Information Systems Security Officer ( ISSO )

Venesco LLC
Aberdeen Proving Ground, MD, United States
7 days ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Systems Information Security Management Software Vulnerability Management Information Security Management System SC Clearance Information Technology Vulnerability Analysis

Job description

We are seeking an Information System Security Officer (ISSO) to support the day-to-day cybersecurity posture of assigned information systems. This role is responsible for maintaining RMF documentation, supporting continuous monitoring, tracking vulnerabilities, managing POA&Ms, and helping ensure systems remain compliant with DoD and NIST security requirements. ISSOs are typically the hands-on security practitioners closest to the system and its operational controls., * Maintain and update the System Security Plan (SSP) and related RMF artifacts

  • Support continuous monitoring activities, including log review, control checks, and security status tracking
  • Create, update, and track POA&Ms for identified weaknesses and remediation actions
  • Analyze vulnerability scan results and validate DISA STIG compliance findings Support RMF steps including categorization, control implementation, assessment, authorization, and monitoring
  • Maintain system records in eMASS and support package updates
  • Coordinate incident response activities for assigned systems
  • Partner with system owners, admins, engineers, and the ISSM to resolve security issues

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field preferred
  • Typically, 2-4 years of cybersecurity or information assurance experience
  • Active Secret clearance
  • Relevant DoD 8140 certifications such as CISSP strongly preferred
  • Working knowledge of NIST SP 800-53, and DoD cybersecurity compliance processes
  • Experience with SSPs, POA&Ms, vulnerability management, and audit evidence collection
  • Familiarity with eMASS, ACAS/Tenable, STIG Viewer, and related compliance tools
  • Strong documentation, analytical, and issue-tracking skills
  • Ability to work with technical and non-technical stakeholders, * Ability to operate in fast-paced, compliance-driven environments
  • Strong judgment in evaluating cyber risk and balancing mission needs
  • Proven ability to build trust with technical teams and senior leadership
  • Detail-oriented approach to documentation, authorization, and continuous monitoring requirements

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · World Congress 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all