ISSO

Colonial Group

Washington (District of Columbia)

Hybrid

USD 140,000 - 190,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

ASRC Federal Technology Solutions is seeking an experienced Information Systems Security Officer (ISSO) to safeguard federal information systems by implementing and maintaining security controls in line with NIST, FISMA, and FedRAMP requirements. The role requires close collaboration with a small cybersecurity team and the client to maintain an exemplary security posture.

This hybrid position in Washington, DC combines onsite work three days per week with remote tasks, and demands independent

Qualifications

  • Bachelor’s degree in Cybersecurity, IT, CS or related field.
  • 8 years of cybersecurity or information assurance experience.
  • Experience with security frameworks such as NIST 800-53, FISMA, and FedRAMP.
  • Prior experience as an ISSO supporting system security authorization processes.
  • Preferred certifications include CISSP, CISA, CISM, CompTIA Security+, CAP, or other relevant cybersecurity certifications.

Responsibilities

  • Develop, implement, and maintain SSPs for information systems.
  • Monitor security controls and ensure regulatory compliance.
  • Prepare ATO and ATT packages; coordinate with leadership.
  • Support incident response and tabletop exercises.

Skills

Cybersecurity knowledge
Risk management
Security controls
Analytical skills
Communication skills
Independent work

Education

Bachelor’s degree in Cybersecurity or related field

Tools

Nessus
Splunk

Job description

ASRC Federal Technology Solutions is looking for an experienced Information Systems Security Officer (ISSO) responsible for ensuring the confidentiality, integrity, and availability of information systems by implementing and maintaining security controls in compliance with organizational policies, federal regulations, and industry standards. The ISSO serves as a key member of a small cybersecurity team and must be independently motivated to ensure the protection of key system while working closely with the client to maintain expectations.

Responsible for overseeing the security posture of assigned systems, conducting risk assessments, and ensuring compliance with frameworks such as NIST, FISMA, and FedRAMP.

Hybrid work schedule (onsite 3-days a week, Washington, DC).

Responsibilities
  • Experienced developing, implementing and maintaining System Security Plans (SSPs) for assigned information system(s).
    • Monitor and evaluate system security controls, on a daily/weekly/monthly frequency, to ensure ongoing compliance with organizational and regulatory requirements.
    • Conduct regular security assessments, evaluate vulnerability scans, and monitor audits to identify and mitigate risks.
  • Experienced with applying the NIST SP 800-53, Security and Privacy Controls for Information Systems and Organizations document.
    • Work closely with technical staff to explain and interpret NIST security controls to address both obvious and interpreted control requirements.
    • Coordinate with system owners and stakeholders to address security vulnerabilities and implement corrective actions. Briefing leadership on ongoing system risk posture.
    • Maintain Plan of Actions and Milestones (POA&M) to track and resolve security weaknesses.
  • Respond to compliance reporting requirements for system performance.
    • Ensure systems comply with federal regulations (e.g., FISMA, FedRAMP) and organizational policies.
    • Prepare and submit security documentation, including Authorization to Operate (ATO) and Authorization to Test (ATT) packages, to authorizing officials.
    • Provide ongoing reports on system security status, incidents, and compliance to leadership and auditors. Escalating concerns before missing deadlines or significant change in risk posture.
  • Incident Response and Recovery:
    • Support incident response activities, including identification, containment, and remediation of security incidents.
    • Document and report security incidents in accordance with organizational incident response plans.
    • Participate in tabletop exercises and post-incident reviews to improve security processes.
Required Skills
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience).
  • 8 years of experience in cybersecurity, information assurance, or a related field.
  • Experience with security frameworks such as NIST 800-53, FISMA, and FedRAMP.
  • Prior experience as an ISSO supporting system security authorization processes.
  • Preferred certifications include CISSP, CISA, CISM, CompTIA Security+, CAP, or other relevant cybersecurity certifications.
Skills and Abilities
  • Strong knowledge of cybersecurity principles, risk management, and security controls.
  • Proficiency in security tools (e.g., Nessus, Splunk, or similar).
  • Excellent analytical, problem-solving, and communication skills.
  • Ability to work independently and collaboratively in a fast-paced environment.
Clearance
  • Ability to obtain a DOE Q Clearance (TS Equivalent).
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

ISSO Mid
ISSO Mid

Dunhill Professional Search & Government Solutions • Ashburn (VA)

On-site
USD 140,000 - 163,000
Senior Information System Security Officers (ISSO)
Senior Information System Security Officers (ISSO)

Gsc Llc • Maryland

On-site
USD 80,000 - 110,000
Competitive salary and benefits package
Flexible work arrangements
Professional development opportunities
ISSO
ISSO

Occam Solutions, Inc. • Arlington (VA)

On-site
USD 85,000 - 125,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

PD Inc • Washington

On-site
USD 120,000 - 170,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Quantum Sky • Washington

On-site
USD 110,000 - 140,000
Senior Information Systems Security Officer (ISSO)
Senior Information Systems Security Officer (ISSO)

Independent Software, Inc. • Maryland

On-site
USD 100,000 - 130,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

8 Consulting LLC • Washington

Hybrid
USD 110,000 - 170,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

X-Bow Systems • Huntsville (AL)

On-site
USD 90,000 - 130,000
Lead Senior Information Systems Security Officer (ISSO)
Lead Senior Information Systems Security Officer (ISSO)

Dynamic Solutions Technology LLC • Washington

On-site
USD 140,000 - 180,000
Information Systems Security Officer
Information Systems Security Officer

UNAVAILABLE • McLean (VA)

On-site
USD 90,000 - 140,000