ISSO

BlueWater Federal Solutions
Philadelphia, PA, United States
2 months ago
Apply on diversityjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours

Tech stack

Cyber Security System Configuration Information Security Management Information Systems Security Architecture Professional Security Information and Event Management Information Technology

Job description

BlueWater Federal is looking for an ISSO to prepare, update, and maintain A&A documentation in eMASS, including POA&Ms, Security Plans, and Continuous Monitoring artifacts to ensure systems remain in compliance with DoDI 8510.01 and Navy cybersecurity policy at the Naval Surface Warfare Center (NSWC), Philadelphia, PA Responsibilities

  • Collaborate with ISSMs and Navy Qualified Validators to support control implementation, validation, and risk assessments for Navy IT systems throughout their lifecycle.
  • Track and remediate vulnerabilities using tools such as VRAM; ensure timely resolution or risk acceptance is documented and approved.
  • Execute the System Level Continuous Monitoring Strategy by reviewing outputs from tools like ACAS and SIEM, updating eMASS records, and escalating concerns as needed.
  • Maintain awareness of changes to DISA STIGs, NIST guidelines, and Navy policies; ensure system configurations and documentation are kept current and reflect evolving requirements.

Requirements

  • Bachelor’s degree in computer science, information technology, communications systems management, or an equivalent science, technology, engineering & mathematics (STEM) degree from an accredited college or university
  • 6+ years of experience coordinating and enacting required security changes, within various levels of an organization, ensuring compliance with published policies; conducting cybersecurity vulnerability and threat analysis; and supporting cyber incident-response by isolating potentially effected assets, initial investigation and data collection, through status updates/reporting.
  • Must have an active Secret clearance
  • Must have one of the following IAM-II certifications
  • Certified Authorization Professional (CAP)
  • CompTIA Advanced Security Practitioner (Continuing Education) (CASP+ CE
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Security Professional (CISSP) (or Associate)
  • GIAC Security Leadership Certification (GSLC)
  • Certified Chief Information Security Officer (CCISO)
  • HealthCare Information Security and Privacy Practitioner (HCISPP)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:38 min

Managing and versioning system prompts as YAML files

Kevin Lewis Kevin Lewis +1 · World Congress 2025

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:46 min

Missing equipment retrieval processes for departing employees

Jasmin Azemović Jasmin Azemović · World Congress 2026 Europe

2:38 min

Restricting operational profiles using precise system instruction configurations

Videos

See all

Related articles

See all