Senior Information System Security Officer

CACI International Inc.
Washington, DC, United States
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours

Tech stack

Configuration Management Cyber Security Information Security Management Systems Development Life Cycle Vulnerability Analysis

Job description

Experteer Overview In this role you will lead security and compliance for FEMA’s most sensitive systems, ensuring robust controls across classified and unclassified environments. You will act as the single point of contact for classified system matters within the Cybersecurity Division, collaborating with system owners and cyber professionals to secure mission-critical data. You will drive RMF activities, ATO decisions, and SDLC-related security work in TS/SCI contexts, contributing to national security objectives. This opportunity offers impactful work at the intersection of defense-grade security and public service, with opportunities to shape security programs and incident response across complex systems. Compensation / Benefits * Complete RMF activities for Authority to Operate (ATO) decisions * Support classified and unclassified systems through the SDLC * Participate in classified network and facility meetings related to Supply Chain Risk Management * Develop and maintain System Security Plans (SSPs) and control baselines * Create and maintain Configuration Management, Contingency, and Incident Response Plans * Conduct risk assessments, annual security assessments, and vulnerability assessments * Manage security documentation handling and classification-aware communications * Maintain incident and threat assessment programs for classified systems Tasks * U.S. Citizenship required * Active TS/SCI Clearance * BS/BA + 15 years of information security experience * One of CISSP, CISM, or CASP+ (IAT Level III qualifications) * 10+ years in information security * Experience with classified information systems and SCIFs * Expertise in RMF, FISMA, NIST, DHS 4300 Series, and classified system security requirements * Complete Standard Form 4414 Non-Disclosure Agreement before accessing TS/SCI information Key requirements * flexible time off * robust learning resources * healthcare benefits * retirement benefits * continuing education * time off benefits

Requirements

aaaaaw_ Plans (SSPs) and control baselines * Create and maintain Configuration Management, Contingency, and Incident Response Plans * Conduct risk assessments, annual security assessments, and vulnerability assessments * Manage security documentation handling and classification-aware communications * Maintain incident and threat assessment programs for classified systems Tasks * U.S. Citizenship required * Active TS/SCI Clearance * BS/BA + 15 years of information security experience * One of CISSP, CISM, or CASP+ (IAT Level III qualifications) * 10+ years in information security * Experience with classified information systems and SCIFs * Expertise in RMF, FISMA, NIST, DHS 4300 Series, and classified system security requirements * Complete Standard Form 4414 Non-Disclosure Agreement before accessing TS/SCI information Key requirements * flexible time off * robust learning resources * healthcare benefits * retirement benefits * continuing education * time off benefits

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:17 min

Embedding automated vulnerability analysis within CircleCI workflows

Milecia Mcgregor · LIVE

2:07 min

Technical components of internal developer platforms

Christian Strack · LIVE

5:51 min

Transitioning to continuous security operations and automated system hardening

Thomas Fuchs +3 · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all