Information System Security Officer (ISSO)

CACI

Oklahoma City (OK)

On-site

USD 110,000 - 160,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

CACI is seeking an Information System Security Officer (ISSO) to support DoD operations. The ISSO will manage IA programs, ensure RMF/DIACAP compliance, and coordinate with stakeholders to maintain secure end-user environments.

The role emphasizes incident response, policy enforcement, and continuous monitoring in accordance with DoD requirements, with up to 10% travel across CONUS/OCONUS as applicable.

Qualifications

  • 10+ years of relevant security experience; degree substitution acceptable
  • DoD 8570 IAT or IAT II certification required
  • Familiarity with RMF or DIACAP processes
  • Experience with classified environments and information systems
  • Knowledge of eMASS preferred

Responsibilities

  • Verify system access requirements and ensure signed Acceptable Use Agreement on file.
  • Assist in preparation and maintenance of IA plans, policies, and SOPs.
  • Ensure Certification & Accreditation package aligns with RMF/DIACAP.
  • Oversee System Owners to follow IS policies and procedures.
  • Provide reporting on IAVA status and security health of environments.
  • Support CORA documentation and risk assessment activities.
  • Respond to security incidents and coordinate with ISSM/ISSO and management.

Skills

10+ years exp
IAT II certification
RMF/DIACAP familiarity
Classified environments
Security controls

Education

Bachelor's degree in applicable field

Tools

eMASS

Job description

Job Title: Information System Security Officer (ISSO)

Job Category: Security

Time Type: Full time

Minimum Clearance Required to Start: Secret

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Continental US

The Opportunity:

CACI is looking for an Information System Security Officer (ISSO) to support our DoD customer to implement an enterprise IT service delivery model that provides consistent, secure, high-quality, and cost-effective services to enable mission success and improve end user experience across the customer environment. On this program, CACI will deliver enhanced capabilities and services to implement and operate an enterprise ITSM solution, enterprise service desk, endpoint management and security solution, as well as CONUS/OCONUS field support and life cycle support for end user devices to enable the DoD customer to transition focus from IT operations to mission operations.

Responsibilities:
  • Verify that all requirements for system access to an Information System are met and that there is a signed Acceptable Use Agreement on file.
  • Assist in the preparation, distribution, coordination and maintenance of plans, instructions, policies, guidance, and standard operating procedures necessary for implementation of the Organization's IA program and serve as the subject matter focal point for the Organization's IA program.
  • The ISSM in ensuring that a Certification and Accreditation package is prepared and maintained in accordance with (IAW) the DoD Information Assurance Certification and Accreditation Process (DIACAP), or the DoD Risk Management Framework (RMF).
  • Overseeing System Owners to ensure they follow established IS policies and procedures.
  • Reviews weekly bulletins and advisories that impact security of site information systems to include, RCERT, ACERT, IAVA, and DISA ASSIST bulletins.
  • Provide clear and accurate reporting of current IAVA's and statuses of implementation to ensure the security and health of our environment.
  • Provide support for the Department of the Air Force (DAF) Continuous Monitoring and Risk Assessment (CORA) process, ensuring alignment with security controls, risk management frameworks, and compliance requirements for cybersecurity assessments. Assist in the development, review, and management of CORA documentation, supporting ongoing evaluation and mitigation of security risks within DAF systems.
  • Implementing and enforcing IS security policies.
  • Ensuring approved policies and procedures are in place capturing the organization's requirements regarding all of the NIST 800-53r5 families. The ISSO will assist in updating policies and procedures when changes occur or periodically.
  • Ensuring development and implementation of procedures in accordance with configuration management (CM) policies and practices for authorizing the use of hardware/software on an IS. Any changes or modifications to hardware, software, or firmware of a system must be coordinated with the ISSM/ISSO and appropriate approving authority prior to the change.
  • Responding to security incidents, and for investigating and reporting (to the IAM and ISSO and to local management) security violations and incidents, as appropriate.
  • Serving as a member of the Change Advisory Board and Demand Approval Board
  • Working knowledge of system functions, security policies, technical security safeguards, and operational security measures.
  • Attending required technical (e.g., operating system, networking, security management, SysAdmin) and security training relative to assigned duties.
  • Ensuring that proper decisions are made concerning levels of concern for confidentiality, integrity, and availability of the data, and the protection level for confidentiality for the system.
  • Reporting all security-related incidents to the ISSM and Security Incident Response Team.
  • Initiating protective and corrective measures when a security incident or vulnerability is discovered, with the approval of the ISSM or System Owner.
  • Developing and maintaining an accreditation/certification and assessment/authorization support documentation package for system(s) for which they are responsible.
  • Conducting Continuous Monitoring in line with the DAF's cATO methodology
  • Ensuring all IS security-related documentation is current and accessible to properly authorized individuals.
  • Ensuring system security requirements are addressed during all phases of the system life cycle.
  • Provide status updates on IA and system security health to the government in a formal setting. The ISSO will need to provide updates for all of the systems when the ISSM is unavailable.
Qualifications:
  • 10+ Years of relevant experience (Bachelor's Degree in applicable field may be substituted for 5 years of experience).
  • DoD 8570 IAT or IAT level II Certified
  • Familiarity with DoD Risk Management Framework (RMF) or DIACAP processes
  • Experience with classified environments and information systems
  • Knowledge of eMASS preferre
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

CACI International Inc. • Oklahoma City (OK)

On-site
USD 68,000 - 142,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

CACI International Inc • Bellevue Second IV Precinct (NE)

On-site
USD 68,000 - 142,000
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

Unity Compass • Alexandria (VA)

Hybrid
USD 90,000 - 175,000
Information System Security Officer III,
Information System Security Officer III,

Targeted Solutions, LLC • Bedford (MA)

On-site
USD 120,000 - 160,000
PTO and flexible holidays
Healthcare cost reimbursement
401K with 4% match
Information System Security Officer II
Information System Security Officer II

Targeted Solutions, LLC • Cheyenne (WY)

On-site
USD 95,000 - 130,000
Generous PTO
Flexible holidays
Health cost reimbursement
+1
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

CACI International Inc • Albuquerque (NM)

On-site
USD 71,000 - 151,000
Comprehensive health benefits
Continuing education support
Flexible time off
Information System Security Officer II
Information System Security Officer II

Targeted Solutions, LLC • Colorado Springs (CO)

On-site
USD 90,000 - 130,000
Generous PTO
Flexible holidays
401K with 4% matching
+1
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Noblis • Huntsville (AL)

On-site
USD 90,000 - 150,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Ara • Albuquerque (NM), Northern (KY)

Hybrid
USD 95,000 - 130,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

JAAW™ Group • Hill Air Force Base (UT)

On-site
USD 90,000 - 130,000