AnaVation logo

Information Systems Security Officer

AnaVation

Hybrid
Washington, DC
Full-time
Senior
Staff
10+ yrs
Salary not listedPosted 7m ago

Real job — pulled straight from AnaVation’s careers page · Verified September 29, 2026 · No reposts.

Job description

AnaVation is hiring a Information Systems Security Officer — a full-time, based in Washington, DC role. Apply directly on AnaVation's careers page below.

Information Systems Security Officer (ISSO), Senior

Team: Federal Law Enforcement

Location: Washington, DC

Commitment: Full Time

Workplace Type: remote

Salary:

Please note: The listed salary range reflects our market-based compensation structure. Final compensation will depend on business needs, local market conditions, internal equity, and the selected candidate’s skills, education, and experience.   

Be Challenged and Make a Difference 
 
In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture. 

Description of Task to be Performed:

AnaVation is seeking a Senior-level ISSO to support a newly-awarded contract. The selected candidate must be able to excel as the sole ISSO to prepare a full accreditation package to quickly obtain ATT/ATO for a new digital evidence platform in support of our Federal Government client. This is a full-time position that can be performed remotely with occasional travel to Washington DC as needed.

What you will be doing

  • Lead all RMF activities for the assigned system, including Categorization, Selection, Implementation, Assessment, Authorization, and Continuous Monitoring.
  • Oversee the design, implementation, and validation of NIST 800-53 Rev 5 security and privacy controls across technical, operational, and management domains.
  • Develop, maintain, and update key security artifacts including System Security Plans (SSPs), Security Assessment Reports (SARs), POA&Ms, Incident Response Plans, and Continuous Monitoring strategies.
  • Coordinate and support security control assessments (SCAs), penetration tests, vulnerability scans, and compliance audits.
  • Guide engineering teams on implementing and documenting new or updated security controls, ensuring they align with Rev 5 enhancements and control baselines.
  • Evaluate system changes, architecture updates, and new integrations for security impact and required control modifications.
  • Lead risk assessments, document findings, and track remediation through POA&M management.
  • Manage continuous monitoring activities, including log review, vulnerability management, patch tracking, and configuration baseline validation.
  • Serve as the primary security liaison for system owners, internal stakeholders, external assessors, and authorizing officials (AOs).
  • Assist in developing security control inheritance strategies from enterprise common controls, and ensure proper documentation and alignment.
  • Mentor junior ISSOs and analysts in RMF, control interpretation, documentation quality, and security best practices.
  • Stay current on updates to NIST SP 800-53 Rev 5, 800-37, 800-30, and emerging federal cybersecurity guidance.

Required Qualifications:

  • Bachelors Degree in a relevant field such as Cybersecurity or Information Assurance
  • 10+ years of relevant, hands-on experience in an ISSO or security compliance role
  • Clearance:
  • Public Trust; US Citizenship is required
  • Other Required Skills & Qualifications:
  • Deep knowledge of NIST SP 800-53 Rev 5 controls, enhancements, baselines, and assessment procedures.
  • Hands-on experience managing RMF packages and maintaining ongoing authorization.
  • Strong understanding of enterprise IT systems, networks, operating systems, identity platforms, and cloud environments (Azure, AWS, GCP).
  • Experience producing and maintaining SSPs, SARs, POA&Ms, Continuous Monitoring Plans, and supporting RMF documentation.
  • Familiarity with security tools such as SIEMs, vulnerability scanners, endpoint protection, identity governance platforms, and configuration management solutions.
  • Strong communication skills for interfacing with system owners, engineers, auditors, and executive leadership.
  • Ability to articulate control requirements and translate them into technical implementations.

Preferred Qualifications:

  • Professional certifications such as CISSP, CISM, CAP, CCSP, or equivalent.
  • Prior experience supporting federal agencies, regulated industries, or FedRAMP systems.
  • Knowledge of NIST 800-30 (Risk Assessment), 800-37 (RMF), 800-53A (Control Assessments), and 800-137 (Continuous Monitoring).
  • Experience working in hybrid or cloud-native environments with security control inheritance patterns.
  • Background in DevSecOps or automated compliance tooling.
Benefits 
  • Generous cost sharing for medical insurance for the employee and dependents 
  • 100% company paid dental insurance for employees and dependents 
  • 100% company paid long-term and short-term disability insurance 
  • 100% company paid vision insurance for employees and dependents 
  • 401k plan with generous match and 100% immediate vesting 
  • Competitive Pay 
  • Generous paid leave and holiday package 
  • Tuition and training reimbursement 
  • Life and AD&D Insurance
About AnaVation 
AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team.
 
If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you! 
 
AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.

Get Information Systems Security Officer jobs like this→

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Ampol logo

Senior AI Engineer

Alexandria, New South Wales
✓ From careers page· 19h ago
INflow Federal logo

VMware Engineer

Springfield, VA
✓ From careers page· 19h ago
Hyundaiautoeveramerica logo

Oracle Database Administrator III

$79k–$118kSavannah, GA
✓ From careers page· 20h ago
Kpmgnederland logo

Junior Offensive Security Specialist

Amstelveen, NH
✓ From careers page· 20h ago

Frequently asked questions

What skills are required for Information Systems Security Officer at AnaVation?

The required skills for Information Systems Security Officer at AnaVation include: Azure, AWS, GCP, CISSP, CISM.

What is the seniority level for Information Systems Security Officer at AnaVation?

Information Systems Security Officer at AnaVation is a Senior / Staff level position.

How do I apply for Information Systems Security Officer at AnaVation?

You can view the full description and apply for Information Systems Security Officer at AnaVation on EchoJobs: https://echojobs.io/job/anavation-information-systems-security-officer-isso-senior-zyfer.