Senior Information Security Engineer

ASRC Federal

Reston, Northern (VA, KY)

Hybrid

USD 110,000 - 160,000

Full time

11 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

ASRC Federal is seeking a Senior Information System Security Officer (ISSO) to support federal cybersecurity and RMF activities for enterprise information systems.

The ISSO serves as the primary cybersecurity and privacy advisor to System Owners, ensuring security and privacy requirements are integrated throughout the system lifecycle while maintaining compliance with federal regulations and Authorization to Operate (ATO) requirements.

Qualifications

  • Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, Information Technology, or a related field.
  • 5–7 years of experience in information assurance, cybersecurity, RMF, or related areas.
  • Experience with federal cybersecurity programs and RMF.
  • Experience developing RMF documentation and authorization packages.

Responsibilities

  • Serve as the primary cybersecurity and privacy advisor to System Owners for assigned systems.
  • Lead RMF activities, including development of SSPPs, authorization packages, and risk documentation.
  • Ensure Authorization to Operate (ATO) through assessment support and continuous monitoring.
  • Assess security risks, validate controls, and coordinate remediation of POA&Ms.
  • Maintain system inventories, contingency plans, and privacy documentation.
  • Collaborate with ISSMs, System Owners, and technical teams to integrate security lifecycle.
  • Monitor security posture, review vulnerability results, and support continuous authorization.
  • Provide cybersecurity guidance, policies, and security awareness training.
  • Support security engineering, certification, and implementation of controls across systems.
  • Identify process improvements and automation opportunities for RMF and cybersecurity operations.

Skills

RMF expertise
NIST RMF guidance
CISSP
Documentation & reporting
Stakeholder engagement
Analytical thinking
Communication skills

Education

Bachelor's degree in Cybersecurity/Info Assurance/CS/IT

Tools

GRC tools
SSPPs/POA&M development

Job description

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are atop veteran employer and Certified Great Place to Work™

ASRC Federal Data Networx is seeking aSenior Information System Security Officer (ISSO) to support federal cybersecurity and Risk Management Framework (RMF) activities for enterprise information systems. The ISSO serves as the primary cybersecurity and privacy advisor to System Owners (SOs), ensuring security and privacy requirements are integrated throughout the system lifecycle while maintaining compliance with federal regulations and Authorization to Operate (ATO) requirements.

Work Location

Remote

Key Responsibilities
  • Serve as the primary cybersecurity and privacy advisor to System Owners for assigned systems.
  • Lead RMF activities, including development and maintenance of System Security and Privacy Plans (SSPPs), authorization packages, risk documentation, and supporting artifacts.
  • Ensure systems maintain Authorization to Operate (ATO) through assessment support, continuous monitoring, and compliance with NIST RMF, FISMA, and federal security requirements.
  • Assess security risks, validate security controls, and coordinate remediation of vulnerabilities and Plans of Action and Milestones (POA&Ms).
  • Maintain system inventories, security documentation, contingency plans, configuration management plans, and privacy documentation.
  • Collaborate with ISSMs, System Owners, Security Control Assessors, and technical teams to integrate security throughout the system lifecycle.
  • Monitor system security posture, review vulnerability and compliance scan results, and support continuous authorization initiatives.
  • Provide cybersecurity guidance, develop security policies and procedures, and deliver security awareness training.
  • Support security engineering, certification and accreditation activities, and implementation of security controls across systems.
  • Recommend process improvements and automation opportunities to enhance RMF and cybersecurity operations.
Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, Information Technology, or a related field.
  • Minimum 5–7 years of experience supporting information assurance, cybersecurity, RMF, or information system security, or an equivalent combination of education and experience.
  • Experience supporting federal cybersecurity programs and the NIST Risk Management Framework (RMF).
  • Experience developing and maintaining RMF documentation, authorization packages, and Governance, Risk, and Compliance (GRC) tools.
  • Strong knowledge of NIST SP 800-37, NIST SP 800-53, FISMA, FIPS 199, and federal privacy requirements.
  • Experience supporting Authorization to Operate (ATO), Continuous ATO (cATO), or Continuous Authorization efforts.
  • Strong analytical, communication, documentation, and stakeholder engagement skills.
Required Certifications
  • Certified Information Systems Security Professional (CISSP)
  • Certified in Governance, Risk and Compliance (CGRC) or Certified Cloud Security Professional (CCSP)
Preferred Qualifications
  • Experience supporting U.S. federal civilian agencies, preferably the USPTO.
  • Experience with continuous monitoring, vulnerability management, and security automation.
  • Familiarity with cloud security, DevSecOps, and continuous authorization initiatives.
  • Knowledge of privacy compliance activities, including Privacy Threshold Assessments (PTAs), Privacy Impact Assessments (PIAs), and System of Records Notices (SORNs).

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

EEO Statement

ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Officer
Information System Security Officer

ASRC Federal • Alaska

On-site
USD 95,000 - 125,000
Information System Security Officer (ISSO) – Senior
Information System Security Officer (ISSO) – Senior

ASRC Federal • Aberdeen (MD), Northern (KY)

Hybrid
USD 110,000 - 165,000
Health care
401(k)
Paid time off
+1
RMF Cybersecurity Analyst
RMF Cybersecurity Analyst

ASRC Federal • Virginia (IL), Northern (KY)

Hybrid
USD 90,000 - 120,000
Health care
Dental
Vision
+4
Principal Cyber Security Engineer
Principal Cyber Security Engineer

ASRC Federal • Colorado Springs (CO), Northern (KY)

Hybrid
USD 120,000 - 160,000
Health care
Dental
Vision
+6
Senior Cyber Tools Architect/Engineer
Senior Cyber Tools Architect/Engineer

ASRC Federal • Quantico (VA)

Hybrid
USD 140,000 - 210,000
Health care
Dental
Vision
+4
Information Security Engineer
Information Security Engineer

ASRC Federal Holding Company • Huntsville (AL)

On-site
USD 90,000 - 130,000
Senior Information System Security Officer (ISSO) with Security Clearance
Senior Information System Security Officer (ISSO) with Security Clearance

ShorePoint, LLC • Albuquerque (NM)

On-site
USD 110,000 - 170,000
144 hours PTO
11 holidays
85% health insurance premium covered
+2
Windows Systems Administrator (supporting the Naval Research Lab)
Windows Systems Administrator (supporting the Naval Research Lab)

ASRC Federal • Welcome Acres (MD)

On-site
USD 65,000 - 90,000
Senior Information Systems Security Officer
Senior Information Systems Security Officer

Bamboo Solutions • Washington

Hybrid
USD 130,000 - 180,000
Profit sharing
15 days PTO and 10 holidays
401(k) with employer matching
+2
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

FedTec • Baltimore (MD)

On-site
USD 90,000 - 150,000