Great Hill Solutions, LLC seeks a highly motivated
Information Systems Security Officer (ISSO) to join our team supporting the National Cyber Range Complex (NCRC). The NCRC plays a critical role in enhancing the resilience of DoD systems and the effectiveness of U.S. cyber operations by delivering full-spectrum test and evaluation, workforce training, and mission rehearsal events. As the NCRC continues to evolve as a best-of-breed cyber range, the ISSO will contribute directly to ensuring secure facilities, systems, tools, and expertise for some of the most demanding test, training, and mission rehearsal requirements in the Department of War.
As a key member of the cybersecurity team, the ISSO will work closely with the Information Systems Security Manager (ISSM) to maintain the cybersecurity posture of assigned NCRC information systems, support Risk Management Framework (RMF) and authorization requirements, monitor compliance with applicable DoW cybersecurity policies and security controls, and support secure mission execution. The ISSO will also serve as a cybersecurity and security coordination liaison with stakeholders across related disciplines, including physical, personnel, information, operations, Anti-Terrorism/Force Protection, law enforcement, communications, and technical security.
Responsibilities include, but are not limited to:
- Provide direct support to the ISSM on activities such as Assessment & Authorization (A&A), execution of Continuous Monitoring Plans, and facilitation of Security Controls Assessments.
- Support and monitor RMF steps and activities throughout the system lifecycle to maintain an appropriate security posture.
- Implement and enforce cybersecurity policies, procedures, and security controls for assigned systems.
- Maintain working knowledge of current and upcoming events, system functions, policies, safeguards, and security measures.
- Serve as a subject matter expert (SME) in DoW, DIA, and RMF core concepts and processes.
- Coordinate with applicable stakeholders across the enterprise to ensure security compliance and readiness.
- Maintain Authorization to Operate (ATO) packages for assigned systems within the designated A&A System of Record (e.g., eMASS, XACTA 360, Keystone).
- Review and analyze audit logs (e.g., Splunk, Windows EVTX, Linux syslogs) to detect potential anomalies or threats.
- Perform validation checks to ensure CM-approved software and antivirus definitions are installed on assigned systems.
- Conduct compliance/vulnerability scans and manual checks to identify and mitigate risks.
- Execute ISSO-specific tasks as outlined in program security plans.
- Support and monitor account management processes, including account authorization, access controls, and enforcement of least privilege.
- Deliver cybersecurity education, training, and awareness to system users as required by the ISSM.
Basic Qualifications:- Active Top Secret clearance with SCI eligibility.
- Bachelor's degree in Cybersecurity, Information Systems, or related discipline, and/or 8+ years of relevant experience (additional experience may substitute for degree).
- Minimum of 5 years of extensive experience in cybersecurity, information assurance, and RMF processes.
- Meet DoDM 8140.03 qualification requirements for the applicable DoD Cyberspace Workforce Framework (DCWF) work role and proficiency level, including applicable foundational and resident qualification requirements.
- At least 2 years of experience conducting IT application, system, or network reviews and providing DoW cybersecurity policy and technical guidance.
Desired Skills:- Certification aligned to DoDM 8140.03 / DoD Cyberspace Workforce Framework.
- Familiarity or background with some of the following technologies:
- Zero-trust requirements / concepts.
- VMWare (vSphere, vCenter, NSX, ESXi)
- RHEL (Ansible, Kubernetes, StackRox, OpenShift)
- AWS / Azure cloud technologies and containerization
- F5 BIG-IP, Cisco networking, and distributed technologies
- STIG implementation/validation and IAVM compliance
- NetApp storage technologies
- Dell Blade Servers