2

Full Time Isso Jobs (NOW HIRING)

Overview ISSO/SYSTEMS SECURITY ENGINEER Bowhead is seeking a skilled full-time ISSO/Systems Security Engineer to join our team in Dahlgren, VA. The ideal candidate will have a strong background in ...

Senior ISSO

Mclean, VA · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Senior ISSO At B&A, we foster and embrace a distinct set of values that we live by and instill in ... to full time employees, including a Health Savings Account (HSA) option as well as two tiers of ...

Job Type Full-time Description EOA Technologies is seeking an ISSO on one of our subcontracts. This is a full-time position offering the opportunity to support a U.S. Government customer. You will be ...

Cyber Security Analyst/ISSO

Tucson, AZ · On-site

$80K - $110K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Areté is immediately seeking a full-time Cyber Security Analyst/Information Systems Security ... Perform duties as ISSO in accordance with JSIG, RMF, and NIST 800-53. * Develop, maintain, and ...

Cyber Security Analyst/ISSO

Northridge, CA · On-site

$80K - $110K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Areté is immediately seeking a full-time Cyber Security Analyst/Information Systems Security ... Perform duties as ISSO in accordance with JSIG, RMF, and NIST 800-53. * Develop, maintain, and ...

next page

Showing results 1-20

Full Time Isso information

See salary details

$46K

$118.3K

$184.5K

How much do full time isso jobs pay per year?

As of Aug 13, 2026, the average yearly pay for full time isso in the United States is $118,327.00, according to ZipRecruiter salary data. Most workers in this role earn between $95,000.00 and $138,000.00 per year, depending on experience, location, and employer.

What are common challenges faced by a full time Information Systems Security Officer (ISSO) and how can they be addressed?

A full-time ISSO often faces the challenge of balancing strict compliance requirements with evolving cybersecurity threats. Staying updated with changing regulations, managing multiple security audits, and ensuring all team members adhere to security protocols can be demanding. To address these, ISSOs frequently collaborate with IT, management, and end-users to foster a security-minded culture, implement automated compliance tools, and conduct regular training sessions. Proactive communication and continuous learning are key strategies for overcoming these challenges in the role.

What is a full time ISSO?

A Full Time ISSO, or Information System Security Officer, is a professional responsible for ensuring the security of an organization's information systems on a full-time basis. Their duties typically include developing and implementing security policies, conducting risk assessments, monitoring systems for security breaches, and ensuring compliance with relevant regulations. They work closely with IT teams and management to protect sensitive data and maintain the integrity and confidentiality of information systems. Full Time ISSOs are essential in organizations handling critical or sensitive information, such as government agencies and large corporations.

What is the difference between Full Time Isso vs Part Time Isso?

AspectFull Time IssoPart Time Isso
Work HoursTypically 35-40 hours per weekLess than 30 hours per week
Employment StatusFull-time employment with benefitsPart-time employment, often without full benefits
CertificationsUsually requires the same certifications as Part Time IssoSame certifications as Full Time Isso
Work EnvironmentConsistent schedule, full-time responsibilitiesFlexible schedule, fewer responsibilities

Full Time Isso and Part Time Isso differ mainly in hours worked and benefits. Full Time Isso offers a stable schedule and benefits, while Part Time Isso provides flexibility with fewer hours. Both roles typically require similar certifications and are used in similar industries.

What skills and qualifications are needed to thrive as a full time Information Systems Security Officer (ISSO)?

To thrive as a Full Time ISSO, you need deep knowledge of information security principles, risk management, and compliance frameworks, typically supported by a relevant degree and certifications like CISSP or CISM. Familiarity with security tools (e.g., SIEM, vulnerability scanners), NIST standards, and incident response systems is commonly required. Strong communication, attention to detail, and problem-solving skills help you effectively manage security policies and coordinate with technical and non-technical stakeholders. These competencies are crucial for safeguarding organizational data, ensuring regulatory compliance, and minimizing security risks.
More about Full Time Isso jobs
What cities are hiring for Full Time Isso jobs? Cities with the most Full Time Isso job openings:
What are the most commonly searched types of Isso jobs? The most popular types of Isso jobs are:
What states have the most Full Time Isso jobs? States with the most job openings for Full Time Isso jobs include:
What job categories do people searching Full Time Isso jobs look for? The top searched job categories for Full Time Isso jobs are:
Infographic showing various Full Time Isso job openings in the United States as of August 2026, with employment types broken down into 95% Full Time, 2% Part Time, and 3% Contract. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution, with an average salary of $118,327 per year, or $56.9 per hour.

ISSO/Systems Security Engineer

Bowhead

King George, VA • On-site

Full-time

Posted 16 days ago


Job description

Overview

ISSO/SYSTEMS SECURITY ENGINEER 

Bowhead is seeking a skilled full-time ISSO/Systems Security Engineer to join our team in Dahlgren, VA. The ideal candidate will have a strong background in computer networking concepts and protocols, as well as network security methodologies. The ISSO/Systems Security Engineer will be responsible for identifying and mitigating vulnerabilities in security systems, conducting vulnerability scans, and applying system, network, and operating system hardening techniques.

Responsibilities

Key Responsibilities:

  • Conducting vulnerability scans and recognizing vulnerabilities in security systems.
  • Using DoD network analysis tools to identify vulnerabilities (e.g., ACAS, HBSS, etc.).
  • Conducting application vulnerability assessments.
  • Identifying systemic security issues based on the analysis of vulnerability and configuration data.
  • Sharing meaningful insights about the context of an organization's threat environment that improve its risk management posture.
  • Applying cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Troubleshooting and diagnosing cyber defense infrastructure anomalies and working through resolution.
  • Performing impact/risk assessments.

Required Skills:

  • Skill in conducting vulnerability scans and recognizing vulnerabilities in security systems.
  • Skill in using DoD network analysis tools to identify vulnerabilities (e.g., ACAS, HBSS, etc.).
  • Skill in system, network, and OS hardening techniques (e.g., remove unnecessary services, password policies, network segmentation, enable logging, least privilege, etc.).
  • Skill in conducting application vulnerability assessments.
  • Ability to identify systemic security issues based on the analysis of vulnerability and configuration data.
  • Ability to share meaningful insights about the context of an organization's threat environment that improve its risk management posture.
  • Ability to cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).Tenable Assured Compliance Assessment Solution (ACAS)
  • Trellix Endpoint Security System (ESS), previously known as McAfee Host Based Security System (HBSS)
  • Skill in applying host/network access controls (e.g., access control list).
  • Skill in using Virtual Private Network (VPN) devices and encryption.
  • Skill in securing network communications.
  • Skill in protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters).
  • Skill in troubleshooting and diagnosing cyber defense infrastructure anomalies and work through resolution.
  • Skill in performing impact/risk assessments.
  • Skill to develop insights about the context of an organization's threat environment
  • Skill to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Other duties as assigned 
Qualifications

Required:

  • Bachelor's degree required and five (5+) or more years of relevant experience.  
  • IAM Level II certification required 
  • Knowledge of computer networking concepts and protocols, and network security methodologies.
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth & concept of zero trust).
  • Knowledge of basic system, network, and OS hardening techniques.
  • Knowledge of Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools and applications.
  • Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services.
  • Knowledge of application vulnerabilities.
  • Knowledge of system administration, network, and operating system hardening techniques.
  • Knowledge of system administration concepts for operating systems such as but not limited to Unix/Linux, IOS, Android, and Windows operating systems.
  • Travel may occasionally be required, but rare

Preferred:

  • Knowledge of cyber threats and vulnerabilities.
  • Knowledge of specific operational impacts of cybersecurity lapses.
  • Knowledge of host/network access control mechanisms (e.g., access control list, capabilities list).
  • Knowledge of cybersecurity and privacy principles and organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Knowledge of network traffic analysis methods.
  • Knowledge of Virtual Private Network (VPN) security.
  • Knowledge of transmission records (e.g., Bluetooth, Radio Frequency Identification (RFID), Infrared Networking (IR), Wireless Fidelity (Wi-Fi). paging, cellular, satellite dishes, Voice over Internet Protocol (VoIP)), and jamming techniques that enable transmission of undesirable information, or prevent installed systems from operating correctly.
  • Knowledge of network access, identity, and access management (e.g., public key infrastructure, Oauth, OpenID, SAML, SPML).
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code).
  • Knowledge of different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks).
  • Knowledge of application security risks.

Targeted salary range is $130,000 to $150,000 annually based on qualifications and experience.

Physical Demands:

  • Must be able to lift up to 10 pounds 
  • Must be able to stand and walk for prolonged amounts of time
  • Must be able to twist, bend and squat periodically

SECURITY CLEARANCE REQUIREMENTS: Must be able to maintain a Top Secret clearance.  US Citizenship is a requirement for Top Secret clearance at this location.

#LI-JR1

Employment Type: FULL_TIME