Senior Information Systems Security Officer (Sr. ISSO)
Rolls-RoyceAbout the role
Job Description
Job Title: Senior Information System Security Officer (Sr. ISSO)
Working Pattern: Fulltime
Working location: Indianapolis, IN
Rolls-Royce is in search of a multi-faceted security professional in support of multiple USG Defense programs. The ideal candidate will assist the Information System Security Managers (ISSMs) and ultimately, the Facility Security Officer (FSO).
Why Rolls-Royce?
Rolls-Royce is one of the most enduring and iconic brands in the world and has been at the forefront of innovation for over a century. We design, build and service systems that provide critical power to customers where safety and reliability are paramount.
We are proud to be a force for progress, powering, protecting and connecting people everywhere.
We want to ensure that the excellence and ingenuity that has shaped our history continues into our future and we need people like you to come and join us on this journey.
Rolls-Royce has been recognized as the top employer in the Engineering & Manufacturing category on the prestigious Forbes Top Employers for Engineers list for 2025. This ranking highlights our commitment to innovation, employee development, and fostering a collaborative environment where engineers can thrive.
At Rolls-Royce, we are committed to creating a workplace where all employees feel respected, supported, and empowered to do their best work. We foster a welcoming and innovative work environment that invests in you, giving you access to an incredible breadth and depth of opportunities where you can grow your career and make a difference.
Rolls-Royce is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to any protected characteristics.
What you will be doing:
With this attractive opportunity you will assist the Information System Security Managers (ISSMs) and ultimately, the Facility Security Officer (FSO).
Key Responsibilities:
- Knowledge of and enforcing security policies and procedures in accordance with government regulations, NIST SP 800-53, NIST SP 800-171, DAAPM, JSIG and 32 CFR Part 117 (NISPOM) standards.
- Assist in the development, maintenance, and implementation of System Security Plans (SSPs), Risk Management Framework (RMF) documentation, and other required processes like Continuous Monitoring.
- Provide technical solutions for Authority to Operate (ATO) certifications and Plans of Action and Milestones (POA&Ms).
- Collaborate with engineers, and program managers to implement security controls and address vulnerabilities.
- Updating the infrastructure to support hardware and software optimization and life cycles, in accordance with our change control board.
- Developing, deploying and managing scripts, applications and licenses used to configure, verify, and operate the systems. Along with monthly & quarterly patch management.
- Information Assurance activities: hardware and software changes, account management, media protection, user interface, and assured file transfers.
- Implementing the virtualization of network and storage technologies.
- Assist in the development, implementation, and testing of a business continuity and disaster recovery program
- Support security-related projects as needed.
Basic Requirements:
- Must have or be able to obtain a US DoD Top Secret Security Clearance. Must be US Citizen.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent in years of experience) and 2+ years of experience in information system security,
- A Master`s degree in Cybersecurity, Information Technology, Computer Science, or a related field OR;
- In lieu of degree, 9+ years' experience in information system security, with at least 3 years supporting classified systems under RMF, DAAPM, and/or JSIG frameworks.
- 5+ years of experience in information system security, with at least 3 years supporting classified systems under RMF, DAAPM, and/or JSIG frameworks.
- Professional certifications, such as Security+ or IAT Level II equivalent, in accordance with government regulation, 8140.
- Experience implementing and managing security tools, such as SIEMs, vulnerability scanners, and endpoint protection platforms.
Preferred Requirements:
- Experience with STIGs, SCAPs, and other baseline configuration tools.
- Experience with incident response, investigation, and resolution.
- Familiarity with classified processing environments, including air-gapped and cross-domain solutions.
- Strong technical understanding of encryption, secure network a
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s