Information System Security Officer (ISSO)

IPSecure, Inc

Satellite Beach (FL)

On-site

USD 110,000 - 150,000

Full time

23 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, Dental, Vision
Paid Holidays
Education and Certification Reimb.
401(k) plan with match

Job summary

IPSecure is seeking an Information System Security Officer to provide RMF support for DoD collateral programs, focusing on documentation, assessment, and continuous monitoring. You will collaborate with program/site leads and government staff to maintain a robust information security program.

The role requires managing security controls, maintaining authorization to operate, and coordinating actions across the cybersecurity team. A Top Secret with SCI clearance is required.

Qualifications

  • Bachelor’s degree, Cybersecurity or other related field and 3+ years of experience, or Master’s degree.
  • Active Top Secret security clearance w/SCI
  • Experience in information assurance or cybersecurity roles supporting classified DoD environments
  • DoD 8570 IAM Level I (Security+) or higher baseline certification (CISSP preferred)
  • Security+ w/CE’s certification
  • Working knowledge of NIST 800-53 controls and RMF
  • Experience analyzing and interpreting outputs of various endpoint security, vulnerability, and enumeration tools (e.g., Tenable Nessus, Security Center, SolarWinds, EndPoint Security Solutions, Vulnerator, SCAP Compliance Checker)

Responsibilities

  • Develop and maintain RMF body of evidence documentation (e.g., SSP, STCM, POA&Ms, ATOs) using Microsoft Office tools.
  • Maintain repositories of all body of evidence documentation with controlled access.
  • Develop and execute security control assessment procedures for continuous monitoring and authorization.
  • Coordinate with system admins and cyber team to ensure secure operation and posture changes.
  • Support ISRM/ISSM in maintaining authorization to operate and approve connections.
  • Document and track security-related vulnerabilities in POA&Ms.
  • Integrate cybersecurity throughout IT lifecycle and governance.
  • Develop and implement information security education, training, and awareness program.
  • Coordinate configuration management for hardware/software with ISSO/ISSM.
  • Ensure compliance with security configuration guidelines (STIGs/SCAP).
  • Report incidents to CISO/ISSM/wing cybersecurity office per AFI 17-203.

Skills

Info assurance experience
RMF knowledge
NIST 800-53 knowledge
Security tools experience
DoD env experience

Education

Bachelor’s degree in cybersecurity or related field
Master’s degree in related field

Tools

Tenable Nessus
Security Center
SolarWinds
EndPoint Security Solutions
Vulnerator
SCAP Compliance Checker

Job description

Information System Security Officer (ISSO) - TS/SCI Clearance Required - Location: Patrick SFB, Melbourne, FL

IPSecure is seeking an Information System Security Officer to provide Risk Management Framework (RMF) support. We want you to join our qualified and diverse team of professionals where you can apply your talents to take our team to new levels of performance. This position primarily supports collateral Top Secret and below programs performing all aspects of DoD RMF activities. The successful candidate possesses experience ranging from documenting, implementing, and assessing security controls to performing system monitoring and compliance assessment activities. We need a team player who enjoys expanding and sharing their knowledge and training others. You will be involved in all aspects of cybersecurity operations and will partner with program/site leads as well as government staff and mission partners to maintain an effective information security program.

Responsibilities
  • Work as part of an integrated team to develop and maintain RMF body of evidence documentation (example: System Security Plan, Security Controls Traceability Matrix, Plan of Action and Milestones, ATO’s) using Microsoft products such as Word, Excel, PowerPoint, and Visio.
  • Maintain repositories of all body of evidence documentation for systems under your purview and ensure they are accessible only to properly authorized individuals.
  • Develop and execute security control assessment procedures to verify conformance with control requirements as part of ongoing continuous monitoring and authorization assessment activities.
  • Work in close coordination with system administrators and other cyber team members to ensure systems are operated, maintained, and disposed of in accordance with applicable security policies and procedures and notify the ISSM when changes occur that might impact system authorization posture.
  • Supports the CISO, PM, ISSM or ISO in maintaining current authorization to operate, and approval to connect, and in implementing corrective actions identified in the plan of action and milestones. Coordinates, with the CISO, PM, ISSM and AO staffs, development of an IS Configuration Management strategy and monitor any proposed or actual changes to the system and its environment.
  • Ensure all security-related vulnerabilities and deficiencies are documented in the Plan of Action and Milestones (POA&M).
  • Ensures the integration of cybersecurity into, and throughout the lifecycle of the IT, on behalf of the ISSM and ISO.
  • Ensure the development and implementation of an effective information security education, training, and awareness program.
  • Ensure configuration management policies and procedures for authorizing use of hardware/software on a system are followed and coordinate any additions, changes or modifications to hardware, software, or firmware with the ISSO/ISSM prior to the addition, change or modification.
  • Ensures software, hardware, and firmware complies with appropriate security configuration guidelines (e.g., security technical implementation guides (STIG)/security requirement guides).
  • Reports security incidents or vulnerabilities to the CISO/ISSM/wing cybersecurity office according to AFI 17-203, Cyber Incident Handling.
Basic Qualifications
  • Bachelor’s degree, Cybersecurity or other related field and 3+ years of experience, or Master’s degree
  • Active Top Secret security clearance w/SCI
  • Experience working in information assurance or cybersecurity roles supporting classified DoD environments
  • DoD 8570 IAM Level I (Security+) or higher baseline certification (CISSP preferred)
  • Security+ w/CE’s certification
  • Working knowledge of NIST 800-53 controls and RMF
  • Experience analyzing and interpreting outputs of various endpoint security, vulnerability, and enumeration tools (example: Tenable Nessus, Security Center, SolarWinds, EndPoint Security Solutions, Vulnerator, SCAP Compliance Checker)
Preferred Qualifications
  • Additional training and/or certifications may be required within 6 months of hire
  • Proven communication skills to coordinate with program/site leads as well as government staff and mission partners
Benefits
  • Medical, Dental, Vision, Unlimited Vacation, Sick Leave, Paid Federal Holidays, Education and Certification Reimbursement Program, 401(k) retirement plan with safe harbor employer match after 3 months, Prepaid legal plan and ID protection plan available, Accident Insurance, Critical Illness Insurance, and Hospital Indemnity Insurance available.
EEOC Statement

IPSecure does not discriminate based on race, color, religion, sex, sexual orientation, gender identity, national origin, disability or status as a protected veteran.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

IP Secure, LLC • Town of Florida (NY)

On-site
USD 110,000 - 150,000
Medical
Dental
Vision
+9
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

IPSecure • Chicago (IL)

On-site
USD 90,000 - 130,000
Medical, Dental, Vision
Unlimited Vacation
401(k) retirement plan
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

IPSECURE, INC. • Satellite Beach (FL)

On-site
USD 110,000 - 160,000
Medical insurance
Dental & Vision coverage
401(k) retirement plan
+2
Information Systems Security Officer (ISSO) Mid Level (TS w/ SCI Eligibility) -
Information Systems Security Officer (ISSO) Mid Level (TS w/ SCI Eligibility) -

RedTrace Technologies • Washington

On-site
USD 80,000 - 100,000
Competitive salary
401(k) plan
Annual performance bonus
+5
Information System Security Officer (ISSO) II (TS, w/ SCI Eligibility) -
Information System Security Officer (ISSO) II (TS, w/ SCI Eligibility) -

RedTrace Technologies • Lincoln (MA)

On-site
USD 80,000 - 100,000
401(k) plan
Annual performance bonus
Certification and advanced degree attainment bonuses
+5
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Snsone • Fort Meade (MD)

On-site
USD 80,000 - 110,000
Competitive compensation
Strong benefits
Professional growth opportunities
Information System Security Officer (ISSO) II (TS, w/ SCI Eligibility)
Information System Security Officer (ISSO) II (TS, w/ SCI Eligibility)

Redtracetech • Massachusetts

On-site
USD 70,000 - 100,000
401(k) plan
Annual performance bonus
Tuition reimbursement
+4
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Power3 Solutions • Fort Meade (MD)

On-site
USD 170,000 - 230,000
401(k) with Company Match
Profit Sharing & Performance Bonuses
Leave Buy-Back Program
+2
Senior Information System Security Officers (ISSO)
Senior Information System Security Officers (ISSO)

Global Solutions Consulting LLC. • Baltimore (MD)

Hybrid
USD 80,000 - 110,000
Competitive salary and benefits package
Flexible work arrangements
Professional development opportunities
Information Systems Security Officer
Information Systems Security Officer

Open Systems Technologies Corporation • Maryland

On-site
USD 80,000 - 115,000
3 weeks paid time off
11 Federal Holidays
Medical/dental coverage
+3