Information System Security Officer

Jobtailor

Maryland

On-site

USD 120,000 - 170,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor seeks an experienced Information System Security Officer to detect and document security configurations, implement DoD RMF controls, and guide clients through risk-based decisions. You will coordinate with vendors and internal teams to translate IT needs into secure plans and mitigation steps.

Strong background in NIST 800-53, STIGs, and cloud security is required. A TS/SCI with polygraph willingness is preferred, with on-site collaboration in a fast-paced environment.

Qualifications

  • Experience with tools assessments and configuration analysis against best practices and government guidelines.
  • Experience implementing security controls to achieve ATO in IT solutions.
  • Experience with DoD STIGs, tests, and related tooling.

Responsibilities

  • Detect, evaluate, and document the security configuration of tools and their security impacts.
  • Lead security improvement recommendations and coordinate with in-house teams.
  • Translate customer IT needs into secure, effective solution plans.
  • Investigate new techniques and technologies beyond legacy approaches.
  • Lead teams through network design approaches balancing security and mission needs.
  • Advise clients by leading discovery of cyber risks and understanding policies.
  • Develop mitigation plans and guide action through presentations and milestones.

Skills

Security configuration management
Risk analysis
NIST RMF/800-53 implementation
Policy & compliance
Client communication

Education

HS diploma or GED (7+ yrs IT projects)
Associate’s degree (5+ yrs)
Bachelor’s degree (3+ yrs)
Master’s degree (1+ yrs)

Tools

Ansible
Terraform
Splunk
STIG Viewer
HBSS
AWS
Azure
GCP
SCAP
ACAS

Job description


  • Detect, evaluate, and document the security configuration of developmental and operational tools and their security impacts

  • Make security improvement recommendations

  • Coordinate work with in-house teams, subcontractors, and vendors

  • Translate customer IT needs and future goals into secure and effective solution plans

  • Investigate new techniques and technologies beyond legacy approaches

  • Lead teams through critical network design approaches and provide alternatives balancing security and mission needs

  • Advise clients by leading discovery of cyber risks and understanding applicable policies

  • Develop mitigation plans

  • Oversee analysis of technical, environmental, and personnel details from subject matter experts and engineers

  • Guide clients through plans of action using presentations, whitepapers, and milestones

  • Translate security concepts to support client decisions for mission-critical systems

  • Share cloud technology expertise with clients and team members


Requirements


  • 3+ years of experience as an Information System Security Officer (ISSO) or Information System Security Analyst (ISSA)

  • Experience conducting tools assessments and configuration analysis against best practices, vendor specifications, and government security guidelines and requirements

  • Experience with implementation, oversight, and maintenance of security configuration, practices, and procedures for systems

  • Experience implementing controls from NIST 800-53, FedRAMP, ICD 503, RMF, and DoD Information Levels

  • Experience applying security controls to the design and implementation of IT solutions to achieve an authorization to operate (ATO)

  • Experience with eMASS or Xacta IA Manager

  • Ability to perform risk analysis

  • Active TS/SCI clearance; willingness to take a polygraph exam

  • HS diploma or GED and 7+ years of experience supporting IT projects and activities, Associate’s degree and 5+ years of experience, Bachelor’s degree and 3+ years of experience, or Master’s degree and 1+ years of experience

  • DoD 8570 IAT Level II Certification such as CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP

  • DoD 8570.01-M CSSP Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND

  • Experience with DoD security technical implementation guides (STIGs), checklists, and testing tools, including STIG Viewer, SCAP, and ACAS

  • Experience assessing configuration changes such as new COTS tools or web application upgrades

  • Experience drafting tool implementation CONOPS and reviewing tool or capabilities topologies, CONOPS, and vulnerability scans

  • Experience with cyber-related tools such as Ansible, Terraform, Splunk, or STIG Viewer

  • Knowledge of cloud-native security tools, including HBSS

  • Knowledge of Zero Trust principles and concepts

  • Ability to plan and conduct security authorization reviews and assurance case development

  • Ability to work within a collaborative team and fast-paced dynamic environment

  • Excellent written, organizational, presentation, and verbal communication skills

  • AWS, Azure, or GCP Certification


Core Competencies

Demonstrates expertise in security configuration management, risk analysis, and the implementation of security controls in compliance with NIST 800-53 and DoD standards. Proficient in translating complex security concepts into actionable plans for mission-critical systems while effectively communicating with clients and team members.


Highest-signal resume keywords


  • Information System Security Officer (ISSO)

  • NIST 800-53 Implementation

  • Risk Analysis

  • DoD 8570 IAT Level II Certification

  • EMASS or Xacta IA Manager


Hard Skills


  • Security Configuration Management

  • Configuration Analysis

  • Cyber Risk Assessment

  • Cloud Security Tools

  • Zero Trust Principles

  • COTS Tool Assessment

  • Security Authorization Reviews

  • Mitigation Planning

  • Technical Implementation Guides

  • Vulnerability Scanning


Soft Skills


  • Excellent Communication Skills

  • Organizational Skills

  • Presentation Skills

  • Team Collaboration

  • Adaptability


Certifications & Qualifications


  • DoD 8570 IAT Level II Certification

  • AWS Certification

  • Azure Certification

  • GCP Certification

  • DoD 8570.01-M CSSP Infrastructure Support Certification


Industry Keywords


  • Cybersecurity

  • Security Configuration

  • Risk Management Framework (RMF)

  • FedRAMP

  • ICD 503

  • Authorization to Operate (ATO)

  • Mission-Critical Systems

  • Cloud-Native Security

  • Security Best Practices

  • Government Security Guidelines


Tools & Technologies


  • Ansible

  • Terraform

  • Splunk

  • STIG Viewer

  • HBSS

  • AWS

  • Azure

  • GCP

  • SCAP

  • ACAS

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Systems Security Officer
Senior Information Systems Security Officer

Jobtailor • Washington

On-site
USD 120,000 - 180,000
Cybersecurity Manager I
Cybersecurity Manager I

Jobtailor • Colorado

On-site
USD 150,000 - 210,000
Cyber Security Specialist
Cyber Security Specialist

Jobtailor • Fort Wayne (IN), New York (NY)

On-site
USD 140,000 - 190,000
Information Systems Security Officer
Information Systems Security Officer

Modern Technology Solutions, Inc. (MTSI) • Patterson (OH)

On-site
USD 80,000 - 100,000
Information Assurance Security Engineer
Information Assurance Security Engineer

Jobtailor • Town of Montana (WI)

On-site
USD 100,000 - 160,000
Information Security Analyst
Information Security Analyst

Jobtailor • Tampa (FL)

On-site
USD 90,000 - 130,000
Information Security Specialist – Regional
Information Security Specialist – Regional

Jobtailor • Missouri

On-site
USD 90,000 - 130,000
Information Systems Security Engineer
Information Systems Security Engineer

Jobtailor • Colorado

On-site
USD 110,000 - 140,000
Senior DevSecOps Engineer II
Senior DevSecOps Engineer II

Jobtailor • Reston (VA)

On-site
USD 150,000 - 210,000
Senior ISSO Supporting Federal Government Agency
Senior ISSO Supporting Federal Government Agency

SiloSmashers • Washington

On-site
USD 120,000 - 160,000