The Information Systems Security Officer (ISSO) will support the security posture of mission-critical information systems by implementing, maintaining, and enforcing information assurance policies, standards, and procedures throughout the system lifecycle. This role is responsible for ensuring systems remain compliant with security requirements while supporting the Risk Management Framework (RMF) authorization process for classified environments. The ISSO will maintain the day-to-day operational security of assigned information systems, supporting approximately 10–15 System Security Plans (SSPs). They will work closely with system owners, engineers, ISSMs, and cybersecurity teams to ensure security controls are implemented, documented, and maintained in accordance with customer and regulatory requirements. The successful candidate will prepare, review, and maintain RMF documentation, including System Security Plans (SSPs), Risk Assessment Reports (RARs), Security Assessment and Authorization (A&A) packages, and System Requirements Traceability Matrices (SRTMs). They will support security authorization activities in accordance with the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) and assist with vulnerability assessments, risk analysis, and continuous monitoring activities. The ISSO will evaluate security solutions to ensure they meet security requirements for processing classified information, support configuration management activities for security-related hardware, software, and firmware, and assess the security impact of system changes. They will also coordinate with stakeholders to implement information system security policies, maintain compliance, and support ongoing cybersecurity operations.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior