2

Full Time Isso Jobs (NOW HIRING)

$109K - $110K/yr

Active TS/SCI [Required] (Must be able to obtain a CI Poly) Job Type: Full-Time Target Salary Range ... Perform ISSO duties in support of internal and external customers. Authorization and Compliance ...

$132K - $140K/yr

Active TS/SCI [Required] (Must be able to obtain a CI Poly) Job Type: Full-Time Target Salary Range ... Perform ISSO duties in support of internal and external customers. Security Training and Program ...

Showing results 41-60

Full Time Isso information

See salary details

$46K

$118.3K

$184.5K

How much do full time isso jobs pay per year?

As of Aug 13, 2026, the average yearly pay for full time isso in the United States is $118,327.00, according to ZipRecruiter salary data. Most workers in this role earn between $95,000.00 and $138,000.00 per year, depending on experience, location, and employer.

What are common challenges faced by a full time Information Systems Security Officer (ISSO) and how can they be addressed?

A full-time ISSO often faces the challenge of balancing strict compliance requirements with evolving cybersecurity threats. Staying updated with changing regulations, managing multiple security audits, and ensuring all team members adhere to security protocols can be demanding. To address these, ISSOs frequently collaborate with IT, management, and end-users to foster a security-minded culture, implement automated compliance tools, and conduct regular training sessions. Proactive communication and continuous learning are key strategies for overcoming these challenges in the role.

What is a full time ISSO?

A Full Time ISSO, or Information System Security Officer, is a professional responsible for ensuring the security of an organization's information systems on a full-time basis. Their duties typically include developing and implementing security policies, conducting risk assessments, monitoring systems for security breaches, and ensuring compliance with relevant regulations. They work closely with IT teams and management to protect sensitive data and maintain the integrity and confidentiality of information systems. Full Time ISSOs are essential in organizations handling critical or sensitive information, such as government agencies and large corporations.

What is the difference between Full Time Isso vs Part Time Isso?

AspectFull Time IssoPart Time Isso
Work HoursTypically 35-40 hours per weekLess than 30 hours per week
Employment StatusFull-time employment with benefitsPart-time employment, often without full benefits
CertificationsUsually requires the same certifications as Part Time IssoSame certifications as Full Time Isso
Work EnvironmentConsistent schedule, full-time responsibilitiesFlexible schedule, fewer responsibilities

Full Time Isso and Part Time Isso differ mainly in hours worked and benefits. Full Time Isso offers a stable schedule and benefits, while Part Time Isso provides flexibility with fewer hours. Both roles typically require similar certifications and are used in similar industries.

What skills and qualifications are needed to thrive as a full time Information Systems Security Officer (ISSO)?

To thrive as a Full Time ISSO, you need deep knowledge of information security principles, risk management, and compliance frameworks, typically supported by a relevant degree and certifications like CISSP or CISM. Familiarity with security tools (e.g., SIEM, vulnerability scanners), NIST standards, and incident response systems is commonly required. Strong communication, attention to detail, and problem-solving skills help you effectively manage security policies and coordinate with technical and non-technical stakeholders. These competencies are crucial for safeguarding organizational data, ensuring regulatory compliance, and minimizing security risks.
More about Full Time Isso jobs
What cities are hiring for Full Time Isso jobs? Cities with the most Full Time Isso job openings:
What are the most commonly searched types of Isso jobs? The most popular types of Isso jobs are:
What states have the most Full Time Isso jobs? States with the most job openings for Full Time Isso jobs include:
What job categories do people searching Full Time Isso jobs look for? The top searched job categories for Full Time Isso jobs are:
Infographic showing various Full Time Isso job openings in the United States as of August 2026, with employment types broken down into 95% Full Time, 2% Part Time, and 3% Contract. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution, with an average salary of $118,327 per year, or $56.9 per hour.

Information Systems Security Officer (ISSO)

Apavo Corporation

Oakton, VA โ€ข On-site

Full-time

Re-posted 9 days ago


Job description

Job Title: Information System Security Officer (ISSO)
Location: On-Site in Arlington, VA
Department: Cyber Security Services
Reports To: Management
FLSA Status: Full Time/Non-exempt
Description:
Apavo is at the forefront of cybersecurity, providing services to military, defense, and critical infrastructure industries. Joining the Apavo team means becoming part of a company rooted in the principles of quality, and communication. We value positive, candid interactions and the belief that everyone has valuable contributions to make. Apavo stands out for its commitment to a work-life balance and fostering a growth mindset among all team members. If you are looking to make a meaningful impact in the cybersecurity world while growing professionally in a supportive environment, Apavo is the place for you.
Job Purpose:
The Information Systems Security Officer (ISSO) ensures the secure operation of complex, multi-enclave IT and Research & Development (R&D) systems. Operating across all classification levels (Unclassified, Secret, TS/SCI, and Special Access Programs), the ISSO serves as the principal advisor to Information System Owners regarding security posture. This role requires a "hands-on" governance approach, heavily utilizing the Assured Compliance Assessment Solution (ACAS) and standard DoD tooling to drive Continuous Monitoring (ConMon), validate compliance, and maintain active Authority to Operate (ATO) statuses without disrupting critical experimental research.
Duties & Responsibilities:
ISSO responsibilities include, but are not limited to:
RMF Lifecycle Management: Develop, maintain, and oversee RMF authorization packages (SSP, SAR, RAR, SAP, and POA&M) within systems of record (e.g., eMASS, Xacta) for standard enterprise and non-standard research environments.
ACAS Operations & Vulnerability Management: Execute credentialed and non-credentialed ACAS (Tenable.sc / Nessus) scans across connected and air-gapped networks. Analyze scan results to identify vulnerabilities, assess risk, and validate compliance against DoD baselines.
POA&M & Remediation Advisory: Translate complex ACAS scan results and DISA STIG findings into actionable mitigation strategies. Work directly with systems administrators and researchers to remediate vulnerabilities, track progress, and close POA&M items.
Continuous Monitoring (ConMon): Implement and oversee ConMon strategies. Review ACAS dashboards, audit logs (e.g., Splunk, Elastic), and system configurations to ensure ongoing compliance with NIST SP 800-53 controls.
Air-Gapped & Multi-Enclave Support: Facilitate secure data transfers, manual ACAS plugin/feed updates, and compliance validation for isolated, disconnected, and highly classified enclaves.
Security Assessments: Conduct routine compliance checks using SCC, STIG Viewer, and Evaluate-STIG. Support independent third-party assessments (e.g., CCRI) and ATO control validations.
Incident Handling: Coordinate with the Information Systems Security Manager (ISSM) and incident response teams to investigate security anomalies, audit anomalies, or classified data spillages.
Other
This is typical office or administrative work, and there is no exposure to adverse environmental conditions.
This position requires sedentary work. Sedentary work is defined as: Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time. Jobs are sedentary if walking and standing are required only occasionally and all other sedentary criteria are met.
Apavo Corporation provides equal employment opportunities to all applicants and employees and strictly prohibits any type of harassment or discrimination in regards to race, religion, age, color, sex, disability status, national origin, genetics, sexual orientation, protected veteran status, gender expression, gender identity, or any other characteristic protected under federal, state, and/or local laws.
Consistent with the Americans with Disabilities Act (ADA), it is the policy of Apavo Corporation to provide reasonable accommodation when requested by a qualified applicant or employee with a disability, unless such accommodation would cause an undue hardship. The policy regarding requests for reasonable accommodation applies to all aspects of employment, including the application process. If reasonable accommodation is needed, please contact Apavo Human Resources at hr@apavo.com or 571-407-0069
Employment with Apavo Corporation is on an at-will basis, meaning either you or the Company can terminate the employment relationship, at any time, for any or no reason, and with or without cause or notice. As an at-will employee, your employment with Apavo Corporation is not guaranteed for any length of time.
Requirements
Qualifications:
  • Education/Experience: Bachelor's degree in Cybersecurity, Information Technology, or related field (or equivalent experience) with 5-7+ years of experience acting as an ISSO or in a senior DoD RMF compliance role.
  • Clearance: Active Top Secret clearance with SCI eligibility. (Willingness to undergo a Counterintelligence (CI) or Full-Scope Polygraph for SAP readiness is highly preferred).
  • DoD Directive: DoD 8570.01-M / 8140.03 compliant for IAM Level II or III (e.g., CAP, CISM, CASP+ CE, CISSP).
  • ACAS Proficiency: Hands-on experience executing scans, interpreting vulnerability data, and managing asset lists in ACAS (Nessus / Tenable.sc). A current DISA ACAS Operator/Admin training certificate is highly desired.
  • Framework Knowledge: Expert-level understanding of DoD RMF (DoDI 8510.01), NIST SP 800-53/800-37/800-171, and DISA STIG implementation.
  • Tooling: Proven experience managing ATO artifacts in eMASS or Xacta. Proficient with SCC, STIG Viewer, and interpreting IAVA/IAVM notices.
  • Communication: Exceptional written and verbal communication skills. Ability to act as a security liaison, balancing strict DoD compliance requirements with our flexible, fast-paced R&D mission needs.