Senior Information Systems Security Officer

ECS Corporate Services

Washington (District of Columbia)

On-site

USD 120,000 - 145,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ECS Corporate Services is seeking an experienced Senior Information Systems Security Officer to support a mission-critical federal cybersecurity program in the National Capital Region. The role leads RMF activities, develops authorization packages, and coordinates with owners and engineers to obtain and maintain compliant authorizations.

The candidate will review RMF artifacts, manage continuous monitoring, and mentor junior ISSOs while ensuring audit readiness and security compliance for

Qualifications

  • Active Top Secret clearance with SCI eligibility and U.S. citizenship.
  • 7+ years as ISSO/ISSE at a cleared facility.
  • 9+ years in computer science, cybersecurity or info tech.
  • Experience RMF, ATO, continuous monitoring, POA&M management.

Responsibilities

  • Lead RMF lifecycle activities and support ATO/CATO/ATU outcomes.
  • Prepare and maintain RMF artifacts and authorization package materials.
  • Coordinate with system owners, ISSEs, ISSMs, engineers, and stakeholders.
  • Track vulnerabilities, POA&Ms, and remediation milestones.

Skills

RMF implementation
Security assessment & authorization
Documentation & artifacts
Stakeholder coordination
Strong written & verbal communication
Multisystem management
Security controls knowledge

Education

CISSP or DoD 8570 IAM III equivalent

Tools

Tenable Nessus
Security Center
Splunk
IBM Guardium
HP WebInspect
Nmap/Network Mapper

Job description

ECS is seeking an experienced Senor Information Systems Security Officer to support a mission-critical federal cybersecurity program in the National Capital Region. This role provides senior-level Information Systems Security Officer support for Security Assessment and Authorization, Risk Management Framework execution, authorization package development, continuous monitoring, vulnerability remediation, audit readiness, and security compliance for federal information systems. Please Note: This position is contingent upon contract award. Salary Range: $120,000 - $145,000 The selected candidate will serve as a senior ISSO and task lead, coordinating with system owners, ISSEs, ISSMs, engineering teams, program leadership, and authorization stakeholders to help assigned systems obtain and maintain compliant authorizations.

Primary Responsibilities
  • Serve as a senior ISSO and task lead supporting assigned federal information systems.
  • Support full lifecycle Security Assessment and Authorization activities in alignment with RMF, federal cybersecurity requirements, and customer-specific security policies.
  • Prepare, review, update, and maintain RMF and SAA documentation, including System Security Plans, control implementation descriptions, risk assessments, POA&Ms, continuous monitoring artifacts, inventories, data flow diagrams, network diagrams, and authorization package materials.
  • Coordinate with system owners, ISSEs, ISSMs, engineers, and authorization stakeholders to support timely ATO, CATO, or ATU outcomes and prevent authorization lapses.
  • Ensure assigned systems remain fully scoped, including accurate documentation of system boundaries, components, hardware, software, interconnections, data flows, and technology stacks.
  • Support control implementation documentation and ensure security control descriptions accurately reflect system conditions and available evidence.
  • Track vulnerabilities, POA&Ms, remediation milestones, corrective actions, and compliance activities through closure.
  • Support vulnerability and patch reporting, emergency directive responses, data calls, RFIs, and other compliance requests.
  • Monitor system security posture and support continuous monitoring activities, including documentation updates, evidence collection, recurring reviews, and stakeholder coordination.
  • Support annual security control assessments, FISMA reviews, audit preparation, COOP or resiliency documentation, and other recurring federal cybersecurity requirements.
  • Review technical and procedural security evidence for completeness, accuracy, consistency, and traceability.
  • Identify documentation gaps, control weaknesses, compliance risks, and remediation needs; coordinate corrective actions with system owners and technical teams.
  • Support onboarding of new systems by establishing security documentation baselines, identifying required artifacts, confirming stakeholder roles, and tracking authorization readiness.
  • Support incident‑related cybersecurity documentation and recovery activities when assigned systems are impacted by a cybersecurity event.
  • Provide status updates, risk summaries, action item tracking, and documentation quality feedback to program leadership and stakeholders.
  • Develop or improve checklists, templates, SOPs, evidence standards, and repeatable processes to improve quality, consistency, and timeliness of ISSO support.
  • Mentor junior ISSOs and support knowledge sharing across the cybersecurity team.
  • Fill in as ISSO for additional systems as needed.
Qualifications
  • Active Top Secret clearance with SCI eligibility U.S. citizenship.
  • Minimum of 7 years of experience serving as an Information Systems Security Officer or Information Systems Security Engineer at a cleared facility.
  • Minimum of 9 years of work experience in a computer science, cybersecurity, information technology, or related technical field.
  • Experience supporting RMF, Security Assessment and Authorization, ATO, continuous monitoring, POA&M management, vulnerability remediation, security documentation, and authorization package development.
  • Experience preparing, reviewing, and maintaining RMF artifacts, including System Security Plans, control implementation descriptions, risk assessments, POA&Ms, inventories, network diagrams, data flow diagrams, and continuous monitoring documentation.
  • Experience coordinating with system owners, engineers, ISSMs, ISSEs, program leadership, and authorization stakeholders.
  • Knowledge of NIST SP 800-53, NIST SP 800-53A, FIPS 199, FIPS 200, FISMA, vulnerability management, POA&M management, and federal cybersecurity requirements.
  • Familiarity with the use and operation of security tools, including Tenable Nessus and/or Security Center, Splunk, IBM Guardium, HP WebInspect, Network Mapper, or similar applications.
  • Strong written and verbal communication skills, including the ability to explain security risks, documentation gaps, compliance issues, remediation needs, and authorization impacts to technical and non-technical stakeholders.
  • Ability to manage multiple systems, priorities, deliverables, stakeholders, and deadlines in a high-accountability federal mission environment.
  • Possess at least one of the following certifications: CISSP, GISP, CASP, or another certification demonstrating skills consistent with DoD 8570 IAM Level III proficiency.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Systems Security Officer
Senior Information Systems Security Officer

Saic • Washington

Hybrid
USD 120,000 - 160,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Skysoft Inc. • Maryland

Hybrid
USD 120,000 - 170,000
Information System Security Officer Sr. (Cloud)
Information System Security Officer Sr. (Cloud)

ECS Corporate Services • Washington

On-site
USD 175,000 - 190,000
Information Systems Security Officer
Information Systems Security Officer

Demand Drive Solutions LLC • Washington

On-site
USD 110,000 - 120,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Digital Global Connectors • McLean (VA)

Hybrid
USD 120,000 - 150,000
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

The Amatriot Group • Washington

On-site
USD 150,000 - 210,000
Information Systems Security Engineer SME
Information Systems Security Engineer SME

ECS Corporate Services • Huntsville (AL)

On-site
USD 155,000 - 168,000
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

Unity Compass • Alexandria (VA)

Hybrid
USD 90,000 - 175,000
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

ShorePoint • Albuquerque (NM)

On-site
USD 120,000 - 180,000
PTO 144 hours
11 holidays
Health insurance coverage
+3
Information Systems Security Officer, Staff
Information Systems Security Officer, Staff

AMERICAN SYSTEMS • Middletown (RI)

On-site
USD 90,000 - 130,000