Full-Time

Information Systems Security Officer/Information Systems Security Engineer

Deadline 8/1/27
Ishpi Information Technologies

Ishpi Information Technologies

51-200 employees

Holistic cyber defense services and training

No salary listed

No H1B Sponsorship

Philadelphia, PA, USA

Hybrid

US Citizenship, US Top Secret Clearance Required

Bachelor's

Category
IT & Security (1)
Required Skills
Cybersecurity
Vulnerability Analysis

Get referred to Ishpi Information Technologies

See people who can refer or advise you

Requirements
  • A bachelor's degree in Computer Science, Information Technology, Information Assurance, CyberSecurity, or an equivalent technical degree from an accredited college or university is required.
  • At least three years of direct experience performing the listed duties as an Information Systems Security Officer, Information Systems Security Engineer, or Navy Qualified Validator within a Department of Defense component is required.
  • One of the following certifications is required: CGRC, SecurityX, CISM, CISSP, GSLC, CCISO, CCNA/CCNP Security, CySA+, GICSP, CND, GSEC, Security+ CE, SSCP, CISA, GCED, or GCIH.
  • U.S. citizenship and an active government security clearance are required.
Responsibilities
  • Maintain Authorizing Official approvals and Authorizations to Operate by performing Continuous Monitoring activities in accordance with Department of Defense, Navy, and NAVSEA policies, guidelines, and directives.
  • Assess, document, and review NIST Special Publication 800-53 security controls in accordance with Department of Defense, Navy, and NAVSEA policies, guidelines, and directives.
  • Perform automated vulnerability assessments using Department of Defense-, Navy-, and NAVSEA-approved tools such as Assured Compliance Assessment Solution, Security Content Automation Protocol, Evaluate-STIG, and eMASSter.
  • Perform Risk Management Framework Annual Security Reviews in accordance with the Risk Management Framework Process Guide, NAVSEA Business Rules, and NAVSEA Standard Operating Procedures.
  • Document, assess, and seek approval for system and baseline changes in accordance with Navy Authorizing Official and Functional Authorizing Official guides documented in the NAVSEA Business Rules.
  • Manage and maintain Risk Management Framework system packages and required authorization and assessment artifacts in Enterprise Mission Assurance Support Service in accordance with Department of Defense, Navy, and NAVSEA policies, guidelines, and directives.
  • Perform System Level Continuous Monitoring in accordance with approved System Security Plans in Enterprise Mission Assurance Support Service.
  • Develop and maintain Plans of Action and Milestones for systems in Enterprise Mission Assurance Support Service.
  • Develop and maintain project integrated master schedules for Risk Management Framework projects.
  • Evaluate, remediate, and mitigate technical and non-technical vulnerabilities.
  • Provide cybersecurity patching of assets as required by Department of Defense and Department of the Navy task orders, fragmentary orders, or as designated by command Information System Security Manager, Assistant Chief Information Officer, and Code 418 management.
  • Ensure the correct application and implementation of Department of Defense Security Technical Implementation Guides and Security Requirements Guides.
  • Lead or assist with developing, maintaining, and tracking Risk Management Framework system security plans, including system categorization, security control sets, Platform Information Technology determination checklists, Assess Only determination checklists, implementation plans, System Level Continuous Monitoring strategies, system-level policies, hardware lists, software lists, system diagrams, Privacy Impact Assessments, and other package evidence or implementation guidance as required.
Ishpi Information Technologies

Ishpi Information Technologies

View

Ishpi Information Technologies provides cybersecurity, information operations, and engineering services to the U.S. Armed Forces and homeland security agencies. The company delivers these services through an integrated approach that combines secure software development, technical consulting, and training to protect every layer of a digital network. Unlike competitors that may focus only on software or hardware, Ishpi uses a "holistic" strategy that accounts for human input and high-level software quality standards to ensure systems are ready for both defense and active engagement. Their goal is to provide national defenders with a state of constant readiness to anticipate, defend against, and counter threats within the cyber domain.

Company Size

51-200

Company Stage

N/A

Total Funding

N/A

Headquarters

null

Founded

2006

Get referred to Ishpi Information Technologies

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • ISHPI won the Coast Guard PMSS task and OASIS+ selection in 2025.
  • The DOI cybersecurity order runs through September 30, 2027, extending revenue visibility.
  • HigherGov shows an open Cybersecurity Support Services order with $596.6K obligated as of March 2026.

What critics are saying

  • ISHPI's MAS contract expires August 18, 2026, risking a major sales channel.
  • HigherGov shows only $602K returning to market over 24 months, signaling thin backlog.
  • Federal protest losses or recompetes can erase revenue quickly; one bad award cycle hurts survival.

What makes Ishpi Information Technologies unique

  • ISHPI is an SDVOSB federal contractor with Coast Guard, Navy, and DOI relationships.
  • Active Defense JV with GoHPT won U.S. Coast Guard PMSS work in 2025.
  • ISHPI sells cybersecurity, software, and IT operations through GSA OASIS+ and MAS vehicles.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Company News

Ishpi Information Technologies, Inc.
Dec 16th, 2022
ISHPI AIS Division to Receive IEEE CS/SEI Humphrey Software Quality Award

Ishpi Information Technologies, Inc. is humbled to receive this Software Quality Award named in his honor.

Ishpi Information Technologies
Aug 3rd, 2021
Ishpi recognized as Virginia Values Veterans

Ishpi Information Technologies, Inc. (“ ISHPI ”) announced they have become certified as a Virginia Values Veterans (V3) company.