Senior Information System Security Officer (ISSO) – WSMR, New Mexico

ASRC Federal

Northern (KY)

Hybrid

USD 120,000 - 150,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

ASRC Federal Technology Solutions LLC seeks an experienced Information System Security Officer with a active Secret clearance to support DEVCOM-CBC TDAC at White Sands Missile Range, NM. The role focuses on RMF, risk management, and incident response across unclassified and classified systems.

Responsibilities include maintaining ATO status, developing system artifacts, conducting vulnerability assessments with STIGs/Nessus, and coordinating POA&M and CONMON processes per DoD/Army regulations.

Qualifications

  • Bachelor’s degree in IT, CS, engineering, or related field, or 5 years of relevant experience.
  • 5+ years of RMF EMASS authorization duties.
  • Working knowledge of DoD/Army cybersecurity regs including Army 25-2, DoD 8140, and RMF.
  • Experience with Active Directory account management and STIG/SRG audits.
  • Familiarity with AVS or equivalent DoD compliance tracking platforms.

Responsibilities

  • Maintain ATO status for DEVCOM systems and assist other locations.
  • Develop and update system artifacts and ensure controls mapping in eMASS.
  • Import vulnerability scans (STIGs, Nessus/ACAS) and track IAVAs.
  • Create and maintain POA&M, milestones, and authorization docs.
  • Maintain CONMON and RMF tooling status; report compliance.
  • Coordinate vulnerability remediation and incident response per SOPs.

Skills

RMF EMASS authorization
DoD/Army regulations
Vulnerability assessment
Incident response
Communication skills

Education

Bachelor’s degree in IT/CS/Engineering or 5 years equivalent

Tools

eMASS
Nessus/ACAS
STIG/audit tooling
POA&M management
AVS familiarity

Job description

ASRC Federal Technology Solutions LLC, a subsidiary of ASRC Federal, is looking for an experienced Information System Security Officer with a minimum of an active Secret security clearance to support their work with DEVCOM-CBC and the Transformation Decision Analysis Center (TDAC) organization in White Sands Missile Range, NM. This position supports the development, implementation, and maintenance of cybersecurity policies, standards, and procedures, ensuring compliance with applicable Department of Defense (DoD), Army, and DEVCOM CBC regulations.

In this role, you will provide cybersecurity support to the DEVCOM-CBC TDAC G6 Cybersecurity Branch, focusing on all aspects of Risk Management Framework (RMF) activities, cybersecurity assessments, and incident response. This role requires a deep understanding of cybersecurity principles, a strong analytical ability, and excellent communication skills to effectively convey complex information to both technical and non-technical audiences, while maintaining a broad portfolio of compliance and accounts management responsibilities across unclassified, classified, and standalone systems.

KEY RESPONSIBILITIES
  • Maintain current Authority to Operate (ATO) status for DEVCOM systems and provide RMF guidance and support to other ACC locations with similar systems.
  • Develop, update, and/or modify the system-level artifacts (e.g., TTPs, plans, policies, procedures, hardware/software lists, data flow, system architecture diagrams, PIAs, Ports/Protocols/Services, MOA/MOU, etc...) and ensure they are associated with corresponding controls in eMASS.
  • Obtain, run, analyze, and import all applicable vulnerability scanners and compliance checkers as required, including STIGs, Nessus/ACAS Scans, etc...
  • Track and report IAVAs related to DEVCOM systems.
  • Create, modify, and/or maintain all aspects of the implementation plan and test results, as defined by DOD, Army, NETCOM, and DEVCOM requirements.
  • Manage Plans of Action and Milestones (POA&M), including development, status updates, milestone tracking, and closure.
  • Manage assigned network packages within eMASS and maintain accurate, current authorization documentation.
  • Create, modify, and/or maintain all aspects of CONMON.
  • Utilize existing or develop custom solutions to facilitate RMF requirements, reduce timelines and provide up-to-date status reporting of compliance
  • Update and track cybersecurity test results, implementation plans, and risk assessments.
  • Evaluate STIG checklists and document compliance status, deficiencies, and required remediation actions.
  • Perform first-response coordination for Negligent Disclosure of Classified Information incidents in accordance with organization SOPs for incident response
  • Conduct vulnerability management activities, including identifying, tracking, and coordinating corrective actions.
REQUIRED QUALIFICATIONS
  • Bachelor’s degree (BA/BS) in Computer Science, Information Technology, Engineering, or a related field or 4 additional years of experience (for a total of 5 years) in lieu of the degree
  • 5 or more years of hands-on RMF EMASS Authorization duties
  • Working knowledge of DoD and Army cybersecurity regulations including Army Regulation 25-2, DoD 8140, and DoD RMF policy
  • Experience with Active Directory account management and STIG/SRG audit processes
  • Familiarity with the Army Account Validation System (AVS) or equivalent DoD workforce compliance tracking platforms
PREFERRED QUALIFICATIONS
  • Direct experience with eMASS, POA&M and RMF processes and responsibilities
  • Experience serving as an Enhanced Trusted Agent for PKI hardware token issuance
  • Experience performing Software Assurance or Hardware Assurance reviews for DoD networks
  • Familiarity with NSA and Army data sanitization and destruction policy
  • Experience coordinating Negligent Disclosure of Classified Information or classified spill incident response
  • CISSP, CASP+, or CISM certification
  • Experience supporting DEVCOM or Army G6 cybersecurity programs
CLEARANCE LEVEL
  • This position requires an active Secret clearance. An interim Secret clearance is acceptable until the full clearance is granted.
EDUCATION REQUIRMENTS
  • Bachelor’s degree in Information Technology, Computer Science, or a related field or 4 additional years of experience in lieu of the degree
CERTIFICATION
  • DoDI 8140.03 qualification for DCWF Work Role Information Systems Security Manager (722 Intermediate). Accepted foundational qualifications include certifications mapped to Work Role 722 Intermediate in the current DoD 8140 Qualification Matrix, such as SecurityX, CASP+, CCISO, CCSP, CISSO, Cloud+, Security+, and SSCP. Please include your certificate information on your application.
Preferred
  • CISSP
  • SecurityX
  • SSCP
WORK ENVIRONMENT AND PHYSICAL DEMANDS:
  • This position primarily operates in a professional office environment at WSMR, New Mexico, working within or alongside the DEVCOM-CBC TDAC Cybersecurity Branch. The role involves extended use of computer equipment and may require the candidate to move between buildings on the installation to support users and coordinate with government staff. Some work may involve access to classified facilities and systems. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of this position.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information System Security Officer (ISSO) – WSMR, New Mexico
Senior Information System Security Officer (ISSO) – WSMR, New Mexico

ASRC Federal • White Sands (NM)

On-site
USD 110,000 - 160,000
Health insurance
401(k)
Education assistance
+1
Information System Security Officer (ISSO) – Senior
Information System Security Officer (ISSO) – Senior

ASRC Federal • Maryland

On-site
USD 110,000 - 160,000
Senior Manager Information Security
Senior Manager Information Security

ASRC Federal • Maryland

On-site
USD 130,000 - 190,000
Cybersecurity Associate
Cybersecurity Associate

ASRC Federal • Maryland

On-site
USD 110,000 - 150,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Noblis • Huntsville (AL)

On-site
USD 90,000 - 150,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Ara • Albuquerque (NM), Northern (KY)

Hybrid
USD 95,000 - 130,000
Senior RMF/ISSO – DoD Cybersecurity & Compliance Expert
Senior RMF/ISSO – DoD Cybersecurity & Compliance Expert

ASRC Federal • White Sands (NM)

On-site
USD 110,000 - 160,000
Health insurance
401(k)
Education assistance
+1
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Corvus Consulting, LLC • New Jersey

Hybrid
USD 120,000 - 175,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Castellum Inc • Lakehurst (NJ)

On-site
USD 150,000 - 190,000
Senior Information System Security Manager (ISSM)
Senior Information System Security Manager (ISSM)

RMantra Solutions • Fort Meade (MD), Northern (KY)

Hybrid
USD 130,000 - 170,000