PeopleTec

Information Systems Security Officer (ISSO)

PeopleTec$110K — $145K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8-10 years of experience in cybersecurity, information assurance, or related fields
  • DoD 8140 compliant certification (e.g., Security+, CySA+, CISSP) preferred
  • Experience with DoD cybersecurity standards and RMF processes
  • Proficiency in NIST SP 800-53 security controls
  • Demonstrated skill in documentation and tracking cybersecurity vulnerabilities
  • Knowledge of DISA STIGs and implementation in systems
  • Top Secret clearance with SCI and SAP eligibility required

Responsibilities

  • Perform daily cybersecurity activities for DoD information systems
  • Support RMF implementation and continuous monitoring of security controls
  • Maintain documentation for RMF authorization and cybersecurity artifacts
  • Monitor systems for compliance and changes affecting security posture
  • Collaborate with technical teams to resolve cybersecurity vulnerabilities
  • Develop and track POA&Ms to coordinate corrective actions
  • Support security assessments and documentation for audits

Benefits

  • Comprehensive health plans including medical, dental, and vision coverage
  • Retirement savings plan with company match
  • Generous paid time off policy
  • Professional development opportunities and training support
  • Flexible work environment options
Full Job Description
Responsibilities

PeopleTec is seeking an Information Systems Security Officer (ISSO) for an opportunty to support our Colorado Springs, CO and Los Angeles, CA locations.

The Information Systems Security Officer (ISSO) is a mid-level cybersecurity professional responsible for the day-to-day implementation, monitoring, and documentation of cybersecurity requirements for United States Space Force information systems. Working under the direction of the Information Systems Security Manager (ISSM), the ISSO helps maintain the security posture and authorization status of assigned systems by supporting Risk Management Framework (RMF), continuous monitoring, vulnerability management, security configuration, and cybersecurity compliance activities.

The successful candidate will work closely with system administrators, network engineers, ISSEs, system owners, and other technical personnel to ensure required security controls are implemented, documented, and maintained. The ISSO will monitor system security status, maintain RMF documentation and supporting evidence, track vulnerabilities and Plans of Action and Milestones (POA&Ms), support security assessments, and identify changes that may affect system security or authorization.

This position requires a hands-on cybersecurity professional who can apply DoD cybersecurity requirements within operational information-system environments while working collaboratively with technical teams to resolve findings and maintain mission capability.

Duties:
  • Perform day-to-day cybersecurity and information assurance activities for assigned DoD information systems.
  • Support implementation, documentation, and continuous monitoring of applicable RMF security controls.
  • Maintain RMF authorization documentation and supporting cybersecurity artifacts.
  • Update system security information, control implementation statements, evidence, and related documentation within eMASS or other approved systems.
  • Assist with development and maintenance of System Security Plans, security procedures, risk assessments, control traceability documentation, and other authorization artifacts.
  • Monitor assigned systems for cybersecurity compliance and changes affecting system security posture.
  • Review vulnerability scans, security configuration assessments, and other cybersecurity findings.
  • Work with system administrators and engineers to remediate vulnerabilities, configuration deficiencies, and security-control findings.
  • Develop, update, and track POA&Ms and coordinate corrective actions through closure.
  • Support implementation and validation of DISA STIGs and other applicable security configuration requirements.
  • Review system changes, software installations, hardware modifications, and configuration changes for potential cybersecurity impacts.
  • Maintain cybersecurity records, system inventories, authorization evidence, and other required security documentation.
  • Support security-control assessments, authorization activities, continuous-monitoring reviews, inspections, and audits.
  • Monitor system logs, security alerts, and other available security information and coordinate potential cybersecurity concerns with appropriate technical and security personnel.
  • Support cybersecurity incident identification, documentation, reporting, and response activities.
  • Verify that system users and privileged users comply with applicable cybersecurity requirements and access procedures.
  • Coordinate with system administrators, network engineers, ISSEs, and other technical personnel to resolve cybersecurity issues.
  • Identify cybersecurity risks or compliance concerns and elevate significant issues to the ISSM.
  • Support development and maintenance of local cybersecurity procedures and operating instructions.
  • Participate in cybersecurity working groups, technical reviews, configuration-control activities, and system engineering discussions as required.
  • Maintain awareness of applicable DoD cybersecurity policies and ensure assigned system documentation reflects current requirements


Qualifications

Required Skills/Experience:
  • 8-10 years of relevant experience in cybersecurity, information assurance, information systems security, system administration, RMF, or related technical disciplines.
  • DoD 8140 compliant certification appropriate to assigned cybersecurity responsibilities, such as Security+, CySA+, CASP+/SecurityX, and CISSP.
  • Experience supporting cybersecurity activities for DoD or other federal information systems.
  • Working knowledge of the DoD Risk Management Framework and system Assessment and Authorization processes.
  • Working knowledge of NIST SP 800-53 security controls.
  • Experience implementing, documenting, or maintaining cybersecurity security controls.
  • Experience developing or maintaining RMF and system security documentation.
  • Experience using eMASS or a comparable authorization/compliance system.
  • Experience identifying, documenting, tracking, and remediating cybersecurity vulnerabilities or compliance findings.
  • Experience developing or maintaining POA&Ms.
  • Experience supporting security configuration and system-hardening activities.
  • Familiarity with DISA STIGs and their application to enterprise information systems.
  • Experience working with system administrators, network engineers, or other technical personnel to resolve cybersecurity findings.
  • Ability to review technical and security information and identify potential cybersecurity risks or compliance issues.
  • Experience maintaining accurate cybersecurity documentation, records, and supporting evidence.
  • Ability to communicate cybersecurity issues effectively to technical personnel and security leadership.
  • Experience supporting classified DoD information systems.
  • Travel: Up to 25%
  • Must be a U.S. Citizen
  • Current Top Secret clearance with SCI eligibility and SAP eligibility.

Education Requirements:
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Engineering, or a related technical discipline; additional relevant experience may be considered in lieu of a degree.

Desired Skills:
  • Experience serving as an ISSO or comparable cybersecurity professional within a DoD environment.
  • Experience supporting SCI and/or SAP information systems.
  • Familiarity with SAP-specific RMF and authorization processes.
  • Familiarity with the Joint Special Access Program Implementation Guide (JSIG).
  • Experience with NIST SP 800-171 and related DoD cybersecurity requirements.
  • Experience using vulnerability-scanning and security-configuration assessment tools.
  • Experience implementing or validating DISA STIG requirements.
  • Experience supporting continuous-monitoring programs.
  • Experience with Windows, Linux, Active Directory, networking, virtualization, or other enterprise technologies.
  • Experience reviewing system logs, security alerts, or SIEM information.
  • Experience supporting cybersecurity incident response or reporting.
  • Experience participating in security-control assessments, authorization reviews, inspections, or audits.
  • Experience supporting configuration-management or change-control processes.
  • CySA+, CASP+/SecurityX, CISSP, or other cybersecurity certification appropriate to the position.
  • RMF, eMASS, NIST, JSIG, or SAP cybersecurity training applicable to assigned responsibilities.
  • Technical certification related to Windows, Linux, networking, virtualization, cloud computing, or enterprise system administration

This position description does not represent a current vacancy. However, it is intended to identify and engage candidates whose skills and experience align with roles that frequently become available at PeopleTec. Individuals who express interest may be considered for future opportunities as they arise.

Benefits offered can be found here: Benefits PeopleTec. In compliance with Colorado's Equal Pay for Equal Work Act and California's Equal Pay Act, the salary range for this role is ~$110,000 - $145,000; however, PeopleTec considers several factors when extending an offer, including but not limited to the role and associated responsibilities, a candidate's work experience, education/training, and critical skills.

#cjpost #dpost

About PeopleTec

PeopleTec, Inc. is a defense contractor that provides engineering and technical services to the United States Department of Defense and other government agencies. The company was founded in 2005 and is headquartered in Huntsville, Alabama. PeopleTec specializes in systems engineering, cybersecurity, and software development. The company has received numerous awards for its work, including the 2019 North Alabama Better Business Bureau Torch Award for Ethics and the 2018 Huntsville/Madison County Chamber of Commerce Small Business of the Year Award. PeopleTec has a strong commitment to giving back to the community and supports a variety of charitable organizations.
Learn more about PeopleTec
Size
500 employees
Industry
Net Income
$10 million
Founded
2005
5 Year Trend
+20%
Revenue
$100 million

Similar Jobs

More Jobs at PeopleTec

More Aerospace & Defense Jobs

Find similar Information Systems Security Officer (ISSO) jobs: