Information Security Systems Officer - DOL

TechSur Solutions
  • Washington, DC
    11 days ago

    Job Description

    TechSur Solutions is a digital services company whose mission is to enable digital transformation for our customers to improve quality and efficiency. Based in the DC metropolitan area, TechSur specializes in advanced cloud services, modernization for both IT structures and applications, leveraging Agile development, and Data Analytics. Since we were formed in August of 2016, we have supported multiple impactful and exciting government programs.

    TechSur is seeking an Information System Security Officer to support DOL OCIO/ETA SWARAS security compliance, authorization, continuous monitoring, vulnerability management, POA&M remediation, risk register maintenance, and security documentation. This role serves as the security compliance lead for a FISMA Moderate application ecosystem and coordinates with DOL OCIO cybersecurity stakeholders, application teams, database teams, and program leadership.

    Key Responsibilities

    • Lead SWARAS FISMA Moderate compliance support, including NIST 800-53 controls, NIST 800-171 alignment, FIPS, HSPD-12/PIV, TIC, and DOL security policy compliance.
    • Maintain CSAM artifacts, system security documentation, security/privacy plans, risk registers, POA&Ms, audit responses, and ATO support documentation.
    • Analyze vulnerability scan results, audit findings, penetration testing results, and security control assessments, then coordinate remediation with DevSecOps, DBA, and system owner stakeholders.
    • Track POA&M milestones, remediation timelines, evidence packages, and closure documentation within Government-defined timelines.
    • Support secure SDLC controls, code review evidence, static/dynamic testing evidence, third-party/open-source component tracking, and security release gates.
    • Support incident response requirements, including rapid escalation for PII-related incidents and coordination with DOL OCIO security stakeholders.
    • Provide security input for CPIC reporting, portfolio data calls, continuous monitoring, and governance reviews.

    Required Qualifications

    • 5+ years of federal cybersecurity, ISSO, RMF, ATO, or security compliance experience.
    • Hands-on experience with FISMA Moderate, NIST 800-53, RMF, POA&M management, vulnerability management, security documentation, and ATO support.
    • Experience Supporting Department of Labor IT programs is REQUIRED.
    • Experience coordinating remediation across application, database, infrastructure, and DevSecOps teams.
    • Strong understanding of federal security documentation, security control assessment findings, remediation planning, and continuous monitoring.
    • U.S. Citizenship and ability to obtain and maintain DOL Public Trust suitability.
    • Prior DOL OCIO, ETA, CSAM, ATO, or federal civilian ISSO experience.
    • Security+, CISSP, CISM, CAP, CGRC, CEH, or equivalent security certification.
    • Experience with Splunk, ServiceNow, Jira, Confluence, SolarWinds, SAST/DAST, and vulnerability scanning tools.

    All your information will be kept confidential according to EEO guidelines.

    Numbers & Facts

    LocationWashington, DC

    Skills

    • Access Authorizationunmatched
    • Agile Programming Methodologiesunmatched
    • Analysis Skillsunmatched
    • Atlassian JIRAunmatched
    • CISM - Certified Information Security Managerunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Call Monitoringunmatched
    • Cloud Computingunmatched
    • Code Reviewsunmatched
    • CompTIA Security+unmatched
    • Computer Securityunmatched
    • Data Analysisunmatched
    • Database Administrationunmatched
    • Documentationunmatched
    • Ecosystemsunmatched
    • FISMA - Federal Information Security Management Actunmatched
    • Federal Information Processing Standards (FIPS)unmatched
    • Governmentunmatched
    • Incident Responseunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Open Sourceunmatched
    • Penetration Testingunmatched
    • Privacy Controlsunmatched
    • Quality Managementunmatched
    • Riskunmatched
    • Security Analysisunmatched
    • Security Complianceunmatched
    • Security Monitoringunmatched
    • Security Policyunmatched
    • ServiceNowunmatched
    • Software Development Lifecycle (SDLC)unmatched
    • Splunkunmatched
    • Support Documentationunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • United States Citizenunmatched
    • Vulnerability Scannersunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder