Information Systems Security Officer

JOSEPH & ASSOCIATES LLC
McLean, VA, United States
about 2 months ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Systems Development Life Cycle Software Vulnerability Management Information Technology

Job description

This candidate will provide enterprise cybersecurity, risk management, and compliance support for IHSC Health IT systems and initiatives. This position serves as a key advisor in establishing and maintaining Authority to Operate (ATO) packages for multiple systems while helping ensure compliance with DHS, ICE, and federal cybersecurity requirements. The Information Systems Security Officer (ISSO) supports security governance, authorization activities, risk assessments, and continuous monitoring efforts across the Health IT environment. This role functions in an advisory and oversight capacity, providing guidance, coordination, and compliance validation without performing system administration, configuration, implementation, or operational control activities., * Assist in the planning, execution, and oversight of cybersecurity risk management activities, including system security planning and security control assessments.

  • Coordinate and support ATO efforts, including the development, review, tracking, and maintenance of authorization documentation and artifacts.
  • Monitor compliance activities and support vulnerability management, remediation tracking, and continuous monitoring initiatives.
  • Provide cybersecurity recommendations and validation support during system development, integration, modernization, and enhancement efforts.
  • Work closely with program managers, system owners, technical teams, and stakeholders to ensure security requirements are effectively addressed.
  • Support incident response coordination, security reporting, and risk communication activities.
  • Promote compliance with applicable federal cybersecurity laws, regulations, and frameworks, including NIST, FISMA, DHS, and ICE security requirements.
  • Maintain security-related documentation, including risk registers, Plans of Action and Milestones (POA&Ms), audit evidence, and assessment records.
  • Provide leadership with analysis of cybersecurity risks, emerging threats, and recommended mitigation strategies., All cybersecurity support provided under this position is performed in a compliance, advisory, oversight, and validation capacity. The ISSO works collaboratively with Government system owners, program managers, and authorized vendors to support security objectives while ensuring that responsibility for system administration, configuration, and operational control remains with designated Government personnel and authorized service providers.

Requirements

  • Bachelors Degree in Information Security or related degree
  • Working knowledge of federal information security regulations, cybersecurity frameworks, and compliance requirements.
  • Experience supporting security and compliance initiatives within federal government or highly regulated IT environments.
  • Strong understanding of risk management frameworks, security authorization processes, and continuous monitoring programs.
  • Ability to communicate technical cybersecurity concepts clearly to both technical and non-technical audiences.
  • Excellent organizational, coordination, and technical documentation skills.
  • Minimum of three (3) to five (5) years of experience supporting cybersecurity, information assurance, or IT security programs.
  • Professional cybersecurity certification such as CISSP, CISM, CAP, Security+, or an equivalent credential is preferred.
  • Ability to obtain a DHS Public Trust

About the company

Joseph & Associates, LLC is a premier consulting firm aimed at making our government operate at its best. Based in the D.C. Metropolitan area, we provide management consulting and IT professional services to the federal government. Our consultants have 15+ years of experience supporting federal civilian agencies, bringing a unique perspective to supporting the mission of government. www.josassoc.com

You must create an Indeed account before continuing to the company website to apply

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:44 min

Starting with the software development life cycle

Seppe Housen Seppe Housen · Europe 2026 Virtual

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:14 min

Preparing platform infrastructure for agentic software delivery models

May Walter May Walter · World Congress 2026 Europe

2:46 min

Missing equipment retrieval processes for departing employees

Jasmin Azemović Jasmin Azemović · World Congress 2026 Europe

Videos

See all

Related articles

See all