Information System Security Officer (ISSO) - RMF/STIG Support
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Object CTalk Inc. is seeking an experienced Information System Security Officer (ISSO) to support a mission-critical Department of Defense (DoD) customer in Arlington, Virginia.
IMPORTANT SECURITY REQUIREMENT: This position requires a current, active TS/SCI U.S. Government security clearance. Candidates who do not currently possess the required active clearance cannot be considered for this position.
The successful candidate will provide cybersecurity and information assurance support throughout the DoD Risk Management Framework (RMF) lifecycle. Responsibilities include continuous monitoring, Security Impact Assessments (SIA), vulnerability management, DISA STIG compliance, POA&M management, security documentation, and authorization activities., Support the DoD Risk Management Framework (RMF) lifecycle for assigned information systems.
Perform Security Impact Assessments (SIA) and support continuous monitoring activities.
Execute, review, and validate DISA STIG scan results and manually validate applicable STIG/SRG checklists.
Analyze ACAS/Nessus vulnerability scan results and identify security findings requiring remediation or mitigation.
Coordinate with System Owners, system administrators, engineers, and technical teams to remediate cybersecurity vulnerabilities.
Develop, maintain, and track Plans of Action & Milestones (POA&Ms).
Track remediation activities through Remedy tickets and provide regular status updates.
Complete monthly STIG compliance reporting and quarterly STIG/SRG checklist validations.
Support Authority to Operate (ATO) activities.
Maintain security documentation and authorization artifacts within eMASS.
Apply NIST SP 800-53 security controls and applicable DoD cybersecurity policies and guidance.
Maintain accurate hardware and software inventories.
Develop and maintain cybersecurity Standard Operating Procedures (SOPs) and Work Instructions (WIs).
Provide cybersecurity recommendations to System Owners and technical stakeholders.
Prepare management reports and communicate system security posture, vulnerabilities, remediation status, and cybersecurity risks to stakeholders.
Requirements
The ideal candidate will have hands-on experience working in DoD environments with RMF, DISA STIGs, eMASS, ACAS/Nessus, NIST SP 800-53 security controls, vulnerability remediation, and POA&M management., Current, active TS/SCI U.S. Government security clearance
Bachelor’s degree; relevant experience may be substituted for education where permitted by customer/contract requirements
6+ years of relevant cybersecurity, information assurance, or information systems security experience
Hands-on experience supporting DoD Risk Management Framework (RMF)
Experience implementing, reviewing, and/or validating DISA STIGs
Experience with ACAS and/or Nessus vulnerability scanning and remediation
Experience with eMASS
Experience developing and managing POA&Ms
Experience supporting continuous monitoring
Knowledge of NIST SP 800-53 security controls
Experience developing and maintaining cybersecurity/security authorization documentation
Experience coordinating vulnerability remediation with System Owners and technical teams
Strong written and verbal communication skills
Certification Requirement
Candidate must currently possess at least one applicable cybersecurity certification required for the position, such as
Benefits & conditions
Pulled from the full job description
- Referral program
- Professional development assistance
- 401(k)
- Health insurance
- Paid time off
- Vision insurance
- Health savings account, Salary Range: $120,000-$160,000
Actual compensation will be determined based on the candidate’s relevant experience, technical qualifications, certifications, clearance status, and alignment with customer requirements.
Why Join Object CTalk Inc.?
At Object CTalk Inc., you will have the opportunity to support mission-critical programs that strengthen U.S. Government operations.
We value technical excellence, collaboration, innovation, and continuous professional growth while delivering high-quality solutions to our federal customers., * 401(k)
- Flexible schedule
- Flexible spending account
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Professional development assistance
- Referral program
- Vision insurance
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Walking Into The Era of Supply Chain Risks
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Dev Digest 138 - Are you secure about this?
Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF