Senior Information System Security Officer

Saic

Colorado Springs (CO)

On-site

USD 160,000 - 200,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

SAIC seeks a Senior Information System Security Officer (ISSO) to support secure operating facilities in Colorado Springs, CO. You will assist the Information Systems Security Manager and provide oversight, guidance, and technical support on IT and information system security issues affecting the mission.

Strong background in RMF, DoD STIGs, and vulnerability management is required. In this role you will develop and maintain security documentation, review audits, and coordinate with national

Qualifications

  • Bachelor's degree (preferred) with 14+ years of cybersecurity-related experience (4 years may substitute for degree).
  • Experience with RMF, NIST, CNSSI 1253, and A&A processes.
  • Expert knowledge of DoD vulnerability tools and compliance reporting (eMASS, XACTA, ACAS, STIGs).
  • Familiarity with JSIG, NIST SP 800-53/53A, and CNSSI 1253 guidance.
  • Experience in SAP and/or SCI environments; ability to handle data at varying classifications.

Responsibilities

  • Conduct continuous monitoring and self-inspections to ensure security compliance and readiness for audits.
  • Review vulnerability scans and communicate findings to management for remediation.
  • Develop and update security documentation (SSP, Contingency Plans, IPAs) as needed.
  • Review change requests and ensure configuration management aligns with DoD STIGs and industry best practices.
  • Perform system audit log reviews using SIEM tools (Splunk, Kibana).

Skills

Cybersecurity
RMF
Vulnerability Scanning
DoD Tools
Security Audits
Policy Compliance

Education

Bachelor's degree

Tools

eMASS
XACTA
ACAS
STIGs
Nessus
Splunk
SCAP
CNSSI 1253
CISSP

Job description

Description

SAIC is seeking a technical Senior Information System Security Officer (ISSO) to support the company’s secure operating facilities in Colorado Springs, CO. The Horizon 2 contract supports the US Space Force. The primary Government customer is Space Systems Command and its Program Offices that oversee the Space Domain Awareness and Combat Power Branches & the Battle Management Command, Control and Communications portfolios.

You will support all facets of SAIC’s Information Protection Program at our Colorado Springs location. You will assist the Information Systems Security Manager and provide oversight, guidance, and technical support, on IT and information system security issues affecting the mission of the customer, by implementing common information system security practices, policies, and standards. You will have access to information systems to perform advanced vulnerability and compliance scanning and your background in applying sound and effective Information Assurance security practices, in both Windows and Linux environments, will be the driving force behind the success of our customer missions.

This is an excellent opportunity for an experienced cybersecurity professional with a strong technical background to support the ongoing compliance of systems. Join us in safeguarding the nation's space assets and explore the limitless opportunities that await in this dynamic role. You'll have the invaluable opportunity to be mentored in this role, ensuring not only your professional growth, but also the continued excellence of our operations. You will get to use your strong communication (verbal and written) skills and interpersonal skills in a dynamic customer centric environment, which may require sporadic off-hours support. If this is what you are looking for, keep reading.

Fun stuff you will do on the job:
  • Conduct continuous monitoring and self-inspections of computer systems to ensure security compliance with official guidance and policy directives, and proactively report progress to management, make recommendations for security posture improvements, and ensure systems are ready for audits.
  • Review and interpret security vulnerability scans, communicate their contents to management and technical stakeholders, and push them to remediation.
  • Proactively report security status and concerns to management and make recommendations as appropriate.
  • Participate in and support directorate responses for ongoing information system audits.
  • Develop and update standard government security documentation such as System Security Plans, Contingency Plans, Interconnection Security Agreements, Risk Acceptances/Waivers, Privacy Threshold Analyses, Privacy Impact Assessments, and other ad-hoc documentation as needed.
  • Review and approve/deny relevant system Change Requests as needed.
    Ensure configuration management is appropriate for all Information Systems (IS) software and hardware, in accordance with DoD STIGs (Security Technical Implementation Guides) and industry best practices.
  • Execute system audit log reviews in accordance with established policy requirements using Security Information and Event Management (SIEM) tools such as Splunk, Kibana, etc.
  • Assist creation of new policies/procedures as needed for directorate systems.
  • Support ad-hoc data call and reporting requirements initiated by DHS CIO, CISA and other headquarters offices.
Qualifications
This is You:
  • Bachelor’s degree (preferable Information Security related), 14+ years experience (4 years of experience may be used in lieu of degree) with:
    • Cybersecurity, cyber engineering, information assurance, system administration, or equivalent combination to reflect knowledge and experience.
    • The Risk Management Framework, National Institute of Standards and Technology, Committee on National Security Systems cyber security requirements and guidance, and cyber security related risk management methodologies.
    • Expert knowledge and experience using DoD tools and capabilities for vulnerability assessments and compliance reporting (eMASS, XACTA, ACAS, STIGs, Nessus, SCAP, Splunk, etc.).
    • Mastery understanding of the JSIG, ICD 503, NIST Risk Management Framework (RMF), NIST SP 800-53/53A, and CNSSI 1253, and the Assessment & Authorization (A&A) process.
    • Successful participation Information Assurance self-inspections, ATO renewals, and Cybersecurity compliance inspections.
    • Working in a SAP and/or SCI environment.
    • Controlling, labeling, virus scanning, and appropriately transferring data (upload/download) between information systems at varying classification levels.
    • Experience conducting security audits/system assessments of information systems.
    • Possess certification(s) that meet or exceed DoD 8140 IAT Level II requirements (ex. CompTIA Security+, CISSP).
  • Must be willing to be nominated for access to Sensitive Compartment Information and Special Access Programs and willing to consent to a Polygraph examination.
  • Must have an in-scope security background investigation (T5 or SSBI), adjudicated for SCI eligibility and enrolled in the Continuous Evaluation program (if applicable).
You will wow us even more if you have these skills:
  • A masters degree (preferably in cyber security, Information Security or related security studies).
  • Experience with Incident Response and Disaster Recovery Procedures.
  • Experience creating/updating plans, processes, and procedures, in support of system and data security requirements, as well as establishing artifacts required for system certification.
  • Familiarity with virtualized hosting, such as VMware.
  • Extensive training or experience with Windows-based Information Systems with a working knowledge of LINUX operating systems.
  • Understanding of Contractor SAP Security Officer (CSSO) functions, responsibilities, and disciplines (i.e., PERSEC, PHYSEC, facility alarm operations, Security Training and Education, visitor access requests).
  • Program Security responsibilities to include, but not limited to: OPSEC, Program Protection, Personnel Security clearances, Security Training and Education, and Classification management.
  • Working knowledge of COMSEC responsibilities.
  • Have an understanding of DD254s to support government contracts.

Target salary range: $160,001 - $200,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Systems Security Officer Senior
Information Systems Security Officer Senior

Saic • Ashburn (VA)

On-site
USD 120,000 - 160,000
Senior Information Systems Security Officer
Senior Information Systems Security Officer

Saic • Washington

Hybrid
USD 120,000 - 160,000
Information System Security Officer
Information System Security Officer

Jacobs • Chantilly (VA)

On-site
USD 110,000 - 180,000
Training and certification support
401(k) plan with company stock purchase option
Competitive salary and benefits package
Information Systems Security Officer
Information Systems Security Officer

The Hawaii Pacific Foundation • Hanahan (SC)

On-site
USD 250,000 - 300,000
Senior Information Systems Security Officer (ISSO)
Senior Information Systems Security Officer (ISSO)

Parsons • Colorado Springs (CO)

On-site
USD 130,000 - 170,000
Information Systems Security Officer (ISSO) - Senior
Information Systems Security Officer (ISSO) - Senior

Astrion • Boulder (CO)

On-site
USD 102,000 - 138,000
Information System Security Officer
Information System Security Officer

Peraton • Maryland

On-site
USD 110,000 - 170,000
Information System Security Officer II
Information System Security Officer II

Targeted Solutions, LLC • Albuquerque (NM)

On-site
USD 90,000 - 140,000
PTO and Flexible holidays
Tax-free healthcare reimbursement
401K with 4% match
Information Systems Security Officer (ISSO) II (TS, w/ SCI Eligibility
Information Systems Security Officer (ISSO) II (TS, w/ SCI Eligibility

Redtracetech • Colorado

On-site
USD 99,000 - 114,000
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

Unity Compass • Alexandria (VA)

Hybrid
USD 90,000 - 175,000