers in this role earn between $95,000.00 and $138,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an FSO/ISSO/ISSM, and why are they important?

To excel as an FSO/ISSO/ISSM, you need a strong understanding of information security, risk management, and regulatory compliance, often supported by a degree in cybersecurity or a related field and relevant security clearances. Familiarity with security frameworks (such as NIST or RMF), security tools, and certifications like CISSP or CISM is typically required. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for managing incidents and coordinating with stakeholders. These skills ensure the protection of sensitive information and compliance with government regulations, which are vital for organizational security and mission success.

How do FSO, ISSO, and ISSM roles typically collaborate to ensure information security compliance within an organization?

FSO (Facility Security Officer), ISSO (Information System Security Officer), and ISSM (Information System Security Manager) roles work closely together to maintain and enhance an organization’s security posture. The FSO oversees facility-wide physical and personnel security, while the ISSO and ISSM focus on the cybersecurity of information systems. ISSOs handle day-to-day system security tasks and incident response, whereas ISSMs manage the broader security program, policy implementation, and compliance oversight. Regular communication and joint meetings are common to address security incidents, conduct audits, and ensure all federal and regulatory requirements are met, fostering a collaborative environment focused on comprehensive protection.

What are FSO, ISSO, and ISSM roles?

FSO (Facility Security Officer), ISSO (Information Systems Security Officer), and ISSM (Information Systems Security Manager) are security roles commonly found in organizations that handle classified or sensitive information. The FSO is responsible for implementing and managing a facility's security program in accordance with government regulations. The ISSO focuses on ensuring the security of information systems by implementing security controls and monitoring compliance, while the ISSM oversees the entire information systems security program, providing leadership and ensuring adherence to policies and standards. Together, these roles help protect both physical and digital assets and ensure organizational compliance with security requirements.

What is the difference between Fso Isso Issm vs Network Operations Center (NOC) Technician?

AspectFso Isso IssmNetwork Operations Center (NOC) Technician
CertificationsSecurity+ or CISSP, DoD 8570 certificationsCCNA, Network+ or equivalent
Work EnvironmentMilitary, government, or defense sectors with focus on cybersecurity and systems managementTelecommunications or IT service providers monitoring networks
Employer & IndustryDefense contractors, government agenciesTelecom companies, ISPs, managed service providers

Fso Isso Issm roles focus on cybersecurity, systems security, and compliance within defense and government sectors, requiring specific security certifications. NOC Technicians primarily monitor and troubleshoot network issues in telecom and IT environments, with certifications like CCNA. While both roles involve technical skills, Fso Isso Issm emphasizes security management, whereas NOC Technicians focus on network operations and maintenance.

Infographic showing various Fso Isso Issm job openings in the United States as of May 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $118,327 per year, or $56.9 per hour.
Information Systems Security Manager (ISSM)-Aviation Platforms

Information Systems Security Manager (ISSM)-Aviation Platforms

Apogee Research, LLC

Arlington, VA • On-site

Full-time

Posted 24 days ago


Job description

Job Summary:
Apogee Research, LLC is a leading organization bringing cutting-edge research into practice for the DoD community. They are seeking a highly skilled Information System Security Manager (ISSM) to lead cybersecurity Assessment and Authorization efforts for the Department of Defense aviation platforms, ensuring operational security for information systems and coordinating with various stakeholders.
Responsibilities:
• Ensure users follow established information security policies and procedures to protect, operate, maintain, and dispose of systems and data in accordance with security policies and practices as outlined in the assessment and authorization document packages.
• Develop and maintain relationships with DOD and Intelligence Community agencies for the purpose of obtaining and maintaining authority to operate (ATO) on Apogee classified systems and operational systems for DOD customers.
• Work with US Government Security Control Assessors (SCAs) and Authorizing Officials (AOs) to develop a comprehensive Risk Management Framework (RMF) package including System Security Plans (SSPs), Information Continuous Security Monitoring Plans, and a body of evidence to support system authorization.
• Configure and secure LAN, WAN, and/or standalone machines in accordance with the developed SSPs and the Security Control Traceability Matrix (SCTM).
• Develop, review, maintain and oversee all information Systems Security Plans (SSPs) Assessment and Authorization in accordance with DoD mandated policies.
• Perform security audits on all systems under purview to validate proper use; ensure documentation (i.e., training records, system baseline, etc.) is kept current.
• Coordinate with program/project stakeholders, the Contract Program Security Officer (CPSO)/Facility Security Officer (FSO) and IT team members to define, implement and maintain an acceptable information systems security posture.
• Ensure procedures are developed and followed for responding to security compliance incidents and investigating and reporting security violations and incidents as appropriate.
• Ensure a Plan of /action and Milestone (POA&M) is maintained for all security related vulnerabilities and continually update SCA’s and AO’s as to the current status of planned activities for correcting vulnerabilities associated with required security controls.
• Track, review, and conduct AIS training.
• Identify AIS vulnerabilities and implement countermeasures.
• Perform AIS self-inspection; notify the customer when changes occur that might affect AIS authorization.
Qualifications:
Required:
• 8+ years of cybersecurity experience, with at least 3+ years directly in an ISSM or senior ISSO role for DoD aviation or weapons systems.
• Experience in obtaining authority to test (ATT) and authority to operate (ATO) approvals for operational and tactical systems.
• Extensive knowledge with certification/authorization requirements as outlined in the NISPOM, RMF, JISG, ICD 503, NIST SP 800-53 Rev 4/5, DoD STIG Overlays, and other USG IS/Security-related policies.
• In-depth knowledge and experience with technical configuration standards relating to information system security; experience configuring Linux operating systems, experience with server systems, system virtualization and other related peripherals.
• Experience configuring Linux (RHEL) and Windows (Windows 11 and Windows Server 2022) based systems to conform to selected Security Technical Implementation Guides.
• RMF Training as specified in the DSS Assessment and Authorization Process Manual.
• Required to hold and maintain DoD 8140/8570 approved baseline certification (e.g., Security+, CySA+, etc.).
• Self-starter, highly motivated, able to multi-task and meet tight deadlines. A strong candidate must have the ability to work well under pressure and deal with changing priorities.
• Excellent communication skills (oral and written), ability to work in a team environment, and must work well with others.
• Effective at problem-solving and proven ability to cope with conflict, stress and crisis situations.
• Candidates must have an active DoD Top Secret clearance with SCI eligibility.
Preferred:
• Experience specifically supporting NAVAIR, NAVWAR, or Air Force Life Cycle Management Center (AFLCMC) programs.
• Familiarity with Platform IT (PIT) and weapons systems cyber certification.
• ATO/ATT Acquisition: Develop, review, and submit comprehensive authorization packages (SSP, SAP, SAR, POA&M) in eMASS to achieve and maintain IATTs/ATTs/ATOs.
• Apply cybersecurity policies (e.g., AFI 17-101, SECNAV M-5239.3) to DoD aviation platforms, including platform IT (PIT), embedded systems, and ground support equipment.
• Apply cybersecurity policies (e.g., JSIG, ICD-503, NISPOM) to embedded aircraft systems, mission systems, and communication enclaves.
• Experience with secure data transfer, high-assurance encryptors, or cross-domain solutions.
• Experience with flight test data security and embedded system architecture.
Company:
We blend agility with rigor to develop new technologies and transition them for operational use, with a focus on the rapid deployment and adaptation of robust, heterogeneous, distributed systems to improve National Security. Founded in 2011, the company is headquartered in Arlington, USA, with a team of 11-50 employees. The company is currently Early Stage.