Role OverviewThe Information Systems Security Officer (ISSO) ensures the secure operation of complex, multi-enclave IT and Research & Development (R&D) systems. The ISSO serves as the principal advisor to Information System Owners regarding security posture.
What You Will Do
Responsibilities include RMF Lifecycle Management, ACAS Operations & Vulnerability Management, POA&M & Remediation Advisory, Continuous Monitoring (ConMon), Air-Gapped & Multi-Enclave Support, Security Assessments, and Incident Handling.
Why It Might Be a Fit
This role requires a 'hands-on' governance approach, utilizing the Assured Compliance Assessment Solution (ACAS) and standard DoD tooling to drive Continuous Monitoring (ConMon), validate compliance, and maintain active Authority to Operate (ATO) statuses without disrupting critical experimental research.
Requirements
- Bachelor's degree in Cybersecurity, Information Technology, or related field (or equivalent experience)
- 5–7+ years of experience acting as an ISSO or in a senior DoD RMF compliance role
- DoD Directive: DoD 8570.01-M / 8140.03 compliant for IAM Level II or III
- Expert-level understanding of DoD RMF (DoDI 8510.01), NIST SP 800-53/800-37/800-171, and DISA STIG implementation
- Proven experience managing ATO artifacts in eMASS or Xacta
- Proficient with SCC, STIG Viewer, and interpreting IAVA/IAVM notices
Benefits
- Equal employment opportunities to all applicants and employees
- Reasonable accommodation for qualified applicants or employees with a disability
- At-will employment
]]>