ISSO, Junior

BowheadAshburn, VA
$90,000 - $125,000Hybrid

About The Position

Bowhead seeks a Junior Information Systems Security Officer (ISSO) to join a dynamic, energetic, and mission-oriented team providing Technical Integration Management Support (TIMS) to the U.S. Customs and Border Protection (CBP) Passenger Systems Program Directorate (PSPD). This position will support the primary ISSOs in maintaining and protecting the security posture of mission-critical CBP applications. The role operates during core business hours of 8:00 AM – 4:00 PM, Monday through Friday, primarily onsite in Ashburn, VA, with telework available at the discretion of the Government. Success in this position requires actively mitigating security risks to the enterprise by assisting with continuous monitoring and compliance tracking, evaluating test findings, updating security artifacts in government tools (CSAM), and tracking vulnerabilities to closure. Coordination with various application teams is key. The successful candidate must hold a current and favorably adjudicated CBP suitability background investigation.

Requirements

  • Bachelor's degree in an IT-related field
  • At least 2-4 years of experience supporting IT system security, cybersecurity tracking, or compliance monitoring.
  • Knowledge of federal security frameworks, including FISMA, NIST 800-53 security controls, and DISA STIGs.
  • Experience tracking technical tasks using Agile/ticketing platforms like Jira.
  • Familiarity with vulnerability scanning tools and interpreting scan reports.
  • Outstanding communications skills---both written and oral.
  • Ability to work in a collaborative, schedule-driven environment and manage multiple tracking tasks simultaneously.
  • Candidates must hold a current and favorably adjudicated CBP suitability background investigation.

Nice To Haves

  • Experience with US Government systems, particularly navigating CSAM or DHS/CBP security policies is preferred.
  • Security certifications such as CompTIA Security+ CE, CAP, or equivalent is preferred.

Responsibilities

  • Support the maintenance of the security posture for PSPD applications.
  • Review vulnerability scan reports, analyze findings, and open Jira tickets to assign tasks to the application development teams for remediation.
  • Assist in developing, tracking, and updating Plans of Action and Milestones (POA&Ms) in the DHS Cyber Security Assessment and Management (CSAM) tool until closed.
  • Evaluate Security Test Report findings associated with PSPD systems and assist in developing mitigating actions for Information Security Vulnerability Management (ISVM) alerts.
  • Respond to email inquiries from PSPD application teams requesting guidance on security topics within strict Service Level Agreements (e.g., within 3 business days).
  • Assist in the development of IT security waivers and exception requests for outstanding security POA&Ms requiring additional resources.
  • Maintain the PSPD Security Branch’s sites (SharePoint, Confluence, and Jira), ensuring security-related system information, FISMA IDs, ATO dates, and Quick Links are accurate and up-to-date.
  • Support the tracking and status review of approximately 190 Interconnection Security Agreements (ISAs).
  • Follow the Agile process for all security-related work, including Sprint Planning, Sprint Reviews, retrospectives, and daily Agile meetings.
  • Readily adapt to emerging security tools and processes used by CBP (e.g., Splunk, Nessus, Anchore, WebInspect, DBProtect, Qualys).
  • Other duties as assigned
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service