The Associate Information System Security Officer (ISSO) will assist in preparation, development, and maintenance of specialized Information Systems (IS) security plans used to obtain/retain DCSA accreditation. This role involves overseeing system compliance, auditing information systems, and reviewing/revising IS system plans documentation based on analysis of existing equipment configuration. The ISSO will also document any changes or special security requirements, oversee and manage the implementation of cybersecurity products (e.g., SIEM tools, vulnerability scanners, endpoint security, DLP), and assist with the deployment and sustainment of continuous monitoring requirements on the IS. Additionally, the role provides day-to-day technical support to classified IS, ensuring adherence to policies, procedures, and best practices. The ISSO will review and map evidence from security requirement sources like STIGs, DISA guidance, and customer requirements within the SCTM and RMF evidence package. They will also assist in developing and implementing annual IS security training for end-users, Data Transfer Agents (DTAs), and System Administrators (SAs), and draft procedures for information system protection. Responsibilities include assisting in spill containment and cleanup, partnering with government agencies on information security matters, participating in investigations of IS security violations, and communicating security risks to business partners and IT staff. The ISSO assists the Information Systems Security Manager (ISSM) with safeguarding, handling, and controlling classified materials, documents, and equipment, ensuring enforcement of company and government regulations. Attending cybersecurity events and participating in external cybersecurity activities is expected to maintain current knowledge in the field. The role requires knowledge of NISPOM, DCSA Assessment and Authorization Process Manual (DAAPM), DCSA Assessment and Authorization Guide (DAAG), and Risk Management Framework. The ISSO will also respond to emergencies and remediate information security incidents.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Entry Level