Information System Security Officer (ISSO)

IBM
Washington, DC, United States
17 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Security Information Security Management Software Vulnerability Management Cloud Platform System Plan of Action and Milestones Vulnerability Analysis

Job description

As the ISSO, you will complete the planning, execution, and maintenance of system accreditation and authorization activities to achieve and sustain an Authority to Operate (ATO) in accordance with NIST RMF, DoD, IC and agency specific requirements.

Serve as the primary security lead, responsible for activities for the security posture of the system to include working with the software and system architects to ensure the design meets security controls. Responsible for coordinating across cross-functional teams to develop and manage security documentation and perform assessment activities. Oversee risk management and continuous monitoring and ensuring implemented security controls meet compliance requirements.

Requirements

Required technical and professional expertise

  • Demonstrated experience leading one or more systems through the entire Risk Management Framework (RMF) Authorization to Operate (ATO) process.
  • Must be a self-starter comfortable with leading and executing a high-priority, high-visibiilty task
  • Requires the ability to work independently, possess strong technical writing, communication, project management and problem-solving skills to successfully deliver authorization objectives
  • Must possess strong knowledge of NIST RMF, NIST SP 800-53 Rev. 5, DoD & IC authorization processes
  • Must possess Security+ certification
  • Must have experience with risk management, security control implementation, vulnerability management, continuous monitoring, and POA&M management
  • Must possess a TS/SCI CI Poly security clearance on day 1

Preferred technical and professional experience

  • Experience with National Reconnaissance Office (NRO) accreditation and authorization processes and procedures
  • 2+ years of experience supporting DoD IL4/IL5/IL6/IL7, or IC (ICD 503) authorization efforts.
  • 2+ years of experience supporting cloud environments (e.g., AWS GovCloud, Azure Government) and cloud security principles.
  • 2+ years of experience supporting independent security assessments (e.g., 3PAO, FedRAMP, DoD, or internal assessments).
  • 2+ years of experience leading cross-functional security initiatives, with CISSP and/or PMP certifications highly desirable

About the company

A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:27 min

Exploring Rust for cloud and web services

Patrick Koss Patrick Koss · World Congress 2024

3:49 min

Container hosting options available on Amazon Web Services

Federico Fregosi · World Congress 2022

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

1:04 min

Centralizing automotive software development across brand portfolios

Torben Schramme · World Congress 2021

1:13 min

Structuring a comprehensive corporate security organization

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

Videos

See all

Related articles

See all