Clera home
·Dashboard

Jobs at Dragonfli Group (Now Hiring) — 5 open

Dragonfli Group logoDragonfli Group

Junior Information System Security Officer (REMOTE)

Washington, District of Columbia, United States · Remote OK

Entry level

Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical syste…

Skills: NIST Risk Management Framework, NIST SP 800-53, System Security Plans, Plans of Action and Milestones, Vulnerability Scanning

Dragonfli Group logoDragonfli Group

Vulnerability Management Engineer (REMOTE)

Washington, District of Columbia, United States · Remote OK

Mid level

Dragonfli Group is an award-winning cybersecurity advisory firm founded in 2008. We deliver cost-effective, high-impact security solutions to federal agencies and enterprise clients across vulnerability management, threa…

Skills: Vulnerability Management, Tenable.sc, Tenable.io, Attack Surface Management, Vulnerability Disclosure Programs

Dragonfli Group logoDragonfli Group

NERC CIP Virtualization Consultant

Washington, District of Columbia, United States · Remote OK

Senior

Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical syste…

Skills: NERC CIP Standards, Virtualization, VMware vSphere, Hyper-V, OT/ICS Environments

Dragonfli Group logoDragonfli Group

NERC CIP Remediation Analyst

Washington, District of Columbia, United States · On-site

Mid level

Dragonfli Group seeks a NERC CIP Remediation Analyst to deliver hands-on remediation execution in direct coordination with a seasoned audit readiness team supporting a large municipal utility enterprise preparing for a W…

Skills: NERC CIP Compliance, Remediation Execution, Control Implementation, Evidence Collection, OT/ICS Environments

Dragonfli Group logoDragonfli Group

Technical Writer | REMOTE

Washington, District of Columbia, United States · Remote Solely

Mid level

Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical syste…

Skills: Technical Writing, NIST CSF, CIS Controls, Cybersecurity Fundamentals, Policy Writing

Dragonfli Group logo

Junior Information System Security Officer (REMOTE)

Dragonfli Group

Washington, District of Columbia, United States • Remote OK

Apply
Entry level

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

  • Full-time
  • bachelor degree, professional certificate
  • Medical insurance, Dental insurance, Vision insurance, 401(k) with employer match, Long-term disability, Life insurance
  • Posted 2d ago
  • ~40 hrs/week
  • Remote in United States

Responsibilities

Support the RMF lifecycle for federal information systems, including categorization, control implementation, and continuous monitoring. Assist in developing security documentation such as SSPs and POA&Ms while tracking vulnerability remediation.

Requirements

Requires 0-2 years of experience in IT or cybersecurity and a working knowledge of NIST RMF and SP 800-53. U.S. Citizenship is mandatory to pass a Public Trust background investigation.

Full job description

Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical systems across on-site, hybrid, and fully remote environments.

Dragonfli is looking for a Junior Information System Security Officer (ISSO) to join a federal cybersecurity team supporting a large-scale system authorization and continuous monitoring program under the NIST Risk Management Framework (RMF). This is an entry-level opportunity for candidates who bring a strong foundation in IT, security, or a related military background but may not yet have direct ISSO experience. You'll work alongside senior ISSOs and security engineers to help maintain System Security Plans (SSPs), track Plans of Action and Milestones (POA&Ms), and support the day-to-day activities that keep federal systems authorized to operate. Candidates with 0–2 years of relevant experience, including recent certification holders and veterans transitioning into cybersecurity, are strongly encouraged to apply.

Candidates with any previous federal contracting experience are preferred. U.S. Citizenship or Permanent Residency is required. If hired, all work related to this role must be performed within the continental U.S.

Responsibilities

  • Support RMF lifecycle activities for assigned federal information systems, including categorization, control implementation, assessment, and continuous monitoring, under the guidance of senior team members
  • Assist in developing and updating system security documentation, including SSPs, Security Assessment Reports (SARs), and POA&Ms
  • Help track and document security control deviations and vulnerabilities through to closure
  • Support continuous monitoring activities, including log review and vulnerability scan analysis, alongside senior ISSOs
  • Assist in maintaining system inventory, hardware/software baselines, and interconnection agreements
  • Support incident response documentation, escalation tracking, and remediation follow-up
  • Participate in security reviews, audits, and inspections as part of the broader team
  • Coordinate with Information System Owners (ISOs) and other stakeholders on routine compliance tasks
  • Build working knowledge of federal directives including FISMA and OMB A-130 through applied, on-the-job training

Requirements

Must-Have

  • 0–2 years of experience in IT, cybersecurity, information assurance, or a related military/government role (direct ISSO experience is not required)
  • Working knowledge of the NIST Risk Management Framework (RMF) and NIST SP 800-53 security controls, gained through training, coursework, or certification study
  • U.S. Citizenship required; must be able to pass a background investigation for a Public Trust position
  • Ability to work remotely and collaborate during core business hours (9am–5pm ET)
  • Strong written communication skills

Preferred / Nice-to-Have

  • Background in IT, communications, electronics, or a security-adjacent role
  • Exposure to GRC/compliance tools such as eMASS or Xacta
  • Bachelor's degree in IT, cybersecurity, or a related field (or equivalent experience)
  • Prior experience in identity and access management (IAM), credentialing, or access control
  • Familiarity with FISMA and OMB A-130 requirements
  • Active CompTIA Security+ or (ISC)² Certified in Cybersecurity (CC) certification

Skill(s)

Technical Skills

  • RMF fundamentals and the ATO lifecycle
  • NIST 800-53 control families (foundational awareness)
  • Identity and access management / access control concepts
  • Exposure to GRC or vulnerability scanning tools (e.g., ACAS, STIGs) a plus
  • Documentation and technical writing (SSPs, POA&Ms)
  • MS Office / SharePoint

Soft Skills

  • Clear, professional written and verbal communication
  • Attention to detail and follow-through
  • Ability to learn quickly and take direction from senior team members
  • Collaboration across distributed, remote teams
  • Discretion and trustworthiness handling sensitive information
  • Self-motivation in a remote work environment

Benefits

  • Medical — Multiple POS health plan options including an HSA-compatible plan
  • Dental — PPO coverage for preventive, basic, and major services
  • Vision — Annual exam, frames, lenses, and contact lens allowance
  • 401(k) — Employer match up to 5% of eligible compensation
  • Long-Term Disability — 100% employer-paid coverage at 50% of pre-disability earnings
  • Life Insurance & AD&D — 100% employer-paid coverage valued at $10,000 each
  • PTO
  • 11 Paid Federal Holidays

Travel

null

Related keywords

CybersecurityISSORMFNIST 800-53SSPPOA&MFISMAOMB A-130eMASSXactaACASSTIGsCompTIA Security+ISC2 CCPublic TrustGRC

About Dragonfli Group

LinkedInVisit site

CyberSecurity as a Solution: Enabling Secure Business.

Industry
IT Services and IT Consulting
Company size
11-50 employees
Founded
2008
Headquarters
Washington, District of Columbia
LinkedIn followers
8,957

The Dragonfli Group is a Washington, DC based LLC specializing in management and technology consulting. Dragonfli transforms its clients’ businesses by leveraging high impact strategic planning and technology solutions coupled with our deep expertise in infrastructure, corporate strategy and operations. The Dragonfli Group's passionate and experienced consultants take a collaborative approach to provide strategic planning and information security solutions to organizations looking to increase profitability, streamline operations, manage risk, meet regulatory demands and build market share.

Offices: 300 New Jersey Ave NW, Washington, District of Columbia 20001, US

Information TechnologyCyber SecurityRisk Management
View all jobs at Dragonfli Group

About Dragonfli Group

LinkedInVisit site

CyberSecurity as a Solution: Enabling Secure Business.

Industry
IT Services and IT Consulting
Company size
11-50 employees
Founded
2008
Headquarters
Washington, District of Columbia
LinkedIn followers
8,957

The Dragonfli Group is a Washington, DC based LLC specializing in management and technology consulting. Dragonfli transforms its clients’ businesses by leveraging high impact strategic planning and technology solutions coupled with our deep expertise in infrastructure, corporate strategy and operations. The Dragonfli Group's passionate and experienced consultants take a collaborative approach to provide strategic planning and information security solutions to organizations looking to increase profitability, streamline operations, manage risk, meet regulatory demands and build market share.

Offices: 300 New Jersey Ave NW, Washington, District of Columbia 20001, US

Information TechnologyCyber SecurityRisk Management
View all jobs at Dragonfli Group

Similar companies hiring

Capgemini (4715)Hewlett Packard Enterprise (2221)Oracle (2045)KBR, Inc. (2022)PACS (1827)Arvato Systems (1557)NTT DATA North America (1435)CONA Services (1343)Schwarz IT KG (1100)Verizon (1077)VOIS (968)Mastercard (961)
Clera home

Your AI-talent agent. Connecting talents with dream jobs.

Earn $5,000

Tools

  • Salary Calculator
  • Resume Review
  • Startup Map

Explore

  • Jobs
  • Discover Jobs
  • Companies
  • Referral

Platform

  • Pricing
  • Integrations
  • Partners
  • Acquihire

Clera

  • Manifesto
  • Engineering
  • We are hiring!
  • FAQs
  • Blog
  • Press

Tools

  • Salary Calculator
  • Resume Review
  • Startup Map

Explore

  • Jobs
  • Discover Jobs
  • Companies
  • Referral

Platform

  • Pricing
  • Integrations
  • Partners
  • Acquihire

Clera

  • Manifesto
  • Engineering
  • We are hiring!
  • FAQs
  • Blog
  • Press

© 2026 Clera Labs, Inc.

PrivacyTermsBug Bounty