Information Systems Security Officer (SME)

Everforth Ecs
Washington, DC, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$160,000.0 - $175,000.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Software Vulnerability Management

Job description

We are seeking a cleared Information Systems Security Officer SME to lead cybersecurity compliance, authorization, continuous monitoring, audit support, risk management, and security documentation activities for classified and sensitive systems supporting law enforcement, national security, and criminal justice missions within the National Security Business Unit. The ISSO SME will serve as a senior cybersecurity advisor responsible for maintaining security posture, supporting authorization activities, managing security documentation, advising technical teams on risk, supporting audits, and ensuring systems comply with applicable federal, agency, and mission security requirements.

The Information Systems Security Officer SME will lead cybersecurity compliance, authorization, continuous monitoring, audit support, risk management, and security documentation activities for classified and sensitive systems supporting law enforcement, national security, and criminal justice missions. This role ensures systems maintain a strong security posture and comply with applicable federal, agency, and mission security requirements.

The ISSO SME will also support National Security Business Unit growth by identifying cybersecurity service expansion opportunities, compliance improvement initiatives, continuous authorization enhancements, risk-reduction strategies, audit support improvements, and security modernization needs., * Lead cybersecurity compliance, authorization, risk management, and continuous monitoring activities.

  • Maintain security documentation, control implementation records, POA&Ms, security plans, policies, and procedures.
  • Conduct or support control assessments, audit readiness, vulnerability remediation, and security impact reviews.
  • Review security impacts of new applications, devices, system changes, and operational updates.
  • Coordinate incident response planning, contingency planning, annual testing, and cybersecurity reporting.
  • Advise system owners, engineers, developers, administrators, and operations teams on risk-based security decisions.
  • Mentor ISSOs, security engineers, administrators, developers, and operations staff on compliance and security workflows.
  • Establish repeatable templates, dashboards, processes, and documentation practices.
  • Identify cybersecurity modernization, compliance improvement, continuous authorization, and service expansion opportunities.

Salary Range: $160,000-$175,000

Requirements

  • Active Top Secret clearance with SCI eligibility; TS/SCI preferred.
  • 10+ years of cybersecurity, ISSO, authorization, compliance, risk management, or security engineering experience.
  • Experience with federal cybersecurity frameworks, security control assessments, POA&Ms, audits, vulnerability management, and continuous monitoring.
  • Experience supporting security documentation, authorization packages, incident response plans, and security policies.
  • Strong understanding of secure system operations, risk management, and security compliance.
  • Ability to communicate cybersecurity risks and requirements to technical teams, mission stakeholders, and leadership.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:58 min

Prioritizing security over rapid feature delivery

Jakub Andrzejewski · World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:25 min

The growing power and security responsibility of developers

Tino Sokic · World Congress 2023

Videos

See all

Related articles

See all