Information System Security Officer

Mantech International Corporation
Stafford, VA, United States
2 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Systems System Configuration Information Security Management Automation of Marketing Systems Development Life Cycle Security Content Automation Protocol Information Security Management System Information Technology Vulnerability Analysis

Job description

Our organization is in search of a dedicated and career-focused Information System Security Officer to join our team supporting the Marine Corps Systems Command (MCSC) based in Stafford, VA.

The ideal candidate will play a crucial role in ensuring security compliance and the ongoing authorization of systems utilized by the United States Marine Corps., * Deliver cybersecurity information assurance support for Marine Corps information, intelligence, and cybersecurity initiatives.

  • Assist in the creation of Risk Management Framework (RMF) security authorization packages in alignment with current guidelines.
  • Help government programs in producing and maintaining essential security documentation, including System Security Plans, Backup and Recovery Plans, Contingency Plans, and System Security Plan of Action and Milestones (POA&Ms) to ensure adherence to government security policies.
  • Conduct vulnerability and risk assessments of assigned information systems throughout all stages of the System Development Life Cycle; evaluate vulnerability scan outcomes and DISA STIGs, and develop and sustain system security POA&Ms.
  • Translate cybersecurity requirements into technical solutions and assess system configurations to uphold and enhance security posture.
  • Advise on appropriate system configuration and administrative control procedures to bolster system security and performance, ensuring compliance with relevant laws and policies, as well as cybersecurity requirements specified in the Defense Acquisition System guidance and applicable Department of Defense (DoD), Department of the Navy (DoN), and Marine Corps directives.
  • Provide comprehensive cybersecurity support for information systems, addressing policy-making, programmatic and technical assistance, and all facets of planning, documentation, engineering, and operations in secure environments.

Requirements

  • A Bachelor s Degree along with a minimum of 5 years of relevant ISSO experience (an additional 2 years of experience may be accepted in lieu of a degree).
  • Must hold a certification compliant with DoD 8140 intermediate level, such as CASP, Security+, CISSP, or CISM.
  • Experience with RMF, NIST, and other federal regulations.
  • Familiarity with assessment tools (e.g., ACAS, SCAP, HBSS) and RMF process tools (e.g., MCCAST, eMASS, eArcher, etc.).
  • Experience in Security Testing and Evaluation.
  • Knowledge of Assured Compliance Assessment Solution (ACAS), STIGs, and SCC., * Experience as an ISSO within the Marine Corps.
  • Preferred experience with the DoD Information Technology Portfolio Repository and the Department of the Navy.
  • Understanding of information security systems and applications relevant to DoD projects, particularly Marine Corps programs.
  • Familiarity with DoDI 8510.01; NIST 800 series publications; Intelligence Community Directive (ICD) 503; DoD Intelligence Information System (DoDIIS)-Joint Security Implementation Guide (DJSIG); and emerging cybersecurity policies, along with all other relevant policies and directives.

Clearance Requirements:

  • Must possess a current and active Top Secret / SCI clearance.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:38 min

Managing and versioning system prompts as YAML files

Kevin Lewis Kevin Lewis +1 · World Congress 2025

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · World Congress 2025

Videos

See all

Related articles

See all