Information System Security Officer (ISSO) - RMF/STIG Support

OBJECT CTALK INC
Arlington, VA, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Compensation
$120,000.0 - $160,000.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Systems Information Security Management Software Vulnerability Management Nessus Plan of Action and Milestones Vulnerability Analysis

Job description

Object CTalk Inc. is seeking an experienced Information System Security Officer (ISSO) to support a mission-critical Department of Defense (DoD) customer in Arlington, Virginia.

IMPORTANT SECURITY REQUIREMENT: This position requires a current, active TS/SCI U.S. Government security clearance. Candidates who do not currently possess the required active clearance cannot be considered for this position.

The successful candidate will provide cybersecurity and information assurance support throughout the DoD Risk Management Framework (RMF) lifecycle. Responsibilities include continuous monitoring, Security Impact Assessments (SIA), vulnerability management, DISA STIG compliance, POA&M management, security documentation, and authorization activities., Support the DoD Risk Management Framework (RMF) lifecycle for assigned information systems.

Perform Security Impact Assessments (SIA) and support continuous monitoring activities.

Execute, review, and validate DISA STIG scan results and manually validate applicable STIG/SRG checklists.

Analyze ACAS/Nessus vulnerability scan results and identify security findings requiring remediation or mitigation.

Coordinate with System Owners, system administrators, engineers, and technical teams to remediate cybersecurity vulnerabilities.

Develop, maintain, and track Plans of Action & Milestones (POA&Ms).

Track remediation activities through Remedy tickets and provide regular status updates.

Complete monthly STIG compliance reporting and quarterly STIG/SRG checklist validations.

Support Authority to Operate (ATO) activities.

Maintain security documentation and authorization artifacts within eMASS.

Apply NIST SP 800-53 security controls and applicable DoD cybersecurity policies and guidance.

Maintain accurate hardware and software inventories.

Develop and maintain cybersecurity Standard Operating Procedures (SOPs) and Work Instructions (WIs).

Provide cybersecurity recommendations to System Owners and technical stakeholders.

Prepare management reports and communicate system security posture, vulnerabilities, remediation status, and cybersecurity risks to stakeholders.

Requirements

The ideal candidate will have hands-on experience working in DoD environments with RMF, DISA STIGs, eMASS, ACAS/Nessus, NIST SP 800-53 security controls, vulnerability remediation, and POA&M management., Current, active TS/SCI U.S. Government security clearance

Bachelor’s degree; relevant experience may be substituted for education where permitted by customer/contract requirements

6+ years of relevant cybersecurity, information assurance, or information systems security experience

Hands-on experience supporting DoD Risk Management Framework (RMF)

Experience implementing, reviewing, and/or validating DISA STIGs

Experience with ACAS and/or Nessus vulnerability scanning and remediation

Experience with eMASS

Experience developing and managing POA&Ms

Experience supporting continuous monitoring

Knowledge of NIST SP 800-53 security controls

Experience developing and maintaining cybersecurity/security authorization documentation

Experience coordinating vulnerability remediation with System Owners and technical teams

Strong written and verbal communication skills

Certification Requirement

Candidate must currently possess at least one applicable cybersecurity certification required for the position, such as

Benefits & conditions

Pulled from the full job description

  • Referral program
  • Professional development assistance
  • 401(k)
  • Health insurance
  • Paid time off
  • Vision insurance
  • Health savings account, Salary Range: $120,000-$160,000

Actual compensation will be determined based on the candidate’s relevant experience, technical qualifications, certifications, clearance status, and alignment with customer requirements.

Why Join Object CTalk Inc.?

At Object CTalk Inc., you will have the opportunity to support mission-critical programs that strengthen U.S. Government operations.

We value technical excellence, collaboration, innovation, and continuous professional growth while delivering high-quality solutions to our federal customers., * 401(k)

  • Flexible schedule
  • Flexible spending account
  • Health insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Professional development assistance
  • Referral program
  • Vision insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · World Congress 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all