Information System Security Officer

RPMGlobal

Reston, Northern (VA, KY)

Hybrid

USD 130,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Base-2 Solutions is seeking an Information System Security Officer to ensure systems are security compliant and maintain Authority to Operate (ATO). The role collaborates with application leads, DBAs, developers, and testers to follow the RMF process and manage security documentation.

Responsibilities include updating SSPs and STGPs, loading STIGs and ACAS scans, and supporting security assessment events while interacting with PAT teams, ISSMs, and SCAs. Active TS/SCI with poly is required.

Qualifications

  • Bachelor's degree or equivalent with relevant cybersecurity experience.
  • Demonstrated experience developing and enforcing security policies and procedures.
  • Proven ability to conduct risk assessments and identify vulnerabilities.

Responsibilities

  • Maintain and update RMF-based documentation (SSPs, SCTMs, STPs, POAMs).
  • Follow RMF for full, partial, CONMON, and no-test scenarios.
  • Load and remediate security artifacts (STIGs, ACAS).
  • Support regulatory compliance activities and security assessments.
  • Respond to inquiries from PAT, ISSMs, and SCAs.

Skills

Security policy development
Risk assessments
Vulnerability management
Incident response
Security monitoring
Regulatory compliance

Education

Bachelor's degree in CS/SE or related field
High School + 13 years experience
Associates + 11 years experience
Master's + 7 years experience
PhD + 5 years experience

Tools

Xacta
STIG
ACAS

Job description

Position Summary

Base-2 Solutions is seeking an Information System Security Officer to work with application leads, system administrators, database administrators, developers, and testers to ensure assigned systems are security compliant and achieve or maintain Authority to Operate (ATO). The role includes following the Risk Management Framework (RMF) process for full test, partial test, continuous monitoring (CONMON), and no test scenarios, updating Xacta documentation such as System Security Plans (SSPs), Security Control Trace Matrices (SCTM), Security Test Plans (STPs), and Plans of Action and Milestones (POAMs), loading artifacts including STIG checklists and ACAS scans, implementing STIG checklists and mitigating scan findings, supporting security assessment events, and responding to inquiries from the Security Test and Evaluation (PAT) team, Information System Security Managers (ISSMs), and Security Control Assessors (SCAs).

Essential Duties and Responsibilities
  • Work with application leads, system administrators, database administrators, developers, and testers to ensure systems are security compliant and achieve or maintain ATO.
  • Follow the RMF process for full test, partial test, CONMON, and no test.
  • Update Xacta documentation including SSPs, SCTM, STPs, and POAMs.
  • Load artifacts such as STIG checklists and ACAS scans.
  • Help implement STIG checklists and mitigate scan findings.
  • Answer questions to ensure systems are developed with security compliance built in.
  • Support security assessment events and respond to all questions from PAT team, ISSMs, and SCAs.
Required Qualifications
  • Bachelor's degree in computer science, software engineering, or a field applicable to the position required.
  • 9 or more years of relevant experience required with a Bachelor's degree.
  • Additional experience may be considered in lieu of degree.
  • Demonstrated experience in developing, implementing, and enforcing security policies, standards, and procedures to ensure regulatory compliance and protect organizational information assets.
  • Proven track record in conducting risk assessments and identifying vulnerabilities in systems, networks, and applications.
  • Experience in developing and overseeing implementation of mitigation strategies to reduce security risks.
  • Strong background in monitoring systems and networks for security breaches and suspicious activity.
  • Successful history of responding to security incidents, investigating root causes, and implementing corrective actions.
Preferred Qualifications
  • Comprehensive knowledge of relevant laws, regulations, and industry standards.
  • Experience conducting audits and assessments to verify adherence to security requirements.
Required Education and Experience Equivalency
  • High School with 13 years of experience.
  • Associates with 11 years of experience.
  • Bachelor's with 9 years of experience.
  • Master's with 7 years of experience.
  • PhD with 5 years of experience.
Required Certifications
  • None specified.
Required Security Clearance
  • Active Top Secret/SCI with CI Polygraph
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Officer
Information System Security Officer

RPMGlobal • Norfolk (VA)

On-site
USD 130,000 - 170,000
Senior Information System Security Officer
Senior Information System Security Officer

RPMGlobal • Elkridge (MD), Northern (KY)

Hybrid
USD 120,000 - 160,000
Senior Information System Security Officer
Senior Information System Security Officer

RPMGlobal • Norfolk (VA)

On-site
USD 140,000 - 190,000
Information System Security Officer with Security Clearance
Information System Security Officer with Security Clearance

Base-2 Solutions • Norfolk (VA)

On-site
USD 120,000 - 180,000
Health insurance
401(k) match
Paid time off
+1
Information Systems Security Officer
Information Systems Security Officer

RPMGlobal • Annapolis (MD), Northern (KY)

Hybrid
USD 130,000 - 170,000
Information Systems Security Engineer
Information Systems Security Engineer

RPMGlobal • Annapolis (MD), Northern (KY)

On-site
USD 120,000 - 160,000
Senior Information System Security Officer
Senior Information System Security Officer

Base-2 Solutions • Washington

On-site
USD 140,000 - 190,000
Competitive compensation
Company-paid health premiums
401(k) with match
Senior Information System Security Officer | RMF & ATO Expert
Senior Information System Security Officer | RMF & ATO Expert

Base-2 Solutions • Norfolk (VA)

On-site
USD 120,000 - 180,000
Health insurance
401(k) match
Paid time off
+1
Cyber Security Administrator
Cyber Security Administrator

RPMGlobal • Town of Florida (NY), Northern (KY)

Hybrid
USD 90,000 - 140,000
Information System Security Officer
Information System Security Officer

Cymertek Corporation • Maryland

On-site
USD 110,000 - 140,000