Information Systems Security Officer (ISSO)

Utah State University
North Logan, UT, United States
about 2 months ago
Apply on diversityjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$94,000.0 - $160,000.0
Working hours
Regular working hours

Tech stack

Xacta Cyber Security Information Systems Identity and Access Management Information Security Management Intrusion Detection and Prevention Information Systems Security Architecture Professional Log Analysis Network Segmentation Network Protocols SAP Security Systems Architecture
+6 more
Software Vulnerability Management SARS Software Products Information Technology Splunk Servicenow Vulnerability Analysis

Job description

Security Compliance & Risk Management

  • Ensures information systems comply with Intelligence Community Directives (ICDs), CNSSI, NIST 800-53, and the Risk Management Framework (RMF) for TS/SCI systems
  • Conducts risk assessments, vulnerability management, and mitigation planning for highly classified systems
  • Performs audits of log review, reduction, and analysis using Splunk to support security monitoring and investigations
  • Leads and executes the full Risk Management Framework (RMF) lifecycle to achieve and maintain an Authorization to Operate (ATO) for TS/SCI systems

Incident Response & Continuous Monitoring

  • Oversees security operations, threat analysis, and intrusion detection in TS/SCI enclaves
  • Develops and executes incident response plans, including data spill response and containment in classified environments
  • Performs and manages Continuous Monitoring (CONMON) activities, including analysis of security posture, tracking of vulnerabilities, and reporting to support ongoing authorization
  • Executes vulnerability scanning using tenable tools (e.g., ACAS) and analyze results to identify, prioritize, and remediate system vulnerabilities

Policy Development & Documentation

  • Develops and maintains security policies, procedures, and guidelines in alignment with IC, and national-level security requirements
  • Ensures audit readiness and proper documentation of security controls, artifacts, and assessment evidence
  • Manages and maintains RMF documentation including SSPs, POA&Ms, SARs, and security control traceability

Collaboration & Leadership

  • Works closely with program managers, ISSMs, ISSEs, system administrators, and engineers to ensure secure system design and operation
  • Serves as a trusted advisor to leadership on IC cybersecurity requirements, emerging threats, and risk posture
  • Interfaces with Government stakeholders including Authorizing Officials (AOs), Security Control Assessors (SCAs), and IC oversight teams

Requirements

Space Dynamics Laboratory (SDL) is seeking a highly experienced Information Systems Security Officer (ISSO) to support and secure mission-critical systems within the intelligence community. This position requires a strong background in TS/SCI environments, and advanced cybersecurity practices supporting highly sensitive national security missions. The ideal candidate has 5+ years of experience in cybersecurity, risk management, and information system security within classified environments., * Active TS/SCI clearance

  • 5-10 years of experience in information systems security within IC or other highly classified environments
  • DoW 8570/8140 compliant - IAT Level II and IAM Level II (or higher) required at time of hire
  • Bachelor’s degree in cybersecurity, computer science, information assurance, or a related field (or equivalent experience)
  • Certifications: Security+, CySA+, GSEC, SSCP, CCSP or equivalent
  • Extensive knowledge of IC and DoW security frameworks: ICDs, CNSSI, NIST 800-53, RMF, JSIG, and SAP security controls
  • Experience with security documentation including SSPs, POA&Ms, SARs, ISAs, MOUs, and ATO packages
  • Experience supporting SCI systems, including accreditation and lifecycle management
  • Experience executing Incident Response Plans, including classified data spillage remediation
  • Hands-on experience with Continuous Monitoring (CONMON) activities and reporting
  • Experience using Tenable tools (ACAS) for vulnerability scanning and remediation tracking
  • Experience using Splunk for log analysis and security monitoring
  • Ability to produce detailed technical reports for system owners and stakeholders
  • Strong technical background in vulnerability management, system hardening, and secure architecture, * Master’s degree in cybersecurity, computer science, or a related field
  • Certifications: CISSP, CISM, CISA, CGRC, CASP+, or equivalent
  • Experience with JSIG, ICD 503, and RMF processes
  • Familiarity with Service Now (SNOW), eMASS, XACTA, and/or other IC authorization tools
  • Deep understanding of multi-enclave architectures, cross-domain solutions, and classified network segmentation
  • Experience with interconnection agreements (ISA/MOU/MOA) in IC environments
  • Ability to assess and articulate risk for non-implemented or inherited controls
  • Strong understanding of network protocols, system architectures, and secure configurations in TS/SCI environments
  • Ability to translate technical security concepts into mission-relevant risk language for leadership
  • Experience working across multi-disciplinary teams including developers, engineers, and system administrators
  • Demonstrated ability to work independently with minimal supervision in high-security environments

Benefits & conditions

  • $94,000 - $160,000
  • Salary commensurate on education and relevant experience

About the company

SDL delivers advanced multi-domain solutions to protect national security and enable scientific discovery. Our expertise in satellites, sensors and instruments, ground systems and data processing, and autonomous systems plays a critical role in missions supporting NASA and the Department of Defense. Join our team of engineers, scientists, technicians, and business professionals in our seventh decade of delivering mission success.

At SDL, we strive to uphold a culture of respect, collaboration, empowerment, and accountability. We listen with open minds, seek to understand diverse perspectives, and engage in thoughtful dialogue. We work together by sharing knowledge, involving others, and offering support. We trust and empower our team members to take ownership, act with integrity, and be accountable. Above all, we deliver on our commitments to each other and to our mission partners.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all