Information Systems Security Officer (ISSO)

CACI
Stuttgart, Germany
21 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate
Compensation
€ 174K

Job location

Stuttgart, Germany

Tech stack

Microsoft Word
Microsoft Excel
Computer Security
Computer Engineering
Identity and Access Management
Microsoft Office
Network Architecture
Network Diagrams
Microsoft PowerPoint
Zero Trust Network Access
SharePoint
Information Technology
Cyber Warfare
Vulnerability Analysis

Job description

Are you interested in continuing your career in Europe in a mission-focused environment? CACI has an excellent opportunity for an experienced, self-directed Information Systems Security Officer supporting U.S. Africa Command (AFRICOM) operations in Stuttgart, Germany. This position is OCONUS and requires on-site presence.

This role focuses on governance, risk, and compliance (GRC) activities supporting Department of War (DoW) cybersecurity programs and Risk Management Framework (RMF) processes. The Information Systems Security Officer serves as a key contributor to cybersecurity assessments, authorization activities, compliance tracking, and security documentation across multiple enterprise systems.

Responsibilities:

Execute and manage DoD Risk Management Framework (RMF) activities in accordance with DoDI 8510.01 and applicable cybersecurity policy.

Track organizational cybersecurity compliance and ensure timely remediation of security findings.

Support Assessment & Authorization (A&A) activities, including preparation for:

  • Cyber Operational Readiness Assessments (CORA)

  • Staff Assistance Visits (SAV)

  • Vulnerability assessments and inspections

  • Maintain and manage cybersecurity artifacts within eMASS.

Conduct risk assessments, analyze system security posture, and provide risk recommendations to the Authorizing Official.

Develop and maintain cybersecurity documentation including:

  • System Security Plans (SSP)

  • POA&Ms

  • Hardware/Software lists

  • Network Diagrams

  • Ports, Protocols, and Services Management (PPSM)

  • SOPs, TTPs, and compliance report

  • Test result artifacts

  • Review network architecture diagrams and system designs for cybersecurity compliance.

Coordinate with Defensive Cyber Operations (DCO) and IT teams to support incident response and continuous monitoring.

  • Assess and authorize the use of hardware and software across enterprise environments.

Interface with government stakeholders, system owners, ISSMs, and engineers to ensure compliance with cybersecurity requirements.

Requirements

Do you have experience in Microsoft Word?, Do you have a Bachelor's degree?, Required

  • Active Top Secret (TS) SCI clearance
  • Education: B.S. in Information Technology/Systems, Computer Science, Computer

Engineering, or Electrical Engineering.

  • Experience implementing and managing DoD RMF for classified and unclassified systems.
  • Working knowledge of:
  • NIST SP 800-53 Rev. 5
  • eMASS
  • POA&M management
  • ATO / Authorization processes
  • Strong proficiency in Microsoft Office (Word, Excel, PowerPoint).
  • At least one active Department of Defense 8140/ DCWF IAT/IAM Level III certification (e.g.,

CASP+CE, CCNP Security, CISA, CISSP, GCED, GCIH, CCSP, CISM, GSLC, CCISO).

  • Understanding of system controls and their impact on system security.
  • Minimum of 5 years monitoring system NIST compliance using workflow

tools.

  • Minimum of 3 years using eMASS for managing system/ enclave authorizations.
  • Minimum of 3 years transitioning to and operating within RMF in DoD

applications.

    • Experience in initial risk assessment and assisting Authorizing Official

with risk determination and acceptance.

  • Ability to communicate effectively with technical teams and senior government leadership.

Desired

  • Experience supporting AFRICOM, JFHQ-DODIN, or Combatant Command environments.

Familiarity with:

  • Zero Trust Architecture (DoD ZT Strategy)

  • Experience with:

  • Elastic

  • STIG Manager

  • ACAS

  • Prior ISSO, ISSM, ISSE, or Cyber GRC role experience.

Benefits & conditions

Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is: $82,700 - 173,900 USD

About the company

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation. An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.

Apply for this position