Information System Security Officer (ISSO) - Chantilly VA

Military Spouse Corporate Career NetworkChantilly, VA
Onsite

About The Position

The Information System Security Officer (ISSO) will be responsible for security architecture and systems engineering supporting Identity, Credential and Access Management (ICAM) projects. This role provides guidance to the team to support system accreditation (IATT and ATO). Tasks include preparing system security plans (SSP), identifying, developing, reviewing, and incorporating common artifacts for RMF accreditation packages, and working with ISSM and DAOs to ensure systems obtain and maintain accreditation. The ISSO will verify package submissions meet approval thresholds, apply continuous monitoring techniques, create tasking for developers and system administrators for changes and patching, and oversee the implementation of software patches. This role is also responsible for implementing and enforcing information systems security policies, standards, and methodologies. Familiarity with vulnerability scanning and assessment tools (e.g., ACAS/Nessus) is necessary. The ISSO will review audit logs and perform data transfers weekly. They will maintain and report assessment and authorization statuses and issues, and understand the PRIVAC process, supporting personnel with new PRIVAC requests and extensions.

Requirements

  • Minimum Clearance Required to Start: TS/SCI with Polygraph
  • Familiarity with the use of vulnerability scanning and assessment tools (e.g., ACAS/Nessus) necessary to identify and document compliance.
  • Understand the PRIVAC process.

Nice To Haves

  • Tasks include program management, mission support, software integration, software development, system engineering, migration, testing, documentation development, network and system monitoring, configuration control and release management.

Responsibilities

  • Provide security architecture and systems engineering supporting ICAM projects.
  • Provide guidance to the team to support system accreditation (IATT and ATO).
  • Prepare system security plan (SSP) and provide recommendations to assist in obtaining ATOs.
  • Identify, develop, review, and incorporate common artifacts found in an RMF accreditation package such as: system architecture and boundaries, hardware and software lists, risk assessment reports, POA&Ms, data flows, and other necessary system, network, and application documentation.
  • Work with ISSM and DAOs to ensure systems obtain and maintain accreditation.
  • Verify package submissions have met the threshold for approval such as: C&A Package for System Reauthorization, SAR Findings, CTO’s, POA&Ms, and System Security Plans (SSPs).
  • Apply continuous monitoring techniques to evaluate the systems security posture.
  • Create tasking for developers and system administrators as changes and patching are required.
  • Oversee the implementation of software patches to maintain the security posture of the organization.
  • Implement and enforce information systems security policies, standards, and methodologies.
  • Identify and document compliance using vulnerability scanning and assessment tools (e.g., ACAS/Nessus).
  • Review Audit Logs on a weekly basis.
  • Perform Data transfers on a weekly basis driving from CACI Hanover Office to Ft. Meade.
  • Maintain and report assessment and authorization statuses and issues in accordance with organizational guidance.
  • Understand the PRIVAC process.
  • Support personnel with new PRIVAC requests and extensions.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service