Information System Security Officer (ISSO)

CACI

Elkridge (MD)

On-site

USD 104,000 - 218,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Healthcare
Retirement benefits
Learning resources
Flexible time off

Job summary

CACI is seeking an Information System Security Officer (ISSO) in the Hanover, MD area to lead security architecture and RMF accreditation activities for ICAM projects. The ISSO will guide the team towards ATOs, prepare SSPs, and ensure continuous monitoring and patching to maintain compliance.

The role requires TS/SCI with polygraph, multiple baseline certifications, and at least 4 years of ISSO experience on comparable programs. Travel is up to 10% locally.

Qualifications

  • TS/SCI clearance with polygraph.
  • IAM Level 1 CWIP certification or one of the listed baseline certifications.
  • Bachelor's degree in a technical discipline from an accredited college or university.
  • Ten (10) years relevant work experience; four (4) years may be substituted for a bachelor’s degree.
  • At least four (4) years of ISSO experience on programs/contracts of similar scope, type, and complexity.

Responsibilities

  • Prepare system security plan (SSP) and support ATOs.
  • Incorporate RMF artifacts: architecture, hardware/software lists, risk reports, POA&Ms, data flows, and docs.
  • Work with ISSM and DAOs to maintain accreditation.
  • Verify C&A package submissions meet approval thresholds.
  • Apply continuous monitoring to evaluate security posture.
  • Create tasking for developers and admins for changes/patching.
  • Oversee software patch implementation to maintain security posture.
  • Enforce information systems security policies, standards, and methodologies.
  • Review vulnerability scans and document compliance.
  • Review Audit Logs weekly.
  • Manage weekly data transfers from Hanover to Ft. Meade.
  • Report assessment/authorization statuses per policy.
  • Support PRIVAC requests and extensions.

Skills

Security architecture
Systems engineering
ISSO experience
RMF process
Patching coordination
Policy enforcement

Education

Bachelor's degree in a technical discipline

Tools

ACAS/Nessus
Jira

Job description

Job Title: Information System Security Officer (ISSO)Job Category: SecurityTime Type: Full timeMinimum Clearance Required to Start: TS/SCI with PolygraphEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *

The Opportunity:

CACI as a Prime Contractor on MWIII Bridge.All positions in the Hanover, MD area. MWIII Bridge develops and supports Identity, Credential and Access Management (ICAM) capabilities for the enterprise and stand‑alone deployment throughout the IC. Tasks include program management, mission support, software integration, software development, system engineering, migration, testing, documentation development, network and system monitoring, configuration control and release management.

Responsibilities:

The candidate will be responsible for security architecture and systems engineering supporting ICAM projects. The ISSO will provide guidance to the team to support system accreditation (IATT and ATO).

ISSO tasks include:
  • Prepare system security plan (SSP) and provide recommendations to assist in obtaining ATOs.

  • Identify, develop (either directly, or in coordination with applicable experts), review and incorporate common artifacts found in an RMF accreditation package such as: system architecture and boundaries, hardware and software lists, risk assessment reports, POA&Ms, data flows, and other necessary system, network, and application documentation.

  • Work with ISSM and DAOs to ensure systems obtain and maintain accreditation.

  • Verify package submissions have met the threshold for approval such as: C&A Package for System Reauthorization, SAR Findings, CTO’s, POA&Ms, and System Security Plans (SSPs).

  • Apply continuous monitoring techniques to evaluate the systems security posture.

  • Create tasking for developers and system administrators as changes and patching are required.

  • Oversee the implementation of software patches to maintain the security posture of the organization.

  • Responsible for implementing and enforcing information systems security policies, standards, and methodologies.

  • Familiarity with the use of vulnerability scanning and assessment tools (e.g., ACAS/Nessus) necessary to identify and document compliance.

  • Review Audit Logs on a weekly basis.

  • Perform Data transfers on a weekly basis driving from CACI Hanover Office to Ft. Meade.

  • Maintain and report assessment and authorization statuses and issues in accordance with organizational guidance.

  • Understand the PRIVAC process. Support personnel with new PRIVAC requests and extensions.

Qualifications:
Required:
  • TS/SCI clearance with polygraph

  • This position has been designated as requiring IAM Level 1 CWIP certification and requires one of the following baseline certifications to qualify

  • CAP, CND, Cloud+, GSLC, Security+CE, HCISPP, CASP+CE, CISM, CISSP (or Associate), CCISO

  • Bachelor's degree in a technical discipline from an accredited college or university

  • Ten (10) years relevant work experience. Four (4) years of additional experience may be substituted for a bachelor's degree.

  • At least four (4) years of this experience must be as an ISSO on programs and contracts of similar scope, type, and complexity.

Desired:
Experience with:
  • The ICD 503/NIST 800-53 certification and accreditation process

  • The Risk Management Framework

  • Developing and maintaining SSPs

  • IAVA review and handling

  • Interpreting Security Scan results

  • Interfacing with System Administrators and Software Engineers

  • Task tracking systems (e.g. Jira, Redmine, ServiceNow)

Understands:
  • Public Key Infrastructure-based authentication

  • A variety of security policies, especially within the IC

  • Fundamentals of technical security risk assessment

  • Understands how to perform analysis of alternatives

  • Able to clearly communicate ideas and status updates to management and other stakeholders

What You Can Expect:

A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.

Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:

$103,800 - $218,100

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

CACI International Inc • Chantilly (VA)

On-site
USD 104,000 - 218,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

CACI International Inc. • Chantilly (VA)

On-site
USD 104,000 - 218,000
Information Systems Security Officer - ISSO
Information Systems Security Officer - ISSO

CACI International Inc • Sarasota (FL)

On-site
USD 86,000 - 180,000
Healthcare
Wellness
Retirement
+3
Information System Security Officer (ISSO) - Chantilly VA
Information System Security Officer (ISSO) - Chantilly VA

VetJobs • Chantilly (VA)

On-site
USD 104,000 - 218,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

CACI International Inc • Bellevue Second IV Precinct (NE)

On-site
USD 68,000 - 142,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

CACI • Reston (VA)

On-site
USD 121,000 - 266,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

CACI International Inc. • Oklahoma City (OK)

On-site
USD 68,000 - 142,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

CACI International Inc • Reston (VA)

On-site
USD 121,000 - 266,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

CACI International Inc • Albuquerque (NM)

On-site
USD 86,000 - 180,000
Senior Systems Engineer / Information Systems Security Officer (ISSO)
Senior Systems Engineer / Information Systems Security Officer (ISSO)

CACI International Inc • Fort Meade (MD)

On-site
USD 132,000 - 290,000