Information System Security Officer

RPMGlobal

Norfolk (VA)

Hybrid

USD 130,000 - 170,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Base-2 Solutions seeks an Information System Security Officer to collaborate with application leads, system admins, DBAs, developers and testers to ensure security compliance and achieve or maintain Authority to Operate (ATO).

Your responsibilities include following RMF processes for full/partial test, CONMON and no-test scenarios, updating SSPs, SCTMs, STPs, and POAMs, loading STIG checklists and ACAS scans, and supporting ST&E activities by answering questions from ISSMs and SCAs.

Qualifications

  • Bachelor's degree in computer science, software engineering, or a field applicable to the position required.
  • 9 or more years of relevant experience required with a Bachelor's degree.
  • Additional experience may be considered in lieu of degree.
  • Demonstrated experience in developing, implementing, and enforcing security policies, standards, and procedures to ensure regulatory compliance and protect organizational information assets.
  • Proven track record in conducting risk assessments and identifying vulnerabilities in systems, networks, and applications.
  • Experience in developing and overseeing implementation of mitigation strategies to reduce security risks.
  • Strong background in monitoring systems and networks for security breaches and suspicious activity.
  • Successful history of responding to security incidents, investigating root causes, and implementing corrective actions.

Responsibilities

  • Work with application leads, system administrators, database administrators, developers, and testers to ensure assigned systems are security compliant and achieve or maintain ATO.
  • Follow the RMF process for full test, partial test, continuous monitoring (CONMON), and no test scenarios.
  • Update Xacta documentation including SSPs, SCTM, STPs, and POAMs.
  • Load artifacts such as STIG checklists and ACAS scans.
  • Help implement STIG checklists and mitigate scan findings.
  • Answer questions to ensure systems are developed with security compliance built in.
  • Support security assessment events and respond to all questions from the PAT team, ISSMs, and SCAs.

Skills

RMF experience
Risk assessments
Incident response
Security policies
XACTA proficiency

Education

Bachelor's degree in CS/SE
Master's degree preferred
Associates with 11 years
PhD with 5 years
High School with 13 years

Tools

XACTA
ACAS scans
STIG checklists
POAM management

Job description

Position Summary

Base-2 Solutions is seeking an Information System Security Officer to work with application leads, system administrators, database administrators, developers, and testers to ensure assigned systems are security compliant and achieve or maintain Authority to Operate (ATO). The role includes following the Risk Management Framework (RMF) process for full test, partial test, continuous monitoring (CONMON), and no test scenarios, updating Xacta documentation including System Security Plans (SSPs), Security Control Trace Matrices (SCTM), Security Test Plans (STPs), and Plans of Action and Milestones (POAMs). The specialist will load artifacts such as Security Technical Implementation Guide (STIG) checklists and ACAS scans, help implement STIG checklists, mitigate scan findings, and support security assessment events by responding to questions from the Security Test and Evaluation (ST&E) team, Information System Security Managers (ISSMs), and Security Control Assessors (SCAs).

Essential Duties and Responsibilities
  • Work with application leads, system administrators, database administrators, developers, and testers to ensure assigned systems are security compliant and achieve or maintain ATO.
  • Follow the RMF process for full test, partial test, continuous monitoring (CONMON), and no test scenarios.
  • Update Xacta documentation including SSPs, SCTM, STPs, and POAMs.
  • Load artifacts such as STIG checklists and ACAS scans.
  • Help implement STIG checklists and mitigate scan findings.
  • Answer questions to ensure systems are developed with security compliance built in.
  • Support security assessment events and respond to all questions from the PAT team, ISSMs, and SCAs.
Required Qualifications
  • Bachelor's degree in computer science, software engineering, or a field applicable to the position required.
  • 9 or more years of relevant experience required with a Bachelor's degree.
  • Additional experience may be considered in lieu of degree.
  • Demonstrated experience in developing, implementing, and enforcing security policies, standards, and procedures to ensure regulatory compliance and protect organizational information assets.
  • Proven track record in conducting risk assessments and identifying vulnerabilities in systems, networks, and applications.
  • Experience in developing and overseeing implementation of mitigation strategies to reduce security risks.
  • Strong background in monitoring systems and networks for security breaches and suspicious activity.
  • Successful history of responding to security incidents, investigating root causes, and implementing corrective actions.
Preferred Qualifications
  • Comprehensive knowledge of relevant laws, regulations, and industry standards.
  • Experience conducting audits and assessments to verify adherence to security requirements.
Required Education and Experience Equivalency
  • High School with 13 years of experience.
  • Associates with 11 years of experience.
  • Bachelor's with 9 years of experience.
  • Master's with 7 years of experience.
  • PhD with 5 years of experience.
Required Certifications
  • None specified.
Required Security Clearance
  • Active Top Secret/SCI with CI Polygraph
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Officer with Security Clearance
Information System Security Officer with Security Clearance

Base-2 Solutions • Washington

On-site
USD 150,000 - 190,000
Competitive compensation
Employee health benefits
401(k) with company match
+2
Information System Security Officer with Security Clearance
Information System Security Officer with Security Clearance

Base-2 Solutions • Norfolk (VA)

On-site
USD 120,000 - 180,000
Salary up to market rate + bonuses
Company-paid health/dental/vision
401(k) with match
+2
Senior Information System Security Officer
Senior Information System Security Officer

RPMGlobal • Norfolk (VA)

Hybrid
USD 140,000 - 190,000
Senior Information System Security Officer
Senior Information System Security Officer

RPMGlobal • Annapolis (MD), Northern (KY)

On-site
USD 120,000 - 180,000
Information Systems Security Officer
Information Systems Security Officer

RPMGlobal • Annapolis (MD), Northern (KY)

Hybrid
USD 130,000 - 170,000
Information System Security Officer
Information System Security Officer

Base-2 Solutions • Washington

On-site
USD 120,000 - 150,000
Health insurance
Dental insurance
Vision insurance
+1
Information System Security Officer
Information System Security Officer

Base-2 Solutions • Norfolk (VA)

On-site
USD 120,000 - 180,000
Health insurance
Dental insurance
Vision insurance
+2
Information Systems Security Engineer
Information Systems Security Engineer

RPMGlobal • Annapolis (MD), Northern (KY)

Hybrid
USD 120,000 - 160,000
Cyber Security Administrator
Cyber Security Administrator

RPMGlobal • Town of Florida (NY), Northern (KY)

Hybrid
USD 90,000 - 140,000
Information System Security Officer
Information System Security Officer

Peraton • Maryland

On-site
USD 110,000 - 170,000