CACI International

Information System Security Officer (ISSO)

CACI International$67K — $142K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of relevant experience, with a Bachelor's Degree substituting for 5 years of experience.
  • Certification in DoD 8570 IAT or IAT Level II required.
  • Familiarity with the DoD Risk Management Framework (RMF) or DIACAP processes is essential.
  • Experience working in classified environments with sensitive information systems.
  • Knowledge of eMASS, VDI, and CORA processes preferred.
  • ITIL Foundation certification preferred.
  • Experience in Cloud and DEVSECOPS environments preferred.
  • Must possess a DoD Secret Clearance.
  • Strong technical, written, and verbal communication skills required.
  • Ability to lead team members with minimal supervision.

Responsibilities

  • Verify system access requirements and maintain Acceptable Use Agreements.
  • Assist in the preparation and maintenance of IA program documentation and policies.
  • Prepare and maintain Certification and Accreditation packages per DoD standards.
  • Oversee System Owners for IS policy compliance.
  • Review security advisories and bulletins impacting site information systems.
  • Report on IAVA statuses and implementation progress to maintain security health.
  • Support DAF's Continuous Monitoring and Risk Assessment processes.

Benefits

  • Comprehensive healthcare coverage.
  • Wellness programs to support physical and mental health.
  • Financial support measures including retirement plans.
  • Family support resources and benefits.
  • Opportunities for continuing education and professional development.
  • Flexible work arrangements to balance work and personal life.
Full Job Description
Job Title: Information System Security Officer (ISSO)

Job Category: Security

Time Type: Full time

Minimum Clearance Required to Start: Secret

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Continental US

* * *

Responsibilities:
  • Verify that all requirements for system access to an Information System are met and that there is a signed Acceptable Use Agreement on file.
  • Assist in the preparation, distribution, coordination and maintenance of plans, instructions, policies, guidance, and standard operating procedures necessary for implementation of the Organization's IA program and serve as the subject matter focal point for the Organization's IA program.
  • The ISSM in ensuring that a Certification and Accreditation package is prepared and maintained in accordance with (IAW) the DoD Information Assurance Certification and Accreditation Process (DIACAP), or the DoD Risk Management Framework (RMF).
  • Overseeing System Owners to ensure they follow established IS policies and procedures.
  • Reviews weekly bulletins and advisories that impact security of site information systems to include, RCERT, ACERT, IAVA, and DISA ASSIST bulletins.
  • Provide clear and accurate reporting of current IAVA's and statuses of implementation to ensure the security and health of our environment.
  • Provide support for the Department of the Air Force (DAF) Continuous Monitoring and Risk Assessment (CORA) process, ensuring alignment with security controls, risk management frameworks, and compliance requirements for cybersecurity assessments. Assist in the development, review, and management of CORA documentation, supporting ongoing evaluation and mitigation of security risks within DAF systems.
  • Implementing and enforcing IS security policies.
  • Ensuring approved policies and procedures are in place capturing the organization's requirements regarding all of the NIST 800-53r5 families. The ISSO will assist in updating policies and procedures when changes occur or periodically.
  • Ensuring development and implementation of procedures in accordance with configuration management (CM) policies and practices for authorizing the use of hardware/software on an IS. Any changes or modifications to hardware, software, or firmware of a system must be coordinated with the ISSM/ISSO and appropriate approving authority prior to the change.
  • Responding to security incidents, and for investigating and reporting (to the IAM and ISSO and to local management) security violations and incidents, as appropriate.
  • Serving as a member of the Change Advisory Board and Demand Approval Board
  • Working knowledge of system functions, security policies, technical security safeguards, and operational security measures.
  • Attending required technical (e.g., operating system, networking, security management, SysAdmin) and security training relative to assigned duties.
  • Ensuring that proper decisions are made concerning levels of concern for confidentiality, integrity, and availability of the data, and the protection level for confidentiality for the system.
  • Reporting all security-related incidents to the ISSM and Security Incident Response Team.
  • Initiating protective and corrective measures when a security incident or vulnerability is discovered, with the approval of the ISSM or System Owner.
  • Developing and maintaining an accreditation/certification and assessment/authorization support documentation package for system(s) for which they are responsible.
  • Conducting Continuous Monitoring in line with the DAF's cATO methodology
  • Ensuring all IS security-related documentation is current and accessible to properly authorized individuals.
  • Ensuring system security requirements are addressed during all phases of the system life cycle.
  • Provide status updates on IA and system security health to the government in a formal setting. The ISSO will need to provide updates for all of the systems when the ISSM is unavailable.


Qualifications:

Required:
  • 10+ Years of relevant experience (Bachelor's Degree in applicable field may be substituted for 5 years of experience).
  • DoD 8570 IAT or IAT level II Certified
  • Familiarity with DoD Risk Management Framework (RMF) or DIACAP processes
  • Experience with classified environments and information systems
  • Knowledge of eMASS preferred
  • Knowledge of VDI preferred
  • Knowledge of the CORAs requirements and process preferred
  • ITIL Foundation preferred
  • Cloud Experience
  • DEVSECOPS Experience
  • DoD Secret Clearance
  • Strong technical written and verbal communication skills
  • Ability to work and lead other team members, with little oversight, to accomplish Sprints and organizational tasks.


Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:
$67,800 - $142,200

About CACI International

CACI International Inc is a multinational professional services and information technology company. It provides services to many branches of the federal government including defense, homeland security, intelligence, and healthcare. CACI has approximately 23,000 employees worldwide. The company's mission is to provide enterprise and mission technology services and solutions that best fit the needs of its customers. CACI has been named a Fortune World's Most Admired Company, a Washington Post Top Workplace, and a Forbes Best Employer for Diversity.
Learn more about CACI International
Size
22,000 employees
Market Cap
$7.1 billion
Industry
Net Income
$374.4 million
Founded
1962
5 Year Trend
+7.3%
Revenue
$5.8 billion
NASDAQ

Similar Jobs

More Jobs at CACI International

More Aerospace & Defense Jobs

Find similar Information System Security Officer (ISSO) jobs: