Information System Security Officer (ISSO)

Dobbs Defense Solutions, LLC.
Washington, DC, United States
30 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Security Management Scrum Methodology Systems Development Life Cycle Security Content Automation Protocol Software Vulnerability Management Information Technology Nessus Splunk

Job description

Dobbs Defense Solutions is seeking an experienced Information System Security Officer (ISSO) to support a large-scale Department of Defense (DoD) enterprise IT program at Joint Base Anacostia-Bolling (JBAB). The ISSO will work closely with engineering and cybersecurity teams to implement, monitor, and maintain security controls in accordance with the Risk Management Framework (RMF), ensuring systems remain compliant with federal and DoD cybersecurity requirements throughout the system lifecycle., * Develop, maintain, and update RMF documentation and security artifacts to support system authorization and compliance efforts.

  • Collaborate with Information System Security Engineers (ISSEs) and technical teams to implement and validate security controls throughout the system development lifecycle.
  • Monitor the security posture of assigned systems and ensure compliance with DoD security policies, standards, and regulations.
  • Conduct security assessments, vulnerability reviews, and audits using tools such as ACAS (Nessus), SCAP, and STIGs while recommending and tracking remediation activities.
  • Support the security authorization (ATO) process by maintaining security documentation and assisting with accreditation activities.
  • Provide cybersecurity guidance, risk analysis, and continuous monitoring support to strengthen the organization’s overall security posture.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field; six (6) years of relevant cybersecurity experience may be substituted for a degree.
  • Minimum of six (6) years of experience supporting cybersecurity or Information Assurance programs, including demonstrated ISSO experience within large-scale enterprise IT environments.
  • DoD 8570.01-M IAT Level II certification (Security+ CE, CAP, or equivalent) required.
  • Experience with RMF, ACAS (Nessus), Splunk, STIGs, SCAP tools, and vulnerability management processes.
  • Strong analytical, communication, collaboration, and organizational skills; experience with Scrum methodologies preferred.

Benefits & conditions

Pay range information will be disclosed consistent with applicable state and local pay transparency laws once available. For this position, the anticipated salary range is dependent on experience, qualifications, certifications, and overall fit for the role.

About the company

At Dobbs Defense, we deliver mission-centric IT, Cyber, and data analytics solutions for our government and commercial clients through the convergence of automation, innovation, training, and education. Delivering high-quality IT, cybersecurity, and data analytics solutions through proven and innovative methods is our vision.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

Videos

See all

Related articles

See all