Information System Security Officer Level II

OneZero Solutions

$95K — $115K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of cybersecurity experience, including 3+ years in ISSO or equivalent RMF duties in a federal setup.
  • Hands-on experience with NIST SP 800-37 A&A packages.
  • Experience creating and managing POA&Ms and their documentation.
  • Proficient in STIG-based compliance assessments and vulnerability scans.
  • Experienced in maintaining cybersecurity documentation within a Government A&A tracking system.

Responsibilities

  • Act as the OT Security Officer for SFLC Operational Technology and lead RMF processes.
  • Assist the OT Security Manager in maintaining protective programs for sensitive but unclassified information.
  • Review and revise policies for DHS, USCG, and DoD cybersecurity compliance.
  • Prepare and maintain RMF security authorization documentation to prevent ATO expirations.
  • Maintain compliance with Host Based Security System standards and review system reports.
  • Create and validate RMF accounts in Government systems.
  • Update and maintain tracked cybersecurity documentation and status.
  • Manage POA&Ms from initiation through closure in collaboration with stakeholders.
  • Conduct vulnerability assessments and ensure compliance with DoD and USCG standards.
  • Review logs and audit records to identify and report cybersecurity incidents.

Benefits

  • Access to workspace, telephone, and standard workstation provided by the Government.
  • Potential for remote work at the Government's discretion with contractor-provided compliant tools.
  • Reimbursement for occasional travel outside local area, per Federal Travel Regulations.
Full Job Description
Position Title: : Information System Security Officer Level II

Location: USCG Surface Forces Logistics Center, 2401 Hawkins Point Road, Baltimore, MD 21226. Work may also be performed at the SFLC satellite offices at 707 East Ordnance Road, approximately one mile from the primary site, and at other sites as determined necessary by the Contracting Officer's Representative (COR).

Clearance:
  • No security clearance required. This position does not involve access to classified information or classified IT systems.
  • S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.

Work Schedule
Position Summary

The Information System Security Officer serves as the designated ISSO for an assigned portfolio of USCG SFLC Operational Technology and Platform IT systems and leads the Risk Management Framework process for those systems. The role prepares and maintains authorization packages, runs continuous monitoring, manages POA&Ms through closure, and keeps assigned systems inside their Authorization to Operate.
Key Responsibilities
  • Serve as the designated OT Security Officer (ISSO) for assigned SFLC Operational Technology and lead the RMF process for those systems.
  • Support the OT Security Manager (ISSM) and staff in maintaining the programs, procedures, and policies that protect Government Sensitive But Unclassified (SBU) information.
  • Review existing policies, procedures, and guidelines for compliance with DHS, USCG, and DoD cybersecurity policy; draft or revise SFLC policy documentation for ISSM review and approval.
  • Prepare and maintain RMF security authorization documentation for assigned OT, ensuring Assessment and Authorization (A&A) packages are completed and submitted to the Authorizing Official in sufficient time to prevent expiration of the Authorization to Operate (ATO).
  • Maintain Host Based Security System (HBSS/ESS) compliance for assigned OT and review applicable system reports.
  • Create and validate SFLC RMF and security authorization accounts within Government-designated systems and tools.
  • Update and maintain RMF and authorization status and associated cybersecurity documentation within Government-designated tracking tools, keeping documentation current and accessible to authorized individuals.
  • Manage and track POA&Ms for assigned OT from creation through closure: validate content with stakeholders, track remediation, maintain supporting artifacts, and identify items requiring waivers or risk acceptance.
  • Maintain the continuous monitoring process for assigned OT and support compliance with DoD and USCG cybersecurity requirements and DISA STIGs.
  • Perform vulnerability and security compliance assessments for assigned OT using Government-approved methods and tools, including DISA STIGs and Security Requirements Guides.
  • Conduct, review, and analyze vulnerability and compliance scans of assigned OT, networks, devices, and associated components.
  • Coordinate with system administrators and stakeholders to remediate vulnerabilities and compliance findings, and initiate protective or corrective measures per Government policy.
  • Review system logs, audit records, and intrusion detection data for assigned OT to identify incidents, threats, and vulnerabilities; request system audit triggers and correlate audit records at least weekly; report incidents and log integrity gaps to the Government and coordinate incident response.
  • Support the Request for Modification (RFM) and change management processes; participate in change management boards and conduct Security Impact Assessments (SIAs) on proposed changes.
  • Develop and maintain connection approval documentation for assigned OT requiring USCG network connectivity, including Interconnection Security Agreements (ISAs), Memoranda of Understanding (MOUs), and Service Level Agreements (SLAs).
  • Develop and coordinate Contingency Plan (CP) training and testing; coordinate annual Disaster Recovery failover testing for systems with a DR capability and document results for Government review.
  • Support and coordinate external inspections, evaluations, audits, and assessments applicable to assigned OT.
  • Review security exception and exclusion requests for assigned OT and provide recommendations to the Government.
Required Qualifications
  • Five (5) or more years of cybersecurity experience, including at least three (3) years performing ISSO or equivalent RMF duties in a federal environment.
  • Hands-on experience preparing and maintaining A&A packages under NIST SP 800-37.
  • Experience creating, tracking, and closing POA&Ms and maintaining supporting artifacts.
  • Experience running or interpreting STIG-based compliance assessments and vulnerability scans.
  • Experience maintaining cybersecurity documentation within a Government A&A tracking tool.

Certification
  • Must hold and maintain at least one active certification approved for Information Assurance Management (IAM) Level I or Level II. Any one of the following satisfies the requirement:
    • CGRC - Governance, Risk and Compliance Certification (formerly CAP)
    • CISSP - Certified Information Systems Security Professional (or CISSP Associate)
    • CISM - Certified Information Security Manager
    • CASP+ - CompTIA Advanced Security Practitioner
    • GSLC - GIAC Security Leadership Certification
    • Security+ CE - CompTIA Security+ Continuing Education (Level I only)
  • Certification requirements are subject to confirmation against COMDTINST M2620.2 (series) Appendix D, the controlling USCG certification matrix. Verify the accepted certification list with the Program Manager before extending an offer.
  • Evidence of active certification in good standing is required prior to onboarding. Waivers and exceptions to certification requirements will not be granted.
  • Certifications must remain current, active, and in good standing throughout performance. Loss, lapse, or revocation of a required certification is grounds for removal from the contract. Continuing education required to maintain certification is at the employee's and company's expense.

Other
  • Ability to work directly with system administrators and Government stakeholders to drive remediation.
  • Strong written communication: the role produces bi-weekly written reporting and briefs the ISSM monthly.
  • Ability to read, write, speak, and understand English fluently.
Preferred Qualifications
  • Prior USCG, DHS, or DoD ISSO experience.
  • Exposure to OT/ICS or Platform IT environments.
  • Familiarity with COMDTINST M2620.2 (series).
  • CGRC (formerly CAP) in addition to the required baseline certification.
  • Experience with contingency planning and disaster recovery testing.
  • Bachelor's degree in a cybersecurity or technical discipline.
Technical Skills
  • NIST SP 800-37 (RMF), 800-53 / 53A / 53B, 800-137 (ISCM), FIPS 199 and FIPS 200
  • DHS 4300A Sensitive Systems Handbook and the DHS Systems Engineering Life Cycle (SELC)
  • Government-designated A&A repositories and tracking tools (e.g., eMASS or successor)
  • DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs)
  • Government-approved vulnerability scanning and compliance tooling (e.g., ACAS/Nessus, SCAP-validated scanners)
  • POA&M development, tracking, and closure, including waiver and risk acceptance packages
  • Operational Technology (OT), Platform IT (PIT), and industrial control system environments, including constraints on agent-based tooling
  • Security Impact Assessments and change management board participation
  • Interconnection documentation: ISAs, MOUs, SLAs
  • Contingency planning, contingency plan testing, and disaster recovery failover exercises
  • Audit log review, audit trigger configuration, and incident reporting workflows
  • Security Readiness Reviews for operating systems and applications
Education
  • Bachelor's degree in cybersecurity, computer science, information systems, engineering, or a related field.
Work Environment
  • Primarily on-site at SFLC Baltimore. On-site presence is required for the monthly status briefing to the ISSM and for participation in change management boards, technical exchange meetings, and Government working groups.
  • The Government furnishes workspace, telephone, a Standard Workstation, and copy/fax access.
  • Remote work may be authorized at the sole discretion of the Government. If authorized, compliant hardware, software, and internet service are contractor-furnished.
  • Occasional travel outside the local commuting area may be required for training and associated off-site meetings, subject to advance COR approval and reimbursed per the Federal Travel Regulations. The 707 East Ordnance Road satellite office is within the local commuting area.

Similar Jobs

More Jobs at OneZero Solutions

More Information Technology Jobs

Find similar Information System Security Officer Level II jobs: