About The Position

SAIC has an immediate opening for a highly motivated Information System Security Officer (ISSO), classified as the IT Security Specialist, Level I level, supporting the security and compliance of information systems under a government contract. Under close direction of a manager, team leader, or more experienced specialist, the incumbent will apply basic technical knowledge in the performance of system certifications/accreditations and information security-related tasks. The ideal candidate has experience with NIST and RMF frameworks, security compliance, continuous monitoring, and vulnerability management.

Requirements

  • Experience with NIST and RMF frameworks
  • Experience with security compliance
  • Experience with continuous monitoring
  • Experience with vulnerability management

Responsibilities

  • Apply basic technical knowledge in support of system certifications, accreditations, and information security tasks under close supervision of senior staff
  • Assist in developing, documenting, reviewing, and maintaining RMF security documentation, including: System Security Plans (SSPs), Contingency Plans (ISCPs), Incident Response Plans (IRPs), Business Impact Analyses (BIAs), System Characterization Documents (SCDs), Configuration Management Plans (CMPs), Privacy Impact Analyses (PIAs), Plan of Action & Milestones (POA&Ms), Account Management Plans (AMPs), and Security Impact Analyses (SIAs)
  • Create, track, and maintain POA&Ms for multiple information systems; work with stakeholders and ISSMs to ensure accurate documentation, remediation, and communication throughout the POA&M lifecycle
  • Assist in conducting risk analysis of planned and installed information systems to identify vulnerabilities and threats; recommend mitigation actions
  • Assist in conducting vulnerability scanning of information systems; compile compliance reports based on scan findings; validate scan accuracy and identify false positive results
  • Assist in the development of security contingency plans, disaster recovery procedures, and delivery of incident response training
  • Gather artifacts and support Continuous Monitoring Assessments, Security Assessments, and internal/external security audits
  • Provide cybersecurity guidance to project teams and stakeholders through system development, configuration, and maintenance
  • Prepare and present status reports on findings, POA&M progress, and RMF activities to management and stakeholders
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service