Information System Security Office - ISSO
Role details
Job location
Tech stack
Job description
-
Ensures the security of information systems by implementing and managing security protocols, conducting risk assessments, and maintaining compliance with Air Force and Department of War (DoW) regulations.
-
Key duties include developing and enforcing security policies, preparing authorization packages for systems, coordinating incident response, and performing continuous monitoring to protect information.
-
This role is critical for maintaining confidentiality, integrity, and availability of military information systems,
-
Maintain the appropriate operational security posture for assigned IT systems and implement Air Force cybersecurity policies and procedures.
-
Support the development and implementation of security policies, procedures, and documentation to ensure compliance with DoD standards like NIST and the Risk Management Framework (RMF).
-
Prepare, review, and maintain authorization packages for information systems, coordinating with the Information System Security Manager (ISSM) and Authorizing Official (AO).
-
Conduct risk and vulnerability assessments to identify weaknesses and implement remediation strategies.
-
Manage and conduct continuous monitoring of security controls and system recovery processes to ensure security features are functioning correctly.
-
Act as a point of contact for security-related issues, coordinate incident response efforts, and report findings.
-
Ensure all security-related documentation is current, accessible, and prepare security reports.
-
Provide expert input on cybersecurity requirements during system design and changes and evaluate the security impact of system modifications.
-
Work closely with system administrators, government managers, and other stakeholders to maintain a strong security posture
Requirements
-
A DoD 8570 IAT Level II certification (such as Security+, GSEC, or SSCP) is typically required.
-
Knowledge of system hardening, security tools, and experience with various operating systems (Windows, Linux) is often necessary
-
This role requires strong expertise in DoD and NIST security policies, experience with different levels of classification,
-
Active TS//SCI Clearance.
-
Strong understanding of RMF, DoD and NIST policies, DISA STIGs, system audit principles, and network infrastructure is crucial.
Preferred Qualifications:
o Experience with
o Cybersecurity authority for assigned systems or enclaves
o Coordinate with network, cyber defense, and system engineering teams
o 5+ years of experience in cybersecurity or information assurance
o Experience serving as an ISSO
o Experience supporting classified systems
Benefits & conditions
-
Health Benefits; Medical, Dental, Vision
-
Retirement Plan Match
-
Competitive Annual Leave Package
-
Education Reimbursement
-
Basic and Voluntary Life Insurance