Junior Information System Security Officer

ANALYGENCE

Washington (District of Columbia)

On-site

USD 70,000 - 100,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Tharros is seeking a Junior Information System Security Officer (ISSO) to support DHS cybersecurity within a SCIF in Washington, DC. You will work with senior ISSOs to maintain RMF artifacts, review logs, and track POA&Ms across a portfolio of systems.

The role requires a TS/SCI clearance, U.S. citizenship, and knowledge of RMF, NIST SP 800-37/53, with exposure to hybrid on-premise and cloud environments. On-site in a Government SCIF.

Qualifications

  • BS degree or 4+ years IT/cybersecurity experience.
  • 1+ year ISSO/RMF/security compliance experience.
  • Active TS/SCI clearance and US citizenship; willing to undergo a polygraph.
  • Knowledge of RMF, NIST SP 800-37/53.
  • Hybrid classified/unclassified, on-premise and cloud environments.

Responsibilities

  • Maintain security artifacts (SSP, POA&Ms, risk exceptions, contingency plans, privileged user guides, PTAs) in the GRC tool.
  • Track POA&Ms on 30/60/90/120/180-day intervals and provide regular reports.
  • Perform audit log reviews weekly and respond to alerts.
  • Ensure periodic vulnerability scans are performed and review results.
  • Submit IATT requests and notify changes affecting authorization.
  • Support contingency plan tests and quarterly CPEM reporting.
  • As SCIF ISCR, maintain hardware inventory and report SCI incidents.

Skills

RMF knowledge
NIST SP 800-37/53 knowledge
Hybrid on-premise/cloud environments
DevSecOps knowledge
Cybersecurity communications
Linux/Windows security
POA&M tracking
Audit log review
MS Office proficiency (Teams)
TS/SCI clearance & US citizenship

Education

BS degree in IT/Cybersecurity/IS/CS

Tools

RSA Archer
eMASS

Job description

Tharros supports the Department of Homeland Security (DHS) with cybersecurity services across its Intelligence Enterprise. In support of this mission, we have an immediate opportunity for a Junior Information System Security Officer (ISSO).

In this role you will support the security posture of assigned systems within a portfolio of more than 130 classified and unclassified systems, in accordance with ICD 503 and DHS 4300C. Working with senior ISSOs, you will maintain authorization artifacts, track POA&Ms, review audit logs, and serve as a SCIF Information Security Compliance Representative (ISCR). This position is on-site in a Government SCIF in Washington, DC.

  • Maintain security artifacts (SSP, POA&Ms, risk exceptions, contingency plans, privileged user guides, PTAs) in the GRC tool.
  • Track POA&Ms on 30/60/90/120/180-day review intervals and provide weekly or bi-weekly activity reports.
  • Perform audit log reviews at least weekly and respond to NOSC alerts.
  • Ensure periodic vulnerability scans are performed and review scan results.
  • Submit IATT requests and notify the ISSM, SCA, and AO of changes affecting authorization.
  • Support annual contingency plan tests and quarterly CPEM reporting.
  • As SCIF ISCR, maintain hardware inventory, process entry/exit paperwork, submit monthly checklists, and report SCI security incidents.
  • BS degree in Information Technology, Cybersecurity, Information Systems, or Computer Science OR minimum of 4 years' experience in IT or cybersecurity.
  • Minimum of 1 year of experience in ISSO, RMF, or security compliance support.
  • Active TS/SCI clearance and U.S. citizenship; willingness to undergo a DHS counterintelligence-scope polygraph.
  • Knowledge of the Risk Management Framework (RMF), NIST SP 800-37, and NIST SP 800-53.
  • Knowledge of hybrid classified/unclassified, on-premise and cloud environments.
  • Knowledge of DevSecOps and agile methodologies.
  • Skill in securing Linux and Windows operating systems.
  • Skill in POA&M tracking and audit log review.
  • Ability to maintain accurate documentation across multiple systems.
  • Proficient in Microsoft Office Suite to include Teams or similar workplace chat and videoconferencing tools.
  • Excellent written and oral communications skills.
Desired
  • CompTIA Security+ or CySA+ certification.
  • Experience with RSA Archer, eMASS, or a similar GRC tool.
  • Exposure to Cross Domain Solutions.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information System Security Officer
Information System Security Officer

ANALYGENCE • Washington

On-site
USD 140,000 - 190,000
Junior Information System Security Officer
Junior Information System Security Officer

Jimmy Jazz • Washington

On-site
USD 80,000 - 110,000
Junior Information System Security Officer, National Vetting Center
Junior Information System Security Officer, National Vetting Center

ANALYGENCE • Washington

On-site
USD 65,000 - 90,000
Information System Security Officer
Information System Security Officer

Jimmy Jazz • Washington

On-site
USD 120,000 - 170,000
Junior Security Control Assessor
Junior Security Control Assessor

ANALYGENCE • Washington

On-site
USD 65,000 - 90,000
IT Security Operations Specialist
IT Security Operations Specialist

ANALYGENCE • Washington

On-site
USD 110,000 - 160,000
Junior ISSO - RMF & SCIF Security (DC On-Site)
Junior ISSO - RMF & SCIF Security (DC On-Site)

Jimmy Jazz • Washington

On-site
USD 80,000 - 110,000
Junior Information System Security Officer, National Vetting Center
Junior Information System Security Officer, National Vetting Center

Jimmy Jazz • Washington

On-site
USD 90,000 - 120,000
Security Control Assessor
Security Control Assessor

ANALYGENCE • Washington

On-site
USD 120,000 - 180,000
Junior ISSO: RMF & Security Compliance in Government SCIF
Junior ISSO: RMF & Security Compliance in Government SCIF

ANALYGENCE • Washington

On-site
USD 70,000 - 100,000