Information Systems Security Officer
CHAOS Industries is redefining modern defense with a multi-product portfolio that gives the ultimate advantage—domain dominance. The company's products are powered by Coherent Distributed Networks (CDN™), empowering warfighters, commercial air operators, and border protection teams to act faster, adapt rapidly, and stay ahead of evolving threats. CHAOS Industries was founded in 2022 and has raised a total of $1 billion in funding from leading investors, including 8VC, Accel, and Valor Equity Partners. The company is headquartered in Los Angeles, with offices in Washington, D.C., San Francisco, San Diego, Seattle, and London. For more information, please visit www.chaosinc.com. Role Overview: CHAOS Industries is seeking a detail-oriented and mission-focused Information Systems Security Officer (ISSO) to support the day-to-day security operations of classified information systems within one or more assigned programs. Under the direction of the ISSM, the ISSO serves as the on-the-ground security authority responsible for maintaining system compliance, executing continuous monitoring activities, supporting authorization efforts, and ensuring that all users and administrators adhere to applicable security policies and procedures. This role is ideal for a security professional looking to grow within the defense and intelligence community while working on cutting-edge classified programs. Responsibilities: System Security Operations & Compliance Support the development and maintenance of system security documentation including System Security Plans (SSPs), Security CONOPs, hardware/software baselines, and standard operating procedures (SOPs). Ensure all assigned information systems operate in accordance with established ATOs and applicable government security requirements (NIST RMF, ICD 503, JSIG, DAAPM). Monitor system configurations and enforce compliance with approved baselines; document and report any deviations to the ISSM. Assist in the preparation and submission of security authorization packages and support AO review activities. Continuous Monitoring & Vulnerability Management Execute routine audit log reviews, account management checks, and security event monitoring across assigned systems. Conduct and analyze vulnerability scans using ACAS/Nessus and SCAP tools; triage findings and track remediation to closure. Apply and validate DISA STIG/SRG configurations on Windows, Linux (RHEL/CentOS), and network devices; document compliance status. Maintain and update Plan of Action & Milestones (POA&Ms); coordinate with system owners and administrators to remediate open findings. Support SIEM integration efforts and contribute to development of alerting thresholds and use cases. Incident Response & Reporting Identify, document, and report security incidents and anomalies in accordance with program and government reportin...