Information System Security Officer
Core
Execute security compliance activities across assigned systems, ensuring adherence to RMF requirements and supporting authorization efforts.
Role type
Senior IC Information System Security Officer (ISSO)
Builds
Secure system authorizations and compliance artifacts for federal clients
Domain
US Federal Government / Cybersecurity Compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
RMF (Risk Management Framework), NIST 800-53 security controls, system accreditation processes, security control assessment, system scoping, SSP documentation, continuous monitoring, security control testing, system lifecycle management, stakeholder coordination
Preferred skills
ATO lifecycle support, federal agency compliance environments (DoD, IC, Civilian)
Technologies
Tenable Nessus, Splunk, IBM Guardium, HP WebInspect, NMAP
Responsibilities
Perform documentation, testing, and ongoing assessment of security controls; Ensure complete system scoping including all assets and technology stacks; Clearly document and articulate control implementation in SSPs; Lead activities supporting system ATOs and reauthorizations; Ensure proper system lifecycle management including decommissioning; Maintain consistent and compliant continuous monitoring practices; Coordinate with ISSMs, engineers, and system owners to resolve security findings
Seniority
Senior, hands-on IC