Information System Security Officer

FUTURE TECHNOLOGIES VENTURE LLCHuntsville, AL
Onsite

About The Position

Future Technologies is seeking a full-time Information System Security Officer (ISSO) to provide cybersecurity and Information Assurance support to a U.S. Army customer in Huntsville, Alabama. The ISSO will support Department of Defense Risk Management Framework (RMF) activities from system categorization and security-control implementation through assessment, authorization, and continuous monitoring. The position requires hands-on experience developing and maintaining RMF packages, managing records in the Enterprise Mission Assurance Support Service (eMASS), conducting vulnerability and compliance assessments, and supporting systems across classified and unclassified environments.

Requirements

  • Bachelor's degree in a related field or at least seven years of directly relevant experience.
  • At least five years of cybersecurity or Information Assurance experience, including demonstrated RMF and ISSO experience.
  • Demonstrated experience supporting DoD RMF activities and obtaining and maintaining Authorizations to Operate.
  • Demonstrated hands-on experience entering data, maintaining records, and navigating eMASS.
  • Experience conducting vulnerability and security-compliance scans with ACAS/Nessus, SCAP Compliance Checker, STIG Viewer, Evaluate-STIG, or equivalent tools.
  • Working knowledge of NIST SP 800-53 and applicable DoD cybersecurity policies.
  • Current DoD 8570/8140-compliant IAT Level II certification, such as Security+ CE or a higher-level qualifying certification.
  • Active DoD Secret security clearance at the time of hire, with the ability to obtain and maintain a Top Secret clearance with access to Sensitive Compartmented Information.
  • Ability to travel up to 15 percent of the time.
  • Ability to communicate technical findings, security risks, remediation requirements, and authorization status clearly to technical and nontechnical stakeholders.
  • Familiarity with Windows operating systems.
  • Familiarity with Linux operating systems.
  • Familiarity with VMware products and virtualized environments.
  • Familiarity with classified and unclassified DoD system environments.
  • Familiarity with the operation and use of eMASS.
  • Familiarity with the operation and use of ACAS/Nessus.
  • Familiarity with the operation and use of SCAP Compliance Checker.
  • Familiarity with the operation and use of STIG Viewer.
  • Familiarity with the operation and use of Evaluate-STIG.
  • Familiarity with the operation and use of Microsoft Word, Excel, PowerPoint, and Visio.

Nice To Haves

  • Prior experience serving as an ISSO for DoD or U.S. Army systems.
  • Active Top Secret clearance with current eligibility for access to Sensitive Compartmented Information.
  • Experience supporting classified or multi-level security environments.
  • Experience with Windows, Linux, VMware, and system security hardening.
  • CISSP, SecurityX/CASP+, CySA+, or another applicable cybersecurity certification.

Responsibilities

  • Support the full DoD RMF lifecycle, including system categorization, security-control implementation, assessment, authorization, and continuous monitoring.
  • Develop and advise on RMF packages, strategies, and technical components that comply with NIST SP 800-53 security controls and applicable NISPOM, DoD, DISA, and Army cybersecurity requirements.
  • Create and maintain System Security Plans, Plans of Action and Milestones, system diagrams, system user guides, privileged user guides, and other authorization artifacts.
  • Enter, update, maintain, and track cybersecurity records and supporting evidence in eMASS.
  • Identify system vulnerabilities and recommend security controls that mitigate or eliminate identified risks.
  • Conduct or support vulnerability and security-compliance assessments using ACAS/Nessus, SCAP Compliance Checker, STIG Viewer, Evaluate-STIG, or equivalent approved tools.
  • Analyze assessment results, document security deficiencies, support remediation activities, and maintain evidence that demonstrates compliance.
  • Track security updates for Windows and Linux operating systems, VMware products, and associated software applications.
  • Review system audits, identify deficiencies during RMF assessment activities, and monitor corrective actions through closure.
  • Integrate security tools, system documentation, and other artifacts to improve compliance reporting and program efficiency.
  • Prepare a monthly status report that summarizes significant activities and accomplishments.
  • Coordinate with system owners, cybersecurity personnel, engineers, assessors, program leaders, and government stakeholders to resolve security issues and advance authorization activities.
  • Execute day-to-day ISSO responsibilities for assigned systems and networks.
  • Develop, maintain, and advance authorization packages while preserving complete and accurate compliance evidence.
  • Conduct security assessments, document findings, recommend mitigations, and track corrective actions through closure.
  • Communicate security status, risks, requirements, and accomplishments to technical and program stakeholders.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service