Information Systems Security Officer

Zachary Piper
Washington, DC, United States
4 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$150,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Cloud Computing Cloud Engineering Cyber Security Kubernetes Tenable Nessus Vulnerability Analysis

Job description

The Information Systems Security Officer (ISSO) will support and maintain DoD authorization efforts, execute RMF activities, manage security documentation, and collaborate with engineering teams to ensure compliance across cloud-based environments.

Information Systems Security Officer (ISSO) Responsibilities:

  • Execute and maintain DoD RMF lifecycle activities, including authorization and continuous monitoring efforts for IL4/IL5 environments
  • Build, maintain, and update eMASS authorization packages, SSPs, POA&Ms, security control narratives, and supporting accreditation artifacts
  • Manage DISA PPSM registrations and ensure compliance with ports, protocols, services, and boundary documentation requirements
  • Review vulnerability scans, STIG compliance results, patching efforts, and remediation activities utilizing tools such as ACAS/Tenable Nessus
  • Partner with engineering teams to translate technical requirements into security controls and documentation across AWS, Kubernetes, containers, CI/CD pipelines, and modern cloud infrastructure

Requirements

  • 3+ years of experience supporting DoD cybersecurity, RMF, Information Assurance, or Authorization to Operate (ATO) initiatives
  • Active DoD Secret Security Clearance required; higher-level clearances preferred
  • Active Common Access Card (CAC) available on Day 1
  • Security+ CE, CISSP, CASP+, CISM, or equivalent DoD 8570/8140 certification required or ability to obtain within 90 days
  • Hands-on experience maintaining and managing eMASS authorization packages and executing RMF deliverables
  • Experience with DISA PPSM, NIST 800-53, NIST 800-37, STIGs, ACAS, IAVM requirements, and DoD continuous monitoring programs
  • Strong understanding of cloud and infrastructure environments, including AWS, containers, Kubernetes, and CI/CD technologies
  • Experience translating technical requirements into security controls, control implementations, and assessor-ready documentation

Benefits & conditions

  • $150,000+ depending on experience, technical depth, and clearance
  • Comprehensive benefits package including medical, dental, vision, PTO, holidays, and 401(k)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all