Information System Security Officer

E-Infosol LLCClarksburg, WV
Remote

About The Position

The Senior Information System Security Officer (ISSO) supports a federal agency in verifying compliance with Federal Information Security Management Act (FISMA), National Institute of Standards and Technology (NIST), DISA Security Technical Implementation Guide (STIG), Federal Information Processing Standards (FIPS), National Information Processing Standards (NIPS), and support and the establishment, implementation, and maintenance of a life-cycle security model that develops, maintains, and dispositions information systems, services, and data, and safeguards their confidentiality, integrity, and availability to meet the needs and support the missions of the agency.

Requirements

  • Federal Information Security Management Act (FISMA)
  • National Institute of Standards and Technology (NIST)
  • DISA Security Technical Implementation Guide (STIG)
  • Federal Information Processing Standards (FIPS)
  • National Information Processing Standards (NIPS)
  • Risk Management Framework
  • NIST SP 800-53
  • FBI security Assessment & Authorization (A&A) activities
  • Authority to Operate (ATO)
  • Continuous Integration/Continuous Delivery (CI/CD) Pipelines Virtualization, software-defined infrastructure
  • Cloud computing technologies
  • CODIS
  • Information System Security Manager (ISSM)
  • Tenable Nessus and/or Security Center, AppDetectivePro, HP Weblnspect, Network Mapper (NMAP), and/or similar applications

Nice To Haves

  • Active Top-Secret clearance with capability to obtain SCI/CI Poly if needed to meet contract requirements.
  • Bachelors and/or Master’s degree in Computer Science, Management Information Systems, or related computer science technical degree
  • CompTIA Security+ or (ISC)² Security Certified Practitioner (SSCP), (ISC)2 CISSP, or higher certification

Responsibilities

  • Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for the customer’s information system(s)
  • Lead security authorization processes and procedures. Recommend security best practices and system configuration standards
  • Take full responsibility of cybersecurity posture and analysis to include vulnerability management, incident response support, and Risk Management Framework
  • Upload all security control evidence to the Governance, Risk, and Compliance (GRC) application to support security control implementation during the monitoring phase
  • Write System Security Plans, POA&Ms (Plan of Actions and Milestones), Risk Assessments, PIAs (Privacy Impact Analyses), and supporting documentation for systems subject to NIST SP 800-53
  • Support FBI security Assessment & Authorization (A&A) activities. Achieve and maintain ATO (Authority to Operate), as required
  • Conduct required IS vulnerability scans according to risk assessment parameters
  • Working knowledge of Continuous Integration/Continuous Delivery (CI/CD) Pipelines Virtualization, software-defined infrastructure and working knowledge of cloud computing technologies
  • Coordinate system owner concurrence for correction or mitigation actions
  • Monitor security controls for the customer’s information system(s) to maintain security Authorized To Operate (ATO)
  • Create security A&A documentation for CODIS and maintains the project system security procedure for the Information System Security Manager (ISSM)
  • Review system audit trails, and reports all information system security incidents through the appropriate channels
  • Ensure that all users have the requisite security clearances, authorization, and need-to-know, and are aware of their security responsibilities before granting access to the Information System and administers/witnesses signed user
  • Manage Information Security Audits by federal departments/agencies, including third party auditors
  • Reports all security-related incidents to the ISSM
  • Initiate, with the approval of the ISSM, protective and corrective measures when a security incident or vulnerability is discovered
  • Interface with appropriate government managers and contractors to ensure understanding of and compliance with security requirements
  • Participates in CCBs and advises on the security impacts of all proposed changes and software requirements
  • Familiarity with the use and operation of security tools including Tenable Nessus and/or Security Center, AppDetectivePro, HP Weblnspect, Network Mapper (NMAP), and/or similar applications
  • Supports certification activities throughout the A&A process
  • Oversees system recovery processes as well as Continuity of operations (COOP) exercises
  • Assess emerging network system and enterprise-level risks and vulnerabilities. Advises leadership on cyber security risk management, security strategy, security project planning, and security architecture
  • Advise and conduct liaison with appropriate security organizations on security status of configuration changes to the operational system.

Benefits

  • Medical – 100% company paid premiums for employees with dependent options.
  • Dental and Vision
  • Retirement Savings (401k) up to 4% match
  • Health Savings Account (HSA), FSA and DCFSA
  • Company-paid Short/Long-term disability (w/ additional supplemental options)
  • Company-paid Life and AD&D (w/ additional supplemental options)
  • Generous Paid Time Off and ALL 11 Federal Holidays
  • Legal and Identity Protection Services
  • Bonuses for certifications and reimbursement
  • Employee Perks: UberOne, Company Outings (Sporting events, Happy Hours, etc.), Discounts on services including Pet Insurance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service