Information Systems Security Officer

Mantech International Corporation
Stafford, VA, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Systems System Configuration Systems Development Life Cycle Security Content Automation Protocol Information Security Management System Information Technology Vulnerability Analysis

Job description

MANTECH is seeking a motivated, customer-oriented Information Systems Security Officer (ISSO) to help support our current Marine Corps Systems Command Contract in Stafford, VA . The successful candidate will provide cybersecurity information assurance support for Marine Corps information, intelligence, and cybersecurity programs.

Responsibilities include but are not limited to:

  • Support and assist in the development of Risk Management Framework (RMF) security authorization packages based on current doctrine.

  • Assist government programs with generating and maintaining security documentation such as System Security Plans, Backup and Recovery Plans, Contingency Plans, and System Security Plan of Action and Milestones (POA&Ms) to ensure compliance with government security policies and procedures.

  • Perform vulnerability/risk analyses of assigned information systems during all phases of the System Development Life Cycle; analyze vulnerability scan results / DISA STIGs, and generate and maintain system security POA&Ms.

  • Interpret cybersecurity requirements into technical solutions and analyze system configurations to determine, maintain, and improve security posture.

  • Recommend proper system configuration and administration control procedures to enhance system security, performance, and to ensure assigned Marine Corps information systems are compliant with applicable laws and policies and meet cybersecurity requirements outlined in the Defense Acquisition System guidance as well as all applicable Department of Defense (DoD), Department of the Navy (DoN), and Marine Corps cybersecurity directives and instructions.

  • Provide cybersecurity support for information systems to address policymaking, programmatic and technical assistance, and all aspects of planning, documentation, engineering, and operating in secure environments.

  • Assist with the generation of network/system diagrams to depict ports, protocols, and boundaries; update Ports, Protocols, and Services Management Registry as required.

Requirements

  • Bachelor’s Degree and at least 5 years of experience performing ISSO duties in the DoD. Additional 2 years of experience may be substituted in lieu of degree.

  • DoD 8140 compliance (e.g., Security+ certification)

  • Experience working with RMF, NIST, and other federal guidelines.

  • Experience utilizing assessment tools (e.g., ACAS, SCAP, HBSS) and RMF process tools (e.g., MCCAST, eMASS, eArcher, etc.).

  • Knowledge of information security systems and applications for DoD projects

  • Security Testing and Evaluation Experience.

Preferred Qualifications:

  • Marine Corps experience

  • DoD Information Technology Portfolio Repository, Department of the Navy experience preferred

  • Knowledge of DoDI 8510.01; NIST 800 series publications; Intelligence Community Directive (ICD) 503; DoD Intelligence Information System (DoDIIS)-Joint Security Implementation Guide (DJSIG); Intelligence Community Information Technology Systems Security Risk Management; emerging cybersecurity policies; and all other policies, orders, and directives pertaining to the role.

Clearance Required: Must have a current/active DoD Top Secret/SCI Clearance

Physical Requirements: Sedentary Work.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · WWC Europe 2026

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:38 min

Managing and versioning system prompts as YAML files

Kevin Lewis Kevin Lewis +1 · WWC 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · WWC 2025

Videos

See all

Related articles

See all