ISSO

Cdit Llc
Scott Air Force Base, IL, United States
about 1 month ago

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Cyber Security Information Systems Comptia Pentest+ CE Software Engineering Information Technology

Job description

  • Own the day-to-day security authorization posture of assigned DoD information systems
  • Work within a well-resourced team with dedicated engineering, operations, and architecture support
  • Develop expertise in modern RMF tooling including eMASS and eMASSer automation
  • Directly support mission continuity by managing ATO packages and continuous monitoring programs
  • Grow into a senior GRC role with clear advancement pathways Responsibilities

  • Develop, maintain, and update System Security Plans (SSPs) for assigned systems
  • Manage POA&Ms from identification through remediation and closure
  • Compile and submit Authorization to Operate (ATO) packages
  • Conduct continuous monitoring activities per established strategy
  • Utilize eMASS for GRC management and RMF workflow tracking
  • Coordinate with ISSEs and SecOps to validate control implementations
  • Develop Security Assessment Plans (SAPs) and support SAR coordination
  • Draft supply chain risk management plans
  • Support the Cybersecurity Architect with RMF strategic planning

Requirements

Required:

  • Active Secret or TS clearance
  • 3-5 years of RMF/ATO experience within DoD or federal environments
  • Hands-on experience with eMASS
  • Working knowledge of NIST SP 800-53r5 and DoD RMF processes
  • Demonstrated ability to independently author SSPs and manage POA&Ms Required Certification:

  • DoD 8140.03M DCWF Basic tier certification - CEH Desired Certification:

  • DoD 8140.03M DCWF Intermediate tier certification - one of: CEH(P), RCCE Level 1, Cloud+, CPTE, FITSP-A, GCED, GCIH, GCSA, GICSP, GSEC, PenTest+, or Security+ Required Education:

  • DoD 8140 Interim Education Options Desired Education:

  • Bachelor’s degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering Desired:

  • Experience with eMASSer or similar RMF automation tooling
  • Exposure to cloud-hosted or hybrid system authorization boundaries
  • Familiarity with the DoD RMF Knowledge Service

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · WWC Europe 2026

1:55 min

Executing secure deployments with verified compliance and data residency

Alex Laubscher Alex Laubscher · WWC 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:59 min

Why existing security and device management tools fail

Marcus Wermuth Marcus Wermuth · WWC Europe 2026

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · WWC 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all