Demo

Information System Security Engineer

Jones Networking
Washington, DC Full Time
POSTED ON 12/30/2025
AVAILABLE BEFORE 1/28/2026

Position Title: ISSO

Location: Washington, DC

Industry: Government Contracting

ISSO Position Summary:


Our client is seeking a talented ISSO to join their team. This position will support the Assistant Secretary for Administration (ASA) under guidance from the CIO's Information System Security Manager (ISSM). The candidate will ensure a portfolio of 4 systems are in compliance with applicable NIST standards, and provide standard ISSO services. The candidate will also work closely with the other ISSOs supporting the client customers to provide leadership and mentoring and ensure consistent delivery of ISSO services.


ISSO Key Responsibilities:

· Ensure applicable cybersecurity policies are implemented for systems and information system-related physical security also under purview.

· Maintain operational security posture consistent with current security policy.

· Report actual or suspected computer-security incidents to DOT CSIRC within time frames established by DOT Incident Response policy for incident types in accordance with US-CERT.

· Distribute cybersecurity notices and advisories to appropriate personnel and that vendor-issued security patches are expeditiously installed.

· Serve as primary security to system owners, common control providers, and users.

· Serve as focal point for cybersecurity incident reporting and subsequent resolution.

· Assisting ISSM in reviewing contracts for information systems under the Component's control to ensure that cybersecurity is appropriately addressed in contract language.

· Ensure all security-related SDLC documentation meets all identified security needs.

· Maintain Security Assessment and Authorization (SA&A) documentation for information systems under purview according to DoT Cybersecurity Policy and Compendium.

· Ensure selection of NIST SP 800-53 baseline security controls are appropriate for system based on FIPS 199 security categorization, NIST SP 800-53 guidance, and supplemental DOT policy specified in DoT Cybersecurity Compendium.

· Assist System Owner, Information Owner, and ISSM in recording all known security weaknesses of assigned information systems in POA&Ms IAW DoT policy and procedures.

· Track all security education and awareness training conducted for personnel and contractors, as required by DoT Cybersecurity Policy and Compendium.

· Provide security advice to AO and System Owner on all matters (technical and otherwise) involving security of the information system.

· Ensure required updates are performed to key documents in accordance with NIST SP 800-37 for continuous monitoring.

· Identify changes to systems that may impact security controls, perform security impact assessment of proposed changes, report any change in risk posture, and provide recommendations for risk mitigation.

· Ensure proper backup procedures exist for assigned information systems and that procedures are performed and tested in accordance with System Security Plan.

· Assist System Owner and ISSM to ensure external connections to/from DoT information systems and networks are provided by an approved DoT Trusted Internet Connection Access Provider (TICAP) or DoT-approved Managed TIC Provider Service (MTIPS).

· Ensure audit logs are captured, maintained, and analyzed as required by NIST SP 800- 53 and any supplemental Departmental Cybersecurity Policy and the Compendium.

· Ensure DoT enterprise information security management system (CSAM or its successors) accurately contains required information system inventory, categorization, POA&Ms and other security metrics required by DoT CIO through this policy.

· Complete mandatory annual specialized information security training.


  • ISSO Required Skills:8 years of experience in IT Security
  • Certified Information Systems Security Professional (CISSP) certification.
  • Understanding of NIST 800.53 and its applicability to IT Systems.
  • Expertise with Risk Management Framework, FEDRAMP and FISMA.
  • Understanding authentication in the cloud environment.
  • Experience with continuous monitoring of a cloud system
  • Experience working on assessments with third party assessments organization (3PAO)
  • AWS/Azure associate certified


ISSO Compensation and benefits: $120,000

Company-supported medical, dental, vision, life, STD, and LTD insurance

Benefits include 10 federal holidays and PTO.

401(k) with company matching

Flexible Spending Accounts for commuter, medical, and dependent care expenses

Tuition Assistance

Salary.com Estimation for Information System Security Engineer in Washington, DC
$109,261 to $131,742
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Information System Security Engineer?

Sign up to receive alerts about other jobs on the Information System Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$123,167 - $152,295
Income Estimation: 
$146,673 - $180,130
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Jones Networking

  • Jones Networking Washington, WA
  • Position Title: Legal Billing Coordinator Division: Accounting / Billing Reports to: Billing Manager Industry: Law Firm / Legal Services Location: Washingt... more
  • 12 Days Ago

  • Jones Networking Baltimore, MD
  • Position Title: Property Management Estimator Industry: Flooring Company Location: Baltimore, Maryland Hours: 8:00AM to 4:00PM Jones Networking is recruiti... more
  • 13 Days Ago

  • Jones Networking Charlotte, NC
  • Personal Injury Litigation Paralegal Charlotte, North Carolina Jones Networking is recruiting for an experienced Litigation Paralegal for an opportunity wi... more
  • 13 Days Ago

  • Jones Networking Washington, DC
  • Construction Office Manager Washington, DC Jones Networking is recruiting for an experienced Office Manager to join a Construction Company in Washington, D... more
  • 3 Days Ago


Not the job you're looking for? Here are some other Information System Security Engineer jobs in the Washington, DC area that may be a better fit.

  • hackajob Arlington, VA
  • hackajob is collaborating with CGI US to connect them with exceptional tech professionals for this role. CGI Federal has an exciting opportunity for an ISS... more
  • 24 Days Ago

  • Spry Methods Washington, DC
  • Who We’re Looking For (Position Overview):Spry Methods is seeking an Information Systems Security Engineer (ISSE) to support secure, mission-focused inform... more
  • 26 Days Ago

AI Assistant is available now!

Feel free to start your new journey!