Information Systems Security Officer

Peraton

Maryland

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A cybersecurity solutions provider is seeking an experienced Information Systems Security Officer (ISSO) in Maryland. The candidate must have extensive knowledge of cybersecurity best practices and risk management frameworks (RMF v5). Responsibilities include implementing security controls, managing ATO packages, and engaging with stakeholders. The ideal candidate possesses strong technical skills, relevant certifications, and the ability to work independently in a fast-paced environment. Experience with AWS and Azure is a plus. This position requires full-time, onsite attendance, ensuring compliance with government regulations.

Qualifications

  • Expert knowledge of NIST security frameworks.
  • Active CompTIA Security+ and/or CASP+ certification required.
  • 8+ years of experience in relevant field.

Responsibilities

  • Ensure implementation of security controls per RMF v5.
  • Manage ATO packages and security documentation.
  • Communicate effectively with IT counterparts and stakeholders.

Skills

Cybersecurity best practices
Risk Management Framework (RMF) v5
Communication skills
Technical documentation
Incident response
Network technology understanding
Cloud computing (AWS, Azure)
Team leadership

Education

Bachelor’s degree in relevant fields
Master’s degree in relevant fields
PhD in relevant fields

Tools

eMASS
Linux
Windows
Unix

Job description

Required Qualifications
  • Well-versed in best practices for cyber security program standards, processes, and procedures compliance, industry-standard security frameworks and demonstrated expert working knowledge of NIST Special Publication (SP) 800-53: Recommended Security Controls for Federal Information Systems, NIST SP 800-53A: Guide for Assessing the Security Controls in Federal Information Systems, AFPD 17-1 and AFI 17-130, Cybersecurity Program Management.
  • Ability writing security policies and procedures, CSS, SSP, SSPP, and assess all ATO package artifacts.
  • Expert knowledge of Risk Management Framework (RMF) v5 (Processes, workflow, etc.).
  • Ability to use eMASS to execute, RMF v5 to include document / update system status, identify, document, and manage implementation of operational and technical security controls, implementation and risk assessment tabs, non‑compliant and non‑validated controls, POAM management (entry, evidence, close‑out), produce report and track Plan of Action and Milestone (POA&M) due dates, etc.
  • The ability to complete a checklist to ensure Security Authorization Process documents are complete and comply with all guidance.
  • Ability to work collaboratively with IT counterparts, communicate effectively (skilled in communicating complex technical information to non‑technical audience) and coordinate STIG remediation with system administrators and developers.
  • Ability to conduct risk assessments, monitor security Incidents and respond appropriately to Security Threats.
  • Working understanding of network technology (includes knowledge of network protocols, TCP/IP), operating systems as well as the necessary security protocols, system details (Architecture, data flow, security cat, requirements, configuration management process/procedures, and user profile) firewalls, rules and configurations, intrusion detection tools and prevention systems, encryption techniques, Windows, Unix, and Linux) operating systems, along with other applications such as databases and web servers.
  • Ability to execute tasks with little to no oversight or support as well as manage multiple, and at times, competing priorities without loss of productivity.
  • Certifications: Active CompTIA Security+ and/or CASP+.
  • Security Clearance: Active Top Secret clearance with SCI eligibility.
  • Education: Bachelor’s degree and 8+ years of experience; OR Master’s Degree and 6+ years of experience; OR 3 years with PhD. A degree must be within one of the following fields: Information Technology, Computer Science, Cybersecurity, Information Systems, Data Science, or Software Engineering. However, four (4) years of additional relevant experience or specialized training may be considered in lieu of a Bachelor’s degree.
Desired Qualifications
  • Certifications: CASP+, CISM, CISSP, CISSP-ISSMP, FITSP-M, GCIA, GCIH, GICSP, GSLC.
  • Experience transitioning from RMF v4 to v5.
  • Basic understanding of identity and access management system capabilities and configuration.
  • Experience with cloud computing platforms such as AWS and Azure.
  • Experience with TASKORDS, OPORDS, etc.
  • Experience leading Cybersecurity (ISSO & ISSE) teams.

Peraton has an opening for an Information Systems Security Officer (ISSO) with a proven track record of DevSecOps success to include a combination of technical skills, communication skills, and cybersecurity skills. The successful candidate will be responsible for ensuring the implementation and maintenance of security controls in accordance with RMF v5, managing ATO packages, drafting security documentation including Operating Procedures, Cybersecurity Strategy (CSS), System Security Plans (SSP) ATO packages as well as System Security and Privacy Plan (SSPP) in accordance with DoD policies, Department of Airforce (DAF) regulations and our Federal Government customer's guidance.

The candidate must have expert knowledge and demonstrated experience with cybersecurity technologies, risk management, and incident response procedures as well as have a solid working understanding of computer functions, including hardware, software, and operating systems. This includes knowledge of Windows, Unix, and Linux operating systems, along with other applications such as databases, web servers,

networking technologies, including routing, switching, and VPNs. It’s a bonus if the candidate has experience with cloud computing platforms such as AWS and Azure.

The ISSO must be able to work autonomously, manage their workload effectively, shift priorities with little to no loss of productivity and communicate effectively with technical and non‑technical personnel.

This position requires full‑time, onsite attendance Monday through Friday in the Baltimore metropolitan area.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Officer
Information System Security Officer

Peraton • Maryland

On-site
USD 110,000 - 170,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

MDAEdge • Washington

On-site
USD 160,000 - 210,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Peraton • Maryland

On-site
USD 90,000 - 120,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

MDAEdge • Reston (VA)

On-site
USD 150,000 - 190,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Skysoft Inc. • Maryland

Hybrid
USD 120,000 - 170,000
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

Peraton • Maryland

On-site
USD 120,000 - 160,000
ISSO - Information Systems Security Officer
ISSO - Information Systems Security Officer

Anavationllc • Huntsville (AL)

On-site
USD 95,000 - 150,000
Senior Information System Security Officers (ISSO)
Senior Information System Security Officers (ISSO)

Global Solutions Consulting LLC. • Baltimore (MD)

Hybrid
USD 80,000 - 110,000
Competitive salary and benefits package
Flexible work arrangements
Professional development opportunities
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Modern Technology Solutions, Inc. (MTSI) • Washington

On-site
USD 90,000 - 130,000
Information Systems Security Officer (Technical ISSO / RMF Assessor)
Information Systems Security Officer (Technical ISSO / RMF Assessor)

Peraton • Riverdale Park (MD)

On-site
USD 112,000 - 179,000
Heavily subsidized employee benefits
25 days of PTO annually
Eligibility for bonus plan