Information System Security Officers

Momentum Engineering
Washington, DC, United States
21 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Microsoft Azure Cyber Security Information Systems Information Security Management Software Vulnerability Management Information Technology Splunk Qualys Servicenow Plan of Action and Milestones

Job description

Momentum Engineering, Inc. fosters an employee-centric culture. Our strength lies in our people. With a high percentage of employees holding advanced degrees in engineering, computer science, and related disciplines, we bring deep technical expertise to every mission. Our team includes professionals with security clearances and full-scope polygraphs, ensuring trusted, secure support for the most sensitive national security initiatives. Additionally, our workforce is equipped with industry-leading certifications, demonstrating a commitment to continuous learning and excellence. Most importantly, our exceptional employee retention rate reflects a culture of professional growth, mission focus, and dedication-ensuring long-term stability and expertise for our customers’ critical needs., * Seeking experienced Senior Information System Security Officers (ISSOs) to support Federal cybersecurity operations focused on continuous monitoring, RMF execution, authorization maintenance, vulnerability management, audit readiness, and cybersecurity governance

  • Senior ISSOs serve as cybersecurity subject matter experts supporting assigned systems while working closely with Lead ISSO, ISSM, System Owners, and other cybersecurity stakeholders

Primary Responsibilities

  • Support RMF activities throughout the authorization lifecycle
  • Maintain SSPs, POA&Ms, control implementation statements, and support cybersecurity documentation
  • Perform continuous monitoring activities and security posture reviews
  • Support vulnerability management analysis, tracking, and remediation coordination
  • Prepare and update authorization package artifacts
  • Conduct security impact analyses for changes affecting supported systems
  • Support audit readiness reviews and assessment preparation activities
  • Coordinate evidence collection and artifact management
  • Maintain cybersecurity records, repositories, and documentation
  • Participate in governance forums and security working groups
  • Track corrective actions and POA&M status through closure
  • Provide system-level cybersecurity guidance and recommendations, + Security+
  • CGRC
  • CISSP
  • CAP
  • CISM
  • GSEC
  • Desired technical experience: *

  • CSAM
  • ServiceNow
  • Splunk
  • Tenable
  • Qualys
  • Microsoft Azure
  • Microsoft 365
  • Entra ID
  • Governance, Risk, and Compliance (GRC) platforms

Requirements

  • U.S. Citizenship required
  • Ability to obtain and maintain a Tier 4 High-Risk Public Trust
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or related field
  • 5+ years of cybersecurity experience
  • 3+ years supporting Federal cybersecurity or RMF activities
  • Experience supporting SSP development and authorization package maintenance
  • Experience with continuous monitoring and vulnerability management
  • Experience supporting audits, assessments, and compliance activities
  • Familiarity with Federal cybersecurity requirements and NIST guidance

Benefits & conditions

Exempt hourly position. 11 paid holidays, minimum of 3 weeks PTO, company sponsored group medical plan, company paid dental, vision, life insurance, and STD/LTD plans. Salary is dependent upon the candidate’s experience and qualifications.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all