Information Systems Security Officer

Base-2 Solutions, LLC

Maryland

On-site

USD 120,000 - 160,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Base-2 Solutions, LLC is seeking an Information Systems Security Officer (ISSO) to ensure the security posture of mission-critical systems, support compliance with RMF and NIST standards, and coordinate with government stakeholders. The role requires meticulous documentation, risk assessment, and collaboration with ISSEs and program managers.

The ISSO will maintain SSPs/SARs/POA&Ms, oversee authorization activities, and drive security initiatives, incident response, and continuous monitoring

Qualifications

  • Experience with federal security regulations and RMF/DIAC compliance.
  • Experience creating and maintaining SSPs, SARs, POA&Ms, and monitoring plans.
  • Experience coordinating security assessments and audits.
  • Ability to perform risk assessments and recommend mitigations.
  • Knowledge of system authorization under RMF.
  • Ability to monitor, report, and remediate security posture and incidents.
  • Collaboration with ISSEs, admins, and program managers to embed security requirements.
  • Security awareness training delivery and enforcing best practices.
  • Liaison with government customers for timely security updates.

Responsibilities

  • Ensure system compliance with federal, DoD, and IC cybersecurity regulations and standards, including NIST, ICD 503, CNSS, and RMF.
  • Maintain and update security documentation, including SSPs, SARs, POA&Ms, and Continuous Monitoring Plans.
  • Coordinate and support security assessments, audits, and inspections by internal and external stakeholders.
  • Conduct risk assessments and vulnerability analysis, providing recommendations for mitigating identified risks.
  • Facilitate and oversee system authorization activities in accordance with the RMF process.
  • Monitor and report on system security posture, incident response, and remediation efforts.
  • Collaborate with Information Systems Security Engineers (ISSEs), system administrators, and program managers to integrate security requirements into system lifecycle.
  • Provide security awareness training to system users and enforce proper security practices.
  • Act as a liaison between the organization and government customers, ensuring timely communication of security updates and issues.

Skills

NIST SP 800-53
RMF
ICD 503
CNSS
DoD STIGs
FISMA
FedRAMP
ACAS
Nessus
Splunk
HBSS
eMASS
Xacta
Firewalls
SIEMs
VPNs
IDS/IPS
DLP
PKI
MFA
Windows
Linux
Unix
macOS
AWS
Azure
GCP
JIRA
Confluence
ServiceNow

Education

Bachelors or equivalent in a related field

Tools

ACAS
Nessus
Splunk
HBSS
eMASS
Xacta

Job description

Position Summary

Base-2 Solutions is seeking a dedicated and detail-oriented Information Systems Security Officer (ISSO) to join our team. Our ISSOs are responsible for ensuring the security posture of mission-critical systems by supporting compliance efforts, managing risk, and enforcing security policies. We’re looking for individuals who excel at navigating complex cybersecurity environments, maintaining meticulous documentation, and fostering collaboration between technical teams and government stakeholders. The ideal candidate will have strong knowledge of security regulations, be adaptable, and possess excellent communication skills to drive information security initiatives forward.

Essential Duties and Responsibilities
  • Ensure system compliance with federal, DoD, and IC cybersecurity regulations and standards, including NIST, ICD 503, CNSS, and RMF.
  • Maintain and update security documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plan of Action and Milestones (POA&Ms), and Continuous Monitoring Plans.
  • Coordinate and support security assessments, audits, and inspections by internal and external stakeholders.
  • Conduct risk assessments and vulnerability analysis, providing recommendations for mitigating identified risks.
  • Facilitate and oversee system authorization activities in accordance with the Risk Management Framework (RMF) process.
  • Monitor and report on system security posture, incident response, and remediation efforts.
  • Collaborate with Information Systems Security Engineers (ISSEs), system administrators, and program managers to integrate security requirements into system lifecycle.
  • Provide security awareness training to system users and enforce proper security practices.
  • Act as a liaison between the organization and government customers, ensuring timely communication of security updates and issues.
Required Qualifications
  • Experience with security frameworks and policies: NIST SP 800-53, RMF, ICD 503, CNSS, DoD STIGs, FISMA, FedRAMP.
  • Experience managing security documentation: SSPs, POA&Ms, Security Controls Assessment (SCA) artifacts, SARs, SCTM.
  • Experience with security tools such as ACAS, Nessus, Splunk, HBSS, eMASS, Xacta.
  • Knowledge of security technologies: Firewalls, SIEMs, VPNs, IDS/IPS, DLP, PKI, Multi-Factor Authentication.
  • Experience with operating systems: Windows, Linux, Unix, macOS.
  • Experience with Cloud environments (AWS, Azure, Google Cloud) and cloud security controls.
  • Familiarity with vulnerability scanning, security testing, and incident response processes.
  • Experience with collaboration tools like JIRA, Confluence, ServiceNow.
  • Strong knowledge of system authorization process, audit support, and compliance reporting.
  • Security certifications such as CISSP, CAP, Security , CISM, CEH, AWS Security Specialty.
Preferred Qualifications
  • Not specified.
Required Education and Experience Equivalency
  • None specified.
Required Certifications
  • CISSP
  • CAP
  • Security
  • CISM
  • CEH
  • AWS Security Specialty
Required Security Clearance
  • Active Top Secret/SCI with Full Scope Polygraph
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Systems Security Officer
Information Systems Security Officer

RPMGlobal • Annapolis (MD)

On-site
USD 110,000 - 150,000
Information Systems Security Officer
Information Systems Security Officer

RPMGlobal • Annapolis (MD), Northern (KY)

Hybrid
USD 130,000 - 170,000
Information Systems Security Officer
Information Systems Security Officer

The Hawaii Pacific Foundation • Hanahan (SC)

On-site
USD 250,000 - 300,000
Information Systems Security Engineer
Information Systems Security Engineer

RPMGlobal • Annapolis (MD)

On-site
USD 120,000 - 160,000
Information Systems Security Engineer
Information Systems Security Engineer

Base-2 Solutions, LLC • Maryland

On-site
USD 150,000 - 210,000
Senior Information Systems Security Officer (ISSO)
Senior Information Systems Security Officer (ISSO)

Independent Software, Inc. • Maryland

On-site
USD 100,000 - 130,000
Information System Security Officer
Information System Security Officer

Cymertek Corporation • Maryland

On-site
USD 110,000 - 140,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Mount Mary University • Washington

Hybrid
USD 110,000 - 140,000
Information System Security Officer
Information System Security Officer

Base-2 Solutions, LLC • Washington

On-site
USD 150,000 - 190,000
Information System Security Officer
Information System Security Officer

Base-2 Solutions, LLC • Reston (VA)

On-site
USD 120,000 - 170,000