Information Systems Security Officer ( ISSO )
Information Systems Security Officer (ISSO)
Position Description:
We are seeking an Information System Security Officer (ISSO) to support the day-to-day cybersecurity posture of assigned information systems. This role is responsible for maintaining RMF documentation, supporting continuous monitoring, tracking vulnerabilities, managing POA&Ms, and helping ensure systems remain compliant with DoD and NIST security requirements. ISSOs are typically the hands-on security practitioners closest to the system and its operational controls.
Location: Onsite 3-5 days a week
Key Responsibilities
- Maintain and update the System Security Plan (SSP) and related RMF artifacts
- Support continuous monitoring activities, including log review, control checks, and security status tracking
- Create, update, and track POA&Ms for identified weaknesses and remediation actions
- Analyze vulnerability scan results and validate DISA STIG compliance findings Support RMF steps including categorization, control implementation, assessment, authorization, and monitoring
- Maintain system records in eMASS and support package updates
- Coordinate incident response activities for assigned systems
- Partner with system owners, admins, engineers, and the ISSM to resolve security issues