Senior Information System Security Officer (ISSO)

ERP International
Laurel, MD, United States
23 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$145,000.0 - $185,000.0
Working hours
Regular working hours
Job source

Tech stack

Cloud Computing Security Cyber Security Information Systems Information Security Management Zero Trust Network Access Software Vulnerability Management Enterprise Software Applications SARS Software Products HybridCloud Information Technology Security Orchestration, Automation & Response Plan of Action and Milestones

Job description

ERP International, LLC (www.erpinternational.com) is currently seeking a Full Time Information System Security Officer (ISSO) to support cybersecurity, privacy, risk management, and compliance initiatives for large-scale federal information systems and enterprise technology environments. Qualified candidates are urged to apply to learn more about this great opportunity! The selected candidate will serve as a trusted cybersecurity advisor responsible for supporting the security authorization lifecycle, ensuring compliance with federal security requirements, conducting risk assessments, supporting continuous monitoring activities, and collaborating with technical and business stakeholders to strengthen organizational security posture. This position is ideal for professionals with experience supporting federal civilian agencies, healthcare organizations, or other highly regulated environments that require rigorous security, privacy, and compliance oversight., Security Authorization & Compliance

  • Support the implementation and execution of the NIST Risk Management Framework (RMF).
  • Develop, review, and maintain security authorization documentation including: *

  • System Security Plans (SSPs)
  • Security Assessment Reports (SARs)
  • Plans of Action and Milestones (POA&Ms)
  • Contingency Plans
  • Security and privacy supporting artifacts
  • Support system authorization, reauthorization, and continuous authorization activities.
  • Ensure compliance with applicable federal cybersecurity and privacy requirements.

Risk Management & Continuous Monitoring

  • Perform cybersecurity risk assessments and control analyses.
  • Monitor security posture through continuous monitoring activities.
  • Track vulnerabilities, remediation activities, and corrective action plans.
  • Support security reporting and risk communication activities.
  • Identify control deficiencies and recommend mitigation strategies.

Governance & Stakeholder Engagement

  • Participate in security governance forums and technical reviews.
  • Coordinate with system owners, engineers, developers, operations teams, and security personnel.
  • Provide cybersecurity guidance to government and contractor stakeholders.
  • Support audit readiness, compliance reviews, and independent assessments.
  • Develop executive briefings, status reports, and cybersecurity metrics.

Security Operations Support

  • Assist with incident response coordination and post-incident reviews.
  • Support security control testing and validation efforts.
  • Evaluate proposed system changes for cybersecurity impacts.
  • Participate in contingency planning and continuity activities.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, Engineering, or related field.
  • 5+ years of cybersecurity experience supporting federal, healthcare, defense, or highly regulated environments.
  • 3+ years serving as an ISSO, Information Security Specialist, Security Analyst, Security Engineer, or similar role.
  • Experience supporting NIST Risk Management Framework (RMF) activities.
  • Experience with: *

  • NIST SP 800-53
  • NIST SP 800-37
  • FISMA compliance
  • Continuous Monitoring
  • Security Control Assessments
  • POA&M Management
  • Experience developing security documentation and compliance artifacts.
  • Strong written and verbal communication skills., * Experience supporting enterprise cybersecurity programs.
  • Experience working in cloud or hybrid-cloud environments.
  • Experience supporting audit readiness activities.
  • Experience working with security automation and vulnerability management platforms.
  • Experience supporting Zero Trust initiatives.
  • Experience supporting large-scale digital modernization efforts.

Preferred Certifications One or more of the following:

  • CISSP
  • CGRC (formerly CAP)
  • CISM
  • CRISC
  • Security+
  • CEH
  • GSEC
  • GSLC

Desired Skills

  • Cybersecurity Governance
  • Risk Management
  • Continuous Monitoring
  • Vulnerability Management
  • Security Assessments
  • Compliance Monitoring
  • Security Documentation
  • Executive Reporting
  • Audit Readiness
  • Incident Response
  • Cloud Security
  • Security Architecture
  • Privacy Compliance

Clearance Requirements:

  • Must be able to obtain a government publc trust Clearance/background check

Benefits & conditions

Pulled from the full job description

  • Health insurance
  • Vision insurance
  • Dental insurance, * Competitive Salaries & Benefits to include Health, Dental, Vision and Retirement!
  • Health Advocate & Concierge Services!
  • Unlimited Job- Related Training & Development!
  • Employee Recognition & Incentive Programs!
  • Employee Appreciation & Company Sponsored Events!
  • Opportunity to work with leading edge technology!
  • Community Outreach & Charity Work!

Connect With Us! Apply online today and discover more about this exceptional employment opportunity. www.erpinternational.com

ERP is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment on the basis of race, color, sex, religion, national origin, veteran status, disability status, age, or any other characteristic protected by federal, state, or local law.

ERP International is committed to providing veteran employment opportunities to our service men and women. Pay Range: $145,000 - $185,000 The salary range for this position is determined based on a variety of factors, including but not limited to, experience, qualifications, skill level, and location. The final salary offer will fall within this range and will be commensurate with the candidate’s background and the specific demands of the role.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · World Congress 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all