Information System Security Officer III

International Executive Service Corps

San Diego (CA)

On-site

USD 120,000 - 180,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

International Executive Service Corps seeks an Information System Security Officer III (ISSO III) in San Diego, CA to lead day-to-day RMF and security control activities for a Navy contract. You will coordinate with ISSM, system engineers, and admins to implement and monitor protective measures and continuous monitoring.

The role requires active TS/SCI clearance, six years' experience in vulnerability analysis and RMF, and hands-on use of ACAS/Nessus, Splunk, STIG Viewer, and eMASS.

Qualifications

  • Active TS/SCI clearance and U.S. citizenship.
  • Bachelor's degree in IT/Cybersecurity/CS or related field; substantial operational experience may substitute for degree.
  • At least 6 years coordinating security changes, vulnerability analysis, and continuous monitoring.
  • Hands-on experience with ACAS, HBSS, Splunk, and STIG Viewer.
  • DoD 8140/8570 IAM Level II certification required (CAP/CASP+ CE, CISM, CISSP, etc.).
  • Strong Windows and Linux security configuration knowledge; AD policy experience.
  • Ability to manage RMF deadlines in a fast-paced environment.

Responsibilities

  • Execute daily/weekly/monthly cybersecurity operations for assigned networks and systems.
  • Coordinate with system engineers, developers, and administrators to enforce security configurations.
  • Perform vulnerability assessments using ACAS/Nessus and analyze results.
  • Apply STIGs using SCC and STIG Viewer tools.
  • Prepare and upload artifacts into eMASS for NIST 800-53 controls.
  • Draft RMF documents: ISCP, IRP, inventories; manage POA&Ms.

Skills

ACAS/Nessus
HBSS
Splunk
STIG Viewer
AD/Windows security
Linux security
RMF/CSM

Education

Bachelor's degree in IT/Cybersecurity/CS

Tools

eMASS
SCAP/SCAP Checker (SCC)

Job description

Job Description:

ORBIS requires an Information System Security Officer III (ISSO III) to serve as a tactical cybersecurity expert supporting the NSWC Corona CCAM contract. Working under the direction of the ISSM, the ISSO III is responsible for the day-to-day implementation, monitoring, and maintenance of security controls across assigned information systems. This key personnel role is heavily involved in the technical aspects of the RMF lifecycle and continuous monitoring programs.

Operational Cybersecurity & RMF Responsibilities:
  • Execute daily, weekly, and monthly cybersecurity operations for assigned networks, enclaves, and Platform IT systems.
  • Coordinate directly with system engineers, developers, and administrators to ensure security configurations are applied during the system development lifecycle.
  • Conduct comprehensive vulnerability assessments utilizing the Assured Compliance Assessment Solution (ACAS/Nessus) and analyze the results to identify critical flaws.
  • Apply and verify Security Technical Implementation Guides (STIGs) using the SCAP Compliance Checker (SCC) and manual STIG Viewer reviews.
  • Develop, compile, and upload high-quality artifacts into eMASS to demonstrate the successful implementation of NIST 800-53 security controls.
  • Draft and update essential RMF documentation, including Information System Contingency Plans (ISCP), Incident Response Plans (IRP), and hardware/software inventories.
  • Assist the ISSM in creating, updating, and managing Plan of Action and Milestones (POA&M) entries, documenting steps taken to remediate identified vulnerabilities.
  • Perform daily reviews of system audit logs, Security Information and Event Management (SIEM) alerts, and firewall traffic to identify anomalous or malicious activity.
  • Enforce account management policies, ensuring that user access, privileged access, and administrative roles are granted according to the principle of least privilege.
  • Support cyber incident response activities, executing containment procedures, preserving evidence, and assisting in root-cause analysis.
  • Monitor systems for compliance with Information Assurance Vulnerability Alerts (IAVAs), ensuring patches and updates are tested and deployed within mandated timeframes.
  • Participate in Configuration Control Board (CCB) meetings to evaluate the security impact of proposed network changes, software installations, or hardware modifications.
  • Conduct physical security walk-throughs and environmental control checks for facilities housing classified or sensitive information systems.
  • Assist in the preparation and execution of formal command cyber inspections and assist the NQV during official validation events.
Required Qualifications & Clearances:
  • Clearance: Must possess an active, TS/SCI and be a United States citizen.
  • Education: Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field. (Significant operational experience and advanced certifications may substitute for the degree).
  • Experience: A minimum of six (6) years of dedicated experience coordinating and implementing security changes, conducting vulnerability analysis, and managing continuous monitoring activities.
  • Technical Experience: Demonstrable hands-on experience utilizing ACAS (Tenable/Nessus), HBSS (Trellix/McAfee), Splunk (or similar SIEM), and STIG Viewer.
  • Certifications: Must possess and maintain a current DoD 8140/8570 IAM Level II certification (e.g., CAP, CASP+ CE, CISM, CISSP, GSLC, CCISO, or HCISPP).
  • Strong working knowledge of Windows and Linux/Red Hat operating system security configurations and Active Directory group policies.
  • Ability to work effectively in a fast-paced environment, balancing multiple RMF package deadlines and continuous monitoring requirements simultaneously.
Preferred Qualifications:
  • Certifications in specific operating systems or security tools (e.g., Linux+, Microsoft Certified Azure Security Engineer, Splunk Core Certified Power User).
  • Prior experience serving as an ISSO for a Navy Research, Development, Test, and Evaluation (RDT&E) environment.
  • Direct experience writing custom scripts (PowerShell, Python, Bash) to automate security compliance checking and log analysis.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information System Security Manager III
Information System Security Manager III

International Executive Service Corps • San Diego (CA)

On-site
USD 150,000 - 210,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Peraton • Laurel (MD)

On-site
USD 120,000 - 190,000
Sign-on bonus (may apply)
Information Systems Security Officer III
Information Systems Security Officer III

P-11 Security, Inc. | SBA 8(a) Certified | EDWOSB • Lincoln (MA)

On-site
USD 110,000 - 150,000
TS clearance
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

The Mission Essential Group, LLC • Fairfax (VA)

On-site
USD 120,000 - 135,000
Medical insurance
Dental insurance
Vision insurance
+4
Cybersecurity Lead / RMF Team Lead
Cybersecurity Lead / RMF Team Lead

International Executive Service Corps • San Diego (CA)

On-site
USD 140,000 - 180,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

JFL Consulting LLC • Omaha (NE)

On-site
USD 120,000 - 140,000
Full medical coverage (incl. depend.)
FSAs
Life and disability insurance
+3
Information Systems Security Officer III
Information Systems Security Officer III

P11security • Bedford (MA), Northern (KY)

Hybrid
USD 110,000 - 170,000
Information System Security Officer (ISSO) / System Administrator
Information System Security Officer (ISSO) / System Administrator

Sanmina-SCI Systems de México • Huntsville (AL)

On-site
USD 90,000 - 150,000
Senior ISSO: RMF & Cyber Defense Lead
Senior ISSO: RMF & Cyber Defense Lead

International Executive Service Corps • San Diego (CA)

On-site
USD 120,000 - 180,000
Information Systems Security Officer
Information Systems Security Officer

Base-2 Solutions, LLC • Maryland

On-site
USD 120,000 - 160,000