RMF / Information System Security Officer (ISSO)

Markon, LLC.

$120K — $200K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active TS/SCI w/ Polygraph clearance
  • CompTIA Security+ certification
  • Professional U.S. Government/DoD GRC and RMF experience
  • Ability to develop and maintain System Security Plans (SSPs)
  • Knowledge of the DoD Risk Management Framework
  • Familiarity with NIST SP 800-53 security controls
  • Experience with DISA STIGs and compliance documentation
  • Strong technical writing and customer-facing communication skills

Responsibilities

  • Lead the RMF process for assigned systems
  • Develop and update System Security Plans (SSPs)
  • Support systems through ATO and continuous monitoring
  • Document implementation of NIST SP 800-53 security controls
  • Coordinate findings from DISA STIGs and remediation
  • Prepare RMF documentation and authorization artifacts
  • Communicate with government customers and technical teams

Benefits

  • Support for professional development and certifications
  • Opportunity to work on government contracts
  • Collaborative team environment
  • Access to resources for continuous learning
  • Work-life balance initiatives
Full Job Description
Description

PLEX Solutions, A Part of Markon is looking for an RMF / Information System Security Officer (ISSO), to support a contract in the Annapolis Junction, MD area.

Responsibilities
  • Own and drive the RMF process for assigned systems
  • Develop, maintain, and update System Security Plans (SSPs)
  • Support systems through ATO, reauthorization, and continuous monitoring
  • Interpret and document implementation of NIST SP 800-53 security controls
  • Work with DISA STIGs, findings, remediation, and compliance documentation
  • Prepare and maintain required RMF documentation and authorization artifacts
  • Gather and organize control implementation evidence
  • Identify documentation, control, and evidence gaps and coordinate their resolution
  • Develop and maintain POA&Ms and associated remediation documentation
  • Work with engineers and system administrators to understand and document technical control implementations
  • Support government security reviews and assessment activities
  • Communicate directly with government customers, assessors, technical teams, and other stakeholders
  • Maintain authorization documentation as systems and environments change
Qualifications
  • Active TS/SCI w/ Polygraph
  • CompTIA Security+ certification
  • Professional U.S. Government/DoD GRC and RMF experience
  • Demonstrated ability to independently develop, maintain, and own SSPs
  • Working knowledge of the DoD Risk Management Framework
  • Familiarity with NIST SP 800-53 security controls
  • Familiarity with DISA STIGs
  • Experience preparing RMF/ATO documentation, control evidence, and assessment artifacts
  • Experience supporting systems through authorization and/or continuous monitoring
  • Experience working with RHEL systems
  • Strong technical writing and documentation skills
  • Strong customer-facing communication skills

Preferred Qualifications

  • Experience serving as an ISSO or equivalent RMF/GRC role
  • Docker, Kubernetes, or other container/container-orchestration experience is a major plus
  • Experience with eMASS
  • Experience developing and managing POA&Ms
  • Experience with DoD authorization packages and ATOs
  • Experience reviewing or implementing DISA STIG requirements
  • Experience with vulnerability and compliance scanning
  • Linux/RHEL system administration experience
Salary RangeUSD $120,000.00 - USD $200,000.00 /Yr.The Markon pay range for this position is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Similar Jobs

More Jobs at Markon, LLC.

  • SCIF Inspector III
    $160K — $200K *
    Washington, DC 20011 (District Of Columbia County)
    Aerospace & Defense
    In-Person
  • SCIF Inspector II (Journey-Level Inspector)
    $120K — $165K *
    Washington, DC 20011 (District Of Columbia County)
    Education, Government & Non-Profit
    In-Person
  • Senior Accreditation Analyst
    $120K — $150K *
    Washington, DC 20011 (District Of Columbia County)
    Aerospace & Defense
    In-Person
  • Program Manager
    $175K — $225K *
    Washington, DC 20011 (District Of Columbia County)
    Aerospace & Defense
    In-Person
  • Policy/Governance Analyst
    $105K — $135K *
    Washington, DC 20011 (District Of Columbia County)
    Education, Government & Non-Profit
    In-Person

More Information Technology Jobs

Find similar RMF / Information System Security Officer (ISSO) jobs: