Information System Security Officer (ISSO)

Affordable Mantech Solutions LLC
Ashburn, VA, United States
19 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$150,000.0 - $180,000.0
Working hours
Regular working hours

Tech stack

Xacta Amazon Web Services Microsoft Azure Configuration Management CompTIA Security+ Cyber Security Information Systems System Configuration Federal Information Processing Standards (FIPS) Identity and Access Management Information Security Management Information Systems Security Architecture Professional
+9 more
Software Vulnerability Management SARS Software Products Cloud Platform System Information Technology Nessus CIS Benchmarks Splunk Plan of Action and Milestones Vulnerability Analysis

Job description

Our client is seeking an experienced Information System Security Officer (ISSO) to support a U.S. Customs and Border Protection (CBP) program in Ashburn, VA. The ISSO will serve as the principal point of contact for the security posture of one or more assigned information systems, ensuring compliance with DHS, CBP, and NIST cybersecurity policies throughout the system’s lifecycle. This role works closely with the Information System Security Manager (ISSM), Authorizing Official (AO), system owners, and technical teams to maintain a strong Risk Management Framework (RMF) posture and support continuous authorization to operate (ATO)., * Serve as the primary ISSO for assigned CBP information systems, acting as the liaison between the ISSM, AO, system owners, and technical staff on all security-related matters.

  • Execute the NIST Risk Management Framework (RMF) lifecycle, including system categorization, security control selection, implementation, assessment, authorization, and continuous monitoring.

  • Develop, update, and maintain security authorization artifacts, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), Contingency Plans, and Risk Assessments.

  • Support Assessment and Authorization (A&A) activities and coordinate Security Control Assessments (SCAs) with independent assessors.

  • Monitor and track POA&M remediation activities, ensuring vulnerabilities are addressed within DHS/CBP-mandated timeframes.

  • Conduct continuous monitoring activities in accordance with DHS 4300A / CBP security policy and the organization’s Information Security Continuous Monitoring (ISCM) strategy.

  • Review vulnerability scan results (e.g., Nessus, ACAS) and coordinate remediation with system administrators and engineering teams.

  • Support incident response activities for assigned systems, including detection, reporting, and coordination with the Security Operations Center (SOC).

  • Ensure system configurations align with applicable security baselines (e.g., DISA STIGs, CIS Benchmarks) and DHS/CBP policy.

  • Participate in Configuration Control Board (CCB) activities to assess the security impact of proposed system changes.

  • Prepare for and support audits, inspections, and compliance reviews conducted by DHS, CBP, or external oversight bodies.

  • Maintain awareness of, and ensure compliance with, applicable federal cybersecurity laws, regulations, and guidance, including FISMA, NIST SP 800-53, and FIPS publications.

Requirements

  • U.S. Citizenship required.

  • Ability to obtain and maintain a CBP Background Investigation (BI) / Public Trust clearance; existing favorable CBP or DHS suitability determination preferred.

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent professional experience in lieu of degree.

  • Minimum of 3-5 years of hands-on experience performing ISSO, ISSM, or comparable information systems security duties on federal information systems.

  • Working knowledge of the NIST Risk Management Framework (RMF), NIST SP 800-37, and NIST SP 800-53 security controls.

  • Familiarity with DHS 4300A Sensitive Systems Policy or equivalent federal agency security policy.

  • Experience preparing or maintaining ATO documentation (SSP, SAR, POA&M, Contingency Plan).

  • Strong written and verbal communication skills, with the ability to translate technical risk into terms understandable to non-technical stakeholders.

Required Certifications: Candidates must hold, at minimum, both of the following certifications at time of application (in accordance with DoD 8570.01-M / DoD 8140 IAM Level II requirements):

  • Certified Information Systems Security Professional (CISSP)

  • CompTIA Security+ (CE)

Preferred Qualifications:

  • Prior experience directly supporting CBP, DHS, or another federal law enforcement/homeland security agency.

  • Additional certifications such as CAP, CISM, CEH, or Cloud+.

  • Experience with cloud environments (AWS GovCloud, Azure Government) and associated FedRAMP/ATO requirements.

  • Experience with GRC and vulnerability management tooling (e.g., Xacta, CSAM, Nessus/ACAS, Splunk).

  • Active DHS/CBP Entry-on-Duty (EOD) or current CBP suitability determination.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

5:51 min

Transitioning to continuous security operations and automated system hardening

Thomas Fuchs +3 · LIVE

Videos

See all

Related articles

See all