Senior Information Systems Security Officer/Cybersecurity

Dfuse Technologies, Inc
Fort Liberty, NC, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Adobe Analytics Amazon Web Services Microsoft Azure Unix Cascading Style Sheets (CSS) Cyber Security Information Systems Databases Linux Web Servers Identity and Access Management Virtual Private Networks (VPN)
+3 more
Routing Cloud Platform System Computer Network Technologies

Requirements

The candidate must have expert knowledge and demonstrated experience with cybersecurity technologies, risk management, and incident response procedures as well as have a solid working understanding of computer functions, including hardware, software, and operating systems. This includes knowledge of Windows, Unix, and Linux operating systems, along with other applications such as databases, web servers, networking technologies, including routing, switching, and VPNs. It’s a bonus if the candidate has experience with cloud computing platforms such as AWS and Azure.

The ISSO must be able to work autonomously, manage their workload effectively, shift priorities with little to no loss of productivity and communicate effectively with technical and non-technical personnel.

  • Well-versed in best practices for cyber security program standards, processes, and procedures compliance, industry-standard security frameworks and demonstrated expert working knowledge of NIST Special Publication (SP) 800-53 revision 5: Recommended Security Controls for Federal Information Systems, NIST SP 800-53A: Guide for Assessing the Security Controls in Federal Information Systems, AFPD 17-1 and AFI 17-130, Cybersecurity Program Management.
  • Ability writing security policies and procedures, CSS, SSP, SSPP, and assess all ATO package artifacts.
  • Expert knowledge of Risk Management Framework (RMF) v5 (Processes, workflow, etc.).
  • Ability to use eMASS to execute, RMF v5 to include document / update system status, identify, document, and manage implementation of operational and technical security controls, implementation and risk assessment tabs, non-compliant and non-validated controls, POAM management (entry, evidence, close-out), produce report and track Plan of Action and Milestone (POA&M) due dates, etc.
  • The ability to complete a checklist to ensure Security Authorization Process documents are complete and comply with all guidance.
  • Ability to work collaboratively with IT counterparts, communicate effectively (skilled in communicating complex technical information to non-technical audience) and coordinate STIG remediation with system administrators and developers.
  • Ability to conduct risk assessments, monitor security Incidents and respond appropriately to Security Threats.
  • Working understanding of network and systems technology required for the proper assessment of accreditation packages., · A DoD TS/SCI clearance is required · DoD 8570.01-M IAT II certification. · Ability to execute tasks with little to no oversight or support as well as manage multiple, and at times, competing priorities without loss of productivity.

Highly Desirable Qualifications:

  • Compliance with DoW 8140 under the Work Role Code 722 - Intermediate level or higher. Must be completed by 01 October 2026.
  • Experience transitioning from RMF v4 to v5.
  • Basic understanding of identity and access management system capabilities and configuration.
  • Experience with cloud computing platforms such as AWS and Azure.
  • Experience with TASKORDS, OPORDS, etc.
  • Experience leading Cybersecurity (ISSO & ISSE) teams.

Years of Experience: · Min 12 years with HS Diploma, 10 years with AS/AA degree, or 8 years with BS/BA.

Clearance:

  • A DoD security clearance at the TS/SCI level is required.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

2:04 min

Defining timestamps and the international standard format

Denny Biasiolli Denny Biasiolli · Europe 2026 Virtual

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

Videos

See all

Related articles

See all