Back to all jobs
C

Information Systems Security Officer

CHAOS Industries
El Segundo1d ago

About the role

<p>CHAOS Industries is redefining modern defense with a multi-product portfolio that gives the ultimate advantage—domain dominance. The company's products are powered by Coherent Distributed Networks (CDN™), empowering warfighters, commercial air operators, and border protection teams to act faster, adapt rapidly, and stay ahead of evolving threats.&nbsp;</p> <p>CHAOS Industries was founded in 2022 and has raised a total of $1 billion in funding from leading investors, including 8VC, Accel, and Valor Equity Partners. The company is headquartered in Los Angeles, with offices in Washington, D.C., San Francisco, San Diego, Seattle, and London. For more information, please visit <a href="https://www.chaosinc.com">www.chaosinc.com</a>.</p> <p><strong><span data-contrast="auto">Role Overview:</span></strong></p> <p><span data-contrast="auto"><span class="TextRun SCXW85821554 BCX0" lang="EN-US" data-contrast="none"><span class="NormalTextRun SCXW85821554 BCX0">CHAOS Industries is seeking a detail-oriented and mission-focused Information Systems Security Officer (ISSO) to support the day-to-day security operations of classified information systems within one or more assigned programs. Under the direction of the ISSM, the ISSO serves as the on-the-ground security authority responsible for maintaining system compliance, executing continuous monitoring activities, supporting authorization efforts, and ensuring that all users and administrators adhere to applicable security policies and procedures. This role is ideal for a security professional looking to grow within the defense and intelligence community while working on cutting-edge classified programs.</span></span><span class="EOP SCXW85821554 BCX0" data-ccp-props="{&quot;335559738&quot;:60,&quot;335559739&quot;:60}">&nbsp;</span></span></p> <p><strong><span data-contrast="auto">Responsibilities: </span></strong><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559685&quot;:360,&quot;335559739&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><strong><span data-contrast="none">System Security Operations &amp; Compliance</span></strong><span data-ccp-props="{&quot;335559738&quot;:240,&quot;335559739&quot;:80}">&nbsp;</span> <ul> <li><span data-contrast="none">Support the development and maintenance of system security documentation including System Security Plans (SSPs), Security CONOPs, hardware/software baselines, and standard operating procedures (SOPs).</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Ensure all assigned information systems operate in accordance with established ATOs and applicable government security requirements (NIST RMF, ICD 503, JSIG, DAAPM).</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Monitor system configurations and enforce compliance with approved baselines; document and report any deviations to the ISSM.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Assist in the preparation and submission of security authorization packages and support AO review activities.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> </ul> </li> <li><strong><span data-contrast="none">Continuous Monitoring &amp; Vulnerability Management</span></strong><span data-ccp-props="{&quot;335559738&quot;:240,&quot;335559739&quot;:80}">&nbsp;</span> <ul> <li><span data-contrast="none">Execute routine audit log reviews, account management checks, and security event monitoring across assigned systems.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Conduct and analyze vulnerability scans using ACAS/Nessus and SCAP&nbsp;tools;&nbsp;triage findings and track remediation to closure.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Apply and validate DISA STIG/SRG configurations on Windows, Linux (RHEL/CentOS), and network&nbsp;devices;&nbsp;document compliance status.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Maintain and update Plan of Action &amp; Milestones (POA&amp;Ms); coordinate with system owners and administrators to remediate open findings.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Support SIEM integration efforts and contribute to development of alerting thresholds and use cases.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> </ul> </li> <li><strong><span data-contrast="none">Incident Response &amp; Reporting</span></strong><span data-ccp-props="{&quot;335559738&quot;:240,&quot;335559739&quot;:80}">&nbsp;</span> <ul> <li><span data-contrast="none">Identify, document, and report security incidents and anomalies in accordance with program and government reporting timelines.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Conduct initial triage of potential security violations; preserve evidence and coordinate with the ISSM and FSO for escalation as required.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Participate in lessons-learned reviews following incidents and contribute to improvement of security procedures.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> </ul> </li> <li><strong><span data-contrast="none">User Support &amp; Security Awareness</span></strong><span data-ccp-props="{&quot;335559738&quot;:240,&quot;335559739&quot;:80}">&nbsp;</span> <ul> <li><span data-contrast="none">Brief incoming personnel on program security requirements, acceptable use policies, and information handling procedures.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Conduct periodic security reminders, refresher training, and spot checks to reinforce security awareness among program staff.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Serve as the first point of contact for user security questions, access requests, and account provisioning/de-provisioning activities.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> </ul> </li> <li><strong><span data-contrast="none">Configuration &amp; Change Management</span></strong><span data-ccp-props="{&quot;335559738&quot;:240,&quot;335559739&quot;:80}">&nbsp;</span> <ul> <li><span data-contrast="none">Review hardware, software, and firmware change requests for security impact; document assessments and provide recommendations to the ISSM.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Maintain accurate and current hardware/software&nbsp;inventories&nbsp;and media control logs for all assigned systems.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Coordinate with system administrators to ensure patching schedules align with security requirements and authorization conditions.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> </ul> </li> </ul> <p><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559685&quot;:360,&quot;335559739&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span><strong><span data-contrast="auto">Minimum Requirements:</span></strong><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559685&quot;:360,&quot;335559739&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><span data-contrast="auto"><span class="TextRun SCXW241747422 BCX0" lang="EN-US" data-contrast="none"><span class="NormalTextRun SCXW241747422 BCX0">Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Equivalent combination of education and experience considered.</span></span><span class="EOP SCXW241747422 BCX0" data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></span></li> <li><span data-contrast="none">3+ years of experience in information security or IT, with at least 1–2 years in an ISSO, security analyst, or equivalent role supporting classified U.S. Government systems.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Hands-on experience with RMF-based system authorization activities (ICD 503, JSIG, or DAAPM) at the Secret or TS/SCI level.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Working knowledge of ACAS/Nessus, SCAP Compliance Checker, and DISA STIGs.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Familiarity with Windows Server and/or RHEL/CentOS administration in classified environments.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Experience conducting audit log reviews, account management, and POA&amp;M tracking.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">IAT Level II or IAM Level II certification required: Security+,&nbsp;CySA+, CAP, CASP+, or equivalent (IAW DoD 8570.01-M / DoD 8140).</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Active Secret clearance required at time of hire; TS/SCI eligibility preferred or required depending on program assignment.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> </ul> <p><strong><span data-contrast="auto">Preferred Requirements:</span></strong><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559685&quot;:360,&quot;335559739&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><span data-contrast="none">Experience supporting Special Access Programs (SAPs) or SCI compartmented programs.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Familiarity with&nbsp;Xacta,&nbsp;eMASS, or equivalent GRC/authorization management platforms.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Knowledge of cross-domain solution (CDS) environments or Type&nbsp;1 encryption&nbsp;device administration.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Experience with SIEM platforms (Splunk, ArcSight, or similar) in a classified environment.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Exposure to CMMC Level 2/3 requirements or CUI handling in defense contractor settings.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> <li><span data-contrast="none">Additional certifications: CISSP (Associate), CEH, GCIH, or equivalent.</span><span data-ccp-props="{&quot;335559738&quot;:40,&quot;335559739&quot;:40}">&nbsp;</span></li> </ul> <p><strong>Why CHAOS?</strong></p> <ul> <li><strong>Health Benefits: </strong>Medical, dental, and vision benefits 100% paid for by the company</li> <li><strong>Additional benefits</strong>: 401k (+ 50% company match up to 6% of pay), FSA, HSA, life insurance, and more</li> <li><strong>Our Perks: </strong>Free daily lunch, ‘No meeting Fridays’, unlimited PTO, casual dress code</li> <li><strong>Compensation Components:</strong> Competitive base salaries, generous pre-IPO stock option grants, relocation assistance, and (coming soon!) annual bonuses</li> <li><strong>Team Growth: </strong>250 employees and counting across 5 global offices</li> </ul> <div><em><strong>Salary Range: $140,000 - $160,000</strong></em></div> <p><em>The stated compensation range reflects only the targeted base compensation range and excludes additional earnings such as bonus, equity, and benefits. If your compensation requirements fall outside of the range, we still encourage you to apply. The salary range for this role is an estimate based on a range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations.&nbsp;</em></p> <p>&nbsp;</p> <hr> <h3>Recruiting Agencies: CHAOS Industries does not accept unsolicited resumes or outreach. Unsolicited submissions will not be reviewed or compensated.</h3> <hr> <p>&nbsp;</p> <p><em>#LI-onsite</em></p>

Perks & benefits

  • 401k
  • Vision Insurance
  • Unlimited Vacation
  • Paid Time Off
  • Pension Matching
  • Equity Compensation

747,000+ hidden jobs like this

CHAOS Industries and thousands of companies post here first — often days before LinkedIn or Indeed. Your first 5 applications are free; go Pro to apply without limits.

Everything Pro unlocks:

  • Unlimited applications — free stops at 5
  • Track every application in one place
  • Apply straight to the source, one click
  • Save & organize roles you love
  • Roles pulled from company boards before the big sites

Weekly

$9.99
$4.99/week

For an active search. Cancel anytime.

Most popular

Monthly

$24.99
$12.99/month

The smart pick. Save 35% vs weekly.

Lifetime

$99
$49.99once

Pay once. Every future feature, forever.