ISSO Mid

Dunhill Professional Search & Government Solutions

Ashburn (VA)

Vor Ort

USD 140.000 - 163.000

Vollzeit

vor 14 Stunden
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Schick keinen Standard-Lebenslauf — erstelle einen Lebenslauf und ein Anschreiben, die genau auf diese Rolle zugeschnitten sind.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

Dunhill Professional Search & Government Solutions in Ashburn, VA seeks an Information Systems Security Officer (ISSO) to support a large federal agency. You will be the subject‑matter expert for all security requirements on assigned FISMA systems, guiding RMF implementation and compliance with NIST policies.

Responsibilities include maintaining SSPs, conducting audits, coordinating with system owners and auditors, and guiding remediation actions.

Qualifikationen

  • Bachelor's degree in Computer Science or related field, or equivalent experience; an advanced degree is preferred.
  • Minimum 5 years of information security experience on programs of comparable scope and complexity.
  • Some experience as a lead ISSO or similar leadership capacity is highly desirable.
  • Solid knowledge of FISMA, NIST and the RMF methodology.
  • Experience with security authorization processes (Certification & Accreditation and Authorization to Operate).
  • Strong understanding of security tools, hardware/software security implementation, communication protocols and encryption techniques.
  • Proven ability to analyze security vulnerabilities, deliver comprehensive assessments and develop effective remediation instructions.
  • Excellent written and verbal communication skills, with the ability to present complex security information clearly to technical and executive audiences.
  • Ability to work on site in Ashburn, VA (no telework).
  • US Citizenship (no dual citizenship) and the ability to pass a federal background investigation in order to be granted access to sensitive information.

Aufgaben

  • Serve as the subject-matter expert and principal point of contact for security requirements on assigned FISMA systems (MAs, GSSs and sub-systems/applications).
  • Complete and maintain system authorization packages — System Security Plans, Interconnection Security Agreements, Contingency Plans, POA&Ms, waivers and exceptions — in the agency's FISMA system management tool, supporting the NIST RMF.
  • Ensure assigned systems are operated, maintained and disposed of in accordance with NIST SP 800-37 Rev. 2 and agency security policy and handbooks.
  • Perform periodic security management activities and monthly audit log reviews for assigned systems, identifying and documenting security anomalies.
  • Work with system administrators, security engineers and system owners to document and track system weaknesses as POA&Ms; recommend and track corrective actions through remediation.
  • Support risk acceptance and waiver requests, system access request reviews, and endorsement or rejection determinations with documented justification.
  • Investigate and report security incidents to agency security leadership and ensure protective or corrective measures are initiated when an incident or vulnerability is discovered.
  • Review Privacy Threshold Analyses (PTAs) and Privacy Impact Assessments (PIAs) and provide documented security feedback to system and business owners.
  • Lead, prepare materials for and participate in meetings supporting assessment and authorization, vulnerability/POA&Ms reviews, and internal and external audits.
  • Support the transition to and maintenance of an Ongoing Authorization (OA) program for assigned systems.
  • Provide audit support and liaison between auditors (e.g., OIG and annual independent audits) and agency cybersecurity staff, including artifact collection and responses across FISMA, FISCAM and OMB Circular A-123 areas.

Kenntnisse

Information security
RMF knowledge
NIST standards
Security audits
Communication skills
US Citizenship

Ausbildung

Bachelor's degree in Computer Science or related field

Jobbeschreibung

On site in Ashburn, VA — Monday through Friday, 8:30am to 5:00pm

The Information Systems Security Officer (ISSO) supports the overall information security posture of assigned Major Applications (MAs) and General Support Systems (GSSs) for a large federal agency. You will serve as the subject‑matter expert and principal point of contact for all system security requirements on assigned FISMA systems, providing expert guidance and leadership in implementing, maintaining and enforcing information security policies, standards and methodologies in accordance with federal regulations and agency requirements.

Responsibilities:

  • Serve as the subject‑matter expert and principal point of contact for security requirements on assigned FISMA systems (MAs, GSSs and sub‑systems/applications).
  • Complete and maintain system authorization packages — System Security Plans, Interconnection Security Agreements, Contingency Plans, POA&Ms, waivers and exceptions — in the agency's FISMA system management tool, supporting the NIST Risk Management Framework (RMF).
  • Ensure assigned systems are operated, maintained and disposed of in accordance with NIST SP 800-37 Rev. 2 and agency security policy and handbooks.
  • Perform periodic security management activities and monthly audit log reviews for assigned systems, identifying and documenting security anomalies.
  • Work with system administrators, security engineers and system owners to document and track system weaknesses as POA&Ms; recommend and track corrective actions through remediation.
  • Support risk acceptance and waiver requests, system access request reviews, and endorsement or rejection determinations with documented justification.
  • Investigate and report security incidents to agency security leadership and ensure protective or corrective measures are initiated when an incident or vulnerability is discovered.
  • Review Privacy Threshold Analyses (PTAs) and Privacy Impact Assessments (PIAs) and provide documented security feedback to system and business owners.
  • Lead, prepare materials for and participate in meetings supporting assessment and authorization, vulnerability/POA&M reviews, and internal and external audits.
  • Support the transition to and maintenance of an Ongoing Authorization (OA) program for assigned systems.
  • Provide audit support and liaison between auditors (e.g., OIG and annual independent audits) and agency cybersecurity staff, including artifact collection and responses across FISMA, FISCAM and OMB Circular A-123 areas.

Requirements:

  • Bachelor's degree in Computer Science or a related field, or equivalent experience; an advanced degree is preferred.
  • Minimum 5 years of information security experience on programs of comparable scope and complexity.
  • Some experience as a lead ISSO or similar leadership capacity is highly desirable.
  • Solid knowledge of FISMA, NIST and the Risk Management Framework (RMF) methodology.
  • Experience with security authorization processes (Certification & Accreditation and Authorization to Operate) and the ability to develop the associated documentation.
  • Strong understanding of security tools, hardware/software security implementation, communication protocols and encryption techniques.
  • Proven ability to analyze security vulnerabilities, deliver comprehensive assessments and develop effective remediation instructions.
  • Excellent written and verbal communication skills, with the ability to present complex security information clearly to technical and executive audiences.
  • Ability to work on site in Ashburn, VA (no telework).
  • US Citizenship (no dual citizenship) and the ability to pass a federal background investigation in order to be granted access to sensitive information.

Preferred: CISSP and/or CISM certification.

Compensation: $140,000 - $163,000 per year

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

ISSO Jr
ISSO Jr

Dunhill Professional Search & Government Solutions • Ashburn (VA)

Vor Ort
USD 120.000 - 144.000
Senior Information System Security Officers (ISSO)
Senior Information System Security Officers (ISSO)

Gsc Llc • Maryland

Vor Ort
USD 80.000 - 110.000
Competitive salary and benefits package
Flexible work arrangements
Professional development opportunities
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

The Mission Essential Group • Fairfax (VA)

Vor Ort
USD 120.000 - 135.000
Competitive salary
Medical, dental, vision insurance
Life and disability insurance
+2
Senior Information Systems Security Officer (ISSO)
Senior Information Systems Security Officer (ISSO)

Akima • Ashburn (VA)

Vor Ort
USD 90.000 - 120.000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

The Mission Essential Group, LLC • Fairfax (VA)

Vor Ort
USD 120.000 - 135.000
Medical insurance
Dental insurance
Vision insurance
+4
Information Systems Security Officer
Information Systems Security Officer

UNAVAILABLE • McLean (VA)

Vor Ort
USD 90.000 - 140.000
ME00620-ISSO 1
ME00620-ISSO 1

Momentum Engineering • Maryland

Vor Ort
USD 110.000 - 145.000
11 paid holidays
3 weeks PTO
Group medical plan
ISSO
ISSO

Occam Solutions, Inc. • Arlington (VA)

Vor Ort
USD 85.000 - 125.000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Quantum Sky • Washington

Vor Ort
USD 110.000 - 140.000
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

Ortman Consulting LLC • Washington

Vor Ort
USD 90.000 - 130.000