Information Systems Security Office, Government Programs
About the role
Meet Slingshot
At Slingshot Aerospace, we're on a mission to make space safer and more secure for everyone. Our work directly impacts global security, disaster response, climate monitoring, and the critical infrastructure that connects our world. We're a team of builders, thinkers, and problem-solvers who believe that the next generation of space operations will be powered by better data and smarter software.
We move fast, we're not afraid to fail, and we believe the best ideas can come from anywhere—whether you're in engineering, security, compliance, IT, or operations. If you want to work on something that truly matters, with people who care deeply about the impact we're making and help shape the future of an industry that's just getting started, you're in the right place.
What You'll Be Launching
As an Information Systems Security Officer (ISSO), you will play a critical role in protecting the systems and environments that support Slingshot's defense and intelligence missions. You'll help drive security, compliance, and accreditation efforts across cleared and regulated programs, partnering with engineering, IT, compliance, subcontractors, and government stakeholders to ensure our systems remain secure, compliant, and mission ready.
This role sits at the intersection of cybersecurity, compliance, operations, and mission execution—supporting Authority to Operate (ATO) efforts, continuous monitoring activities, and secure system operations across DoD and Intelligence Community environments.
We're building a team of sharp, creative people who love solving hard problems. Bring your expertise, your perspective, and your drive—we'll bring the rocket fuel.
Your Mission (Should You Choose to Accept It)
Security Compliance & Accreditation
- Support the development, maintenance, and execution of Authority to Operate (ATO) packages, including SSPs, POAMs, SARs, and supporting RMF artifacts.
- Assist with implementation and enforcement of security controls aligned to NIST 800-171, NIST 800-53, CMMC 2.0, FedRAMP, and DoD RMF requirements.
- Maintain system security documentation, accreditation records, and configuration management artifacts.
- Work closely with government ISSMs, customers, subcontractors, and prime contractors to support accreditation posture and operational readiness.
Continuous Monitoring & Risk Management
- Monitor systems for compliance with security policies, classification handling requirements, access controls, and boundary protections.
- Conduct periodic security assessments, control reviews, and continuous monitoring activities.
- Identify compliance risks, security gaps, and operational concerns, providing leadership with actionable mitigation recommendations.
- Support incident response activities, root cause investigations, and corrective action tracking.
Vulnerability Management & Secure Operations
- Coordinate vulnerability management efforts, including STIG reviews, remediation tracking, patch validation, and audit evidence collection.
- Support secure enclave operations and ensure classified systems remain compliant with customer and government requirements.
- Assist with supply chain and vendor security reviews, including SBOM tracking and compliance validation.
- Support secure operations across mission-critical systems within defense and intelligence environments.
Cross-Functional Partnership
- Partner with Engineering teams to embed secure-by-design principles throughout system development and deployment lifecycles.
- Collaborate with IT and Cybersecurity teams to ensure program controls align with organizational policies and government requirements.