SITEC - ISSO - MacDill AFB

Peraton•Tampa, FL
•$86,000 - $138,000•Onsite

About The Position

Peraton requires Information Systems Security Officers to support the Special Operation Command Information Technology Enterprise Contract (SITEC) – 3. This position is located at MacDill AFB. The purpose of the Special Operations Forces Information Technology Enterprise Contract (SITEC) 3 Enterprise Operations and Maintenance (EOM) Task Order (TO) is to provide USSOCOM, its Component Commands, its Theater Special Operations Commands (TSOCs), Operations (NetOps); maintain systems and network infrastructure; provide end user and common device support; provide configuration, change, license, and asset management; conduct training, and perform Install, Move, Add, Change (IMACs) services. The responsibilities and tasks associated with each requirement play a pivotal role to USSOCOM, the CIO/J6 organization, and ultimately the end-user who operate around the globe 24x7x365. Responsible for ensuring the security and integrity of Federal/National Security organization’s information systems, managing risk, and ensuring compliance with all relevant regulations and standards. This role requires a proactive approach to security management and the ability to work closely with both technical and non-technical stakeholders. The ISSO / RMF Analyst shall provide hands-on cybersecurity support for SOCOM systems, focused on RMF lifecycle activities, continuous monitoring, vulnerability management, compliance reporting, and cybersecurity documentation development.

Requirements

  • Min 9 years with HS Diploma, 7 years with AS/AA degree, 5 years with BS/BA degree, 3 years with a MS/MA degree
  • Active DoW TS/SCI clearance
  • 3 or more years of relevant experience related to IT Risk Management, Information System Security, and/or Cybersecurity
  • Must be DoW 8140 compliant under the Work Role Code 722 – Information Systems Security Manager - Intermediate level or higher
  • DoW 8570 IAT II Certification or higher

Responsibilities

  • Support a team of IT risk management assessors performing IT risk and control assessments using government guidance and organizational policies and procedures.
  • Conduct walkthrough interviews and coordinate with client stakeholders, including subject matter experts (SMEs) such as system and database administrators.
  • Request, collect, review, and analyze artifacts to support IT control testing, including security plans, SOPs, system screenshots, and system configuration settings.
  • Evaluate the design and operating effectiveness of IT controls using provided artifacts, industry-standard guidance, leading practices, and professional judgment.
  • Document IT control testing results clearly and consistently, with sufficient detail for a reviewer to reproduce the test and reach the same conclusion.
  • Summarize and communicate IT control assessment results to client stakeholders, including senior leadership.
  • Plan and execute assigned day-to-day IT control assessment activities, both independently and as part of a team.
  • Work with client personnel to understand known IT control weaknesses, identify contributing causes, and develop practical remediation plans.
  • Provide guidance to client personnel on IT control matters and respond to routine and ad hoc IT control requests.
  • Support the implementation and execution of continuous monitoring activities to help maintain the security of information systems.
  • Demonstrate working experience with the Risk Management Framework (RMF) process and NIST SP 800-53 and 800-37.
  • Create and update Security Assessment and Authorization (SA&A) artifacts such as FIPS 199, Contingency Plans (CP), Contingency Plan Tests (CPT), and System Security Plans (SSP).
  • Review ACAS vulnerability scan results, validate findings with system administrators, track remediation actions, and document vulnerability status in accordance with established procedures.
  • Apply knowledge of IT risk and controls through IT audits, IT control assessments, and IT security reviews.
  • Demonstrate working knowledge of FISMA, NIST SP 800 series, FISCAM, and other relevant federal information assurance laws, regulations, and guidance.
  • Demonstrate experience supporting FISMA, OMB Circular A-123, or similar internal control assessments.
  • Demonstrate familiarity with security frameworks and assessment approaches relevant to SOCOM systems, including DISA DCAS.
  • Demonstrate familiarity with applicable DoD STIGs/SRGs, including experience using the STIG Viewer toolset.
  • Proficiency in eMASS.
  • Proficiency in Microsoft Excel, Word, and PowerPoint.

Benefits

  • overtime
  • shift differential
  • discretionary bonus
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service