Information System Security Officer (ISSO)

The JAAW Group, LLC

$95K — $115K *
Aerospace & Defense
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active Secret security clearance required; Top Secret preferred.
  • U.S. citizenship required.
  • DoD 8570/8140 IAT Level II certification (or ability to obtain within 3 months).
  • 3+ years as an ISSO or relevant cybersecurity compliance role.
  • Solid understanding of RMF and JSIG processes.
  • Experience in continuous monitoring and vulnerability management.
  • Familiar with DISA STIGs, SCAP Compliance Checker, and Evaluate-STIG.

Responsibilities

  • Support implementation and maintenance of cybersecurity controls.
  • Assist the ISSM with RMF and JSIG accreditation activities.
  • Conduct continuous monitoring and vulnerability assessments.
  • Track vulnerabilities and remediation through POA&Ms.
  • Develop and update cybersecurity documentation like SSPs and SARs.
  • Verify user clearances and access authorizations.
  • Participate in configuration control and change management processes.

Benefits

  • Full-time position with a focus on security compliance and team collaboration.
  • Opportunity to work with cutting-edge cybersecurity practices.
  • Engagement with DoD security requirements.
  • Differentiated opportunities for professional development and certification support.
  • Collaborative environment with various technical teams for holistic cybersecurity implementation.
Full Job Description
Information System Security Officer (ISSO)

Location: Hill Air Force Base, UT. Clearance Required: Secret; Top Secret preferred. Employment Type: Full-Time.

The ISSO will work closely with the Information System Security Manager (ISSM), Security Engineers, system administrators, and other technical teams to implement security controls, conduct continuous monitoring, manage vulnerabilities, maintain cybersecurity documentation, and ensure systems remain compliant with applicable DoD security requirements.

Responsibilities
  • Support the implementation and maintenance of cybersecurity controls for classified information systems.
  • Assist the ISSM with RMF and JSIG accreditation and authorization activities.
  • Perform continuous monitoring, vulnerability assessments, risk analysis, and security compliance reviews.
  • Track vulnerabilities and remediation activities through Plans of Action and Milestones (POA&Ms).
  • Develop, maintain, and update cybersecurity documentation, including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), and continuous monitoring documentation.
  • Support Authorization to Operate (ATO) activities and ongoing system authorization requirements.
  • Verify user security clearances, access authorizations, and need-to-know requirements.
  • Review audit records and system security events for potential cybersecurity concerns.
  • Support implementation and validation of DISA STIGs, CIS benchmarks, and other security configuration requirements.
  • Participate in configuration control and change management processes to evaluate cybersecurity impacts.
  • Coordinate vulnerability remediation activities with system administrators, engineers, and other technical teams.
  • Support cybersecurity incident reporting, documentation, and response activities.
  • Assist with security requirements for cloud environments, including encryption, identity and access management, and network segmentation.
  • Maintain accurate security records and documentation in support of audits, assessments, and authorization activities.


Required Qualifications
  • Active Secret security clearance required prior to onboarding; Top Secret preferred.
  • U.S. citizenship required.
  • DoD 8570/8140 IAT Level II certification, or ability to obtain the required certification within 3 months of hire.
  • 3+ years of experience as an ISSO or in a comparable information assurance or cybersecurity compliance role.
  • Strong working knowledge of RMF and JSIG processes and requirements.
  • Experience supporting cybersecurity compliance, continuous monitoring, vulnerability management, and risk assessment activities.
  • Familiarity with DISA STIGs and security compliance tools such as SCAP Compliance Checker and Evaluate-STIG.
  • Experience with vulnerability assessment tools such as Nessus and ACAS.
  • Familiarity with SIEM platforms such as Splunk.
  • Experience supporting RMF documentation and authorization activities, including SSPs, POA&Ms, and ATO packages.
  • Familiarity with eMASS or similar cybersecurity compliance management systems.
  • Working knowledge of AWS and/or Microsoft Azure security concepts.
  • Strong written and verbal communication, organization, and documentation skills.


Preferred Qualifications
  • Active Top Secret security clearance with SCI eligibility.
  • 5+ years of ISSO, information assurance, or cybersecurity compliance experience.
  • DoD IAM Level II certification, such as CASP+ or CISSP.
  • Bachelor's or Master's degree in Cybersecurity, Information Assurance, Computer Science, or a related field.
  • AWS or Microsoft Azure security certifications.
  • Experience with Microsoft Defender, Trellix, or similar endpoint security technologies.
  • Experience supporting SOC or NOC operations.
  • Familiarity with container security technologies, including Docker and Kubernetes.
  • Experience supporting Department of Defense or other classified government environments.

Similar Jobs

More Jobs at The JAAW Group, LLC

More Aerospace & Defense Jobs

Find similar Information System Security Officer (ISSO) jobs: