Information Systems Security Officer (ISSO)

CACIO'fallon, IL
Hybrid

About The Position

Step into a core mission‑support role where you’ll own the daily security authorization posture for DoD information systems. You’ll work within a well-resourced cybersecurity organization equipped with dedicated engineering, operations, and architecture teams, giving you the support needed to drive meaningful impact. You will own and manage the security authorization posture of assigned DoD systems, partner closely with engineering, operations, and architecture professionals to ensure secure system performance, build advanced expertise with modern RMF tools, including eMASS and eMASSer automation, maintain mission continuity by developing and managing ATO packages and continuous monitoring programs, and advance into a senior GRC career pathway with structured opportunities for professional growth.

Requirements

  • Active Secret or TS clearance
  • 3–5 years of RMF/ATO experience in DoD or federal environments
  • Hands-on experience with eMASS
  • Working knowledge of NIST SP 800‑53 Rev. 5 and DoD RMF processes
  • Demonstrated ability to independently author SSPs and manage POA&Ms
  • DoD 8140.03M DCWF Basic Tier — CEH
  • Required to travel to Scott Airforce base on a quarterly basis

Nice To Haves

  • DoD 8140.03M DCWF Intermediate Tier — CEH(P), RCCE Level 1, Cloud+, CPTE, FITSP‑A, GCED, GCIH, GCSA, GICSP, GSEC, PenTest+, or Security+
  • Bachelor’s degree in Computer Science, Cybersecurity, Data Science, Information Systems, IT, or Software Engineering
  • Experience with eMASSer or other RMF automation tooling
  • Exposure to cloud-hosted or hybrid system authorization boundaries
  • Familiarity with the DoD RMF Knowledge Service

Responsibilities

  • Develop, update, and maintain System Security Plans (SSPs) for assigned systems
  • Manage POA&Ms from identification through remediation and closure
  • Compile and submit complete Authorization to Operate (ATO) packages
  • Conduct continuous monitoring aligned with program strategy and RMF standards
  • Use eMASS to track RMF workflows, manage artifacts, and support GRC governance processes
  • Coordinate with ISSEs and SecOps teams to validate security control implementations
  • Create Security Assessment Plans (SAPs) and support SAR development and coordination
  • Draft supply chain risk management plans to support system-level authorization needs
  • Partner with the Cybersecurity Architect on RMF strategic planning and lifecycle improvements

Benefits

  • flexible time off
  • robust learning resources
  • comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service