Information Systems Security Officer Senior

SAICAshburn, VA
Hybrid

About The Position

SAIC is seeking a senior-level Information System Security Officer (ISSO) and/or Alternate Information System Security Officer (AISSO) for one or more major federal IT information systems as a member of the customer directorate’s Security Team. The candidate will be responsible for utilizing the NIST Risk Management Framework (RMF), NIST Security and Privacy Controls for Information Systems and Organizations, and related Continuous Monitoring activities to maximize the security of their assigned system(s) and ensure compliance with Federal Information Security Management Act (FISMA) requirements and DHS/CBP policies and processes. This position is hybrid-remote and requires 1 day per-week on-site per week in Ashburn, VA.

Requirements

  • Utilizing the NIST Risk Management Framework (RMF)
  • NIST Security and Privacy Controls for Information Systems and Organizations
  • Continuous Monitoring activities
  • Federal Information Security Management Act (FISMA) requirements
  • DHS/CBP policies and processes
  • Review and interpret security vulnerability scans
  • DoD STIGs (Security Technical Implementation Guides)
  • Security Information and Event Management (SIEM) tools such as Splunk, Kibana, etc.

Responsibilities

  • Conduct continuous monitoring and self-inspections of computer systems to ensure security compliance with the a forementioned guidance and DHS/CBP policy directives, and proactively report progress to management, make recommendations for security posture improvements, and ensure systems are ready for audits.
  • Review and interpret security vulnerability scans, communicate their contents to management and technical stakeholders, and push them to remediation.
  • Proactively report security status and concerns to management and make recommendations as appropriate.
  • Participate in and support directorate responses for ongoing information system audits.
  • Develop and update standard government security documentation such as System Security Plans, Contingency Plans, Interconnection Security Agreements, Risk Acceptances/Waivers, Privacy Threshold Analyses, Privacy Impact Assessments, and other ad-hoc documentation as needed.
  • Review and approve/deny relevant system Change Requests as needed.
  • Ensure configuration management is appropriate for all Information Systems (IS) software and hardware, in accordance with DoD STIGs (Security Technical Implementation Guides) and industry best practices.
  • Execute system audit log reviews in accordance with established policy requirements using Security Information and Event Management (SIEM) tools such as Splunk, Kibana, etc.
  • Assist creation of new policies/procedures as needed for directorate systems.
  • Support ad-hoc data call and reporting requirements initiated by DHS CIO, CISA and other headquarters offices.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service