Senior Information System Security Officer (ISSO)

Odyssey Systems Consulting Group
Ogden, UT, United States
13 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Testing (Software) Configuration Management CompTIA Security+ Cyber Security Information Systems Information Security Management Network Planning and Design System Availability SC Clearance Information Technology Vulnerability Analysis

Job description

Odyssey Systems has an exciting opportunity for a Senior Information System Security Officer (ISSO) to support the Aerospace Dominance Enabler Division (AFLCMC/C3BM)at Hill AFB in Ogden Utah.

This role supports the protection, accreditation, and ongoing security posture of Air Force information systems. In this role, you will work closely with the Information System Security Manager (ISSM) to ensure systems meet all DoD and Air Force cybersecurity requirements, align with the Risk Management Framework (RMF), and maintain the confidentiality, integrity, and availability of critical networks and data.

You will conduct risk assessments, support accreditation activities, evaluate system security controls, and help enforce policies, configurations, and user access standards. Additional responsibilities include monitoring for vulnerabilities, assisting with incident response actions, maintaining compliance artifacts, and supporting secure system design efforts., Ensure all systems and applications meet DoD and Air Force cybersecurity requirements as directed by the Information System Security Manager (ISSM).

  • Protect the confidentiality, integrity, and availability of systems, networks, and data by developing, implementing, and maintaining cybersecurity programs, policies, procedures, and security tools.
  • Support all Risk Management Framework (RMF) authorization and accreditation activities, including configuration, artifact creation, documentation, and compliance reviews.
  • Assist the ISSM in performing risk and vulnerability assessments on planned and operational information systems, identifying security gaps and recommending mitigation actions.
  • Conduct security evaluations, audits, and reviews; support development of system contingency and disaster recovery plans; and promote user compliance with cybersecurity policies and training requirements.
  • Participate in system and network design efforts to ensure appropriate security controls and RMF activities are incorporated from the start.
  • Assist in the collection, analysis, and preservation of digital evidence related to cybersecurity incidents or policy violations.
  • Maintain the operational security posture of assigned IT systems, monitor situational awareness, and implement actions to improve or restore cybersecurity resilience.
  • Enforce Air Force cybersecurity policies, procedures, configuration guidelines (e.g., STIGs/SRGs), and change management processes.
  • Maintain and audit authorized user access documentation and ensure users meet clearance, needtoknow, and annual training requirements.
  • Report security incidents or vulnerabilities to the ISSM and support implementation of corrective or protective measures.
  • Initiate and track exceptions, deviations, or waivers to cybersecurity requirements as needed.

Contingent Upon Contract Award

Requirements

This position requires strong attention to detail, a commitment to cybersecurity excellence, and the ability to collaborate across technical and leadership teams., Must be a U.S Citizen

Clearnace: Must have and be able to maintain an Active Secret Clearance.

Certifications: IAT Level II (Security+, GSEC, CCNA-Security, Certified Systems Security Professional

Preferred Qualifications:

Education: Bachelor’s Degree in a related field and 12 years of experience in the respective technical/professional discipline being performed, five of which must be in the DoD OR

  • 15 years of directly related experience with proper certifications as described in the PWS labor category performance requirements, eight of which must be in the DoD

Certifications: CISSP, or equivalent certification

  • Must maintain required cybersecurity certifications in accordance with AFMAN 171303.

Technical Skills

  • Experience supporting Risk Management Framework (RMF) activities and cybersecurity compliance
  • Experience using eMASS for authorization packages, artifact management, and accreditation support
  • Vulnerability assessment and risk mitigation analysis
  • STIG/SRG implementation and configuration management
  • Security audits, assessments, and incident response support
  • Information system security and operational security posture management
  • Secure system and network design support in DoD environments

Interpersonal Skills:

  • Ability to develop innovative approaches to complex test problems
  • Strong attention to quality, adequacy, and completeness of test results and conclusions
  • Ability to deliver thorough, timely, and efficient task execution
  • Ability to provide clear analysis and recommendations to program test leadership

About the company

Odyssey is a world-class technical, engineering, and integration company serving the warfighting ecosystem with airborne integration, ISR, C2, and warfighter readiness capabilities. Odyssey meets the military’s operational needs by integrating layered defense systems from equipment, technology, and services to data, information, and business operations. We streamline defense acquisition and sustainment, engineering the technical battlefield with domain-specific proficiency to ensure lethality. Odyssey is dedicated to excellent contract execution, peak organizational performance, and fostering a workplace built on employee care.

Odyssey is proud to live out our core values of commitment, ambition, and respect in our work and communities through OdysseyCares, a philanthropic group focused on giving back through direct donations, an employer match program, and volunteering events.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

5:51 min

Transitioning to continuous security operations and automated system hardening

Thomas Fuchs +3 · LIVE

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · WWC 2023

Videos

See all

Related articles

See all