Information System Security Officer

Magnus Management Group LLC

  • Honolulu, HI
  • 30+ days ago
  • Full-time
Want to know if you’re a fit?
Upload your resume and let our AI show you.

Skills

  • Analysis Skillsunmatched
  • Applications Securityunmatched
  • Asset Managementunmatched
  • Best Practicesunmatched
  • Business Continuity Planning (BCP)unmatched
  • CISA - Certified Information Systems Auditorunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • CompTIA A+unmatched
  • CompTIA Network+unmatched
  • CompTIA Security+unmatched
  • Computer Securityunmatched
  • Contingency Plansunmatched
  • Continuous Improvementunmatched
  • Cryptographyunmatched
  • Dental Insuranceunmatched
  • Disaster Recoveryunmatched
  • Documentationunmatched
  • Employee Orientationunmatched
  • Enterprise Architectureunmatched
  • Enterprise Protectionunmatched
  • Federal Compliance Regulationsunmatched
  • Federal Governmentunmatched
  • Federal Information Processing Standards (FIPS)unmatched
  • GCIH - GIAC Certified Incident Handlerunmatched
  • GSLC - GIAC Security Leadership Certificateunmatched
  • Government Contractsunmatched
  • Health Insuranceunmatched
  • IT Requirementsunmatched
  • Incident Responseunmatched
  • Information/Data Security (InfoSec)unmatched
  • International Information Systems Security Certification Consortium (ISC)2unmatched
  • Internet Securityunmatched
  • Leadershipunmatched
  • Linux Operating Systemunmatched
  • Maintain Complianceunmatched
  • Mentoringunmatched
  • Microsoft Windows Operating Systemunmatched
  • Migration Strategyunmatched
  • Network Administration/Managementunmatched
  • People Managementunmatched
  • Policy Implementationunmatched
  • Reporting Dashboardsunmatched
  • Requirements Managementunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • Risk Managementunmatched
  • Risk Management Framework (RMF)unmatched
  • SSCP - Systems Security Certified Practitionerunmatched
  • Security Analysisunmatched
  • Security Architectureunmatched
  • Security Auditingunmatched
  • Security Infrastructureunmatched
  • Security Monitoringunmatched
  • Strategic Planningunmatched
  • Systems Administration/Managementunmatched
  • Systems Maintenanceunmatched
  • Technical Analysisunmatched
  • Technical Presentationunmatched
  • Technology White Papersunmatched
  • Time Managementunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • Validation Planunmatched
  • Vision Planunmatched

Description

Benefits:
  • 401(k)
  • Dental insurance
  • Health insurance
  • Paid time off
  • Vision insurance


Senior Information System Security Officer (Senior ISSO)
 


Employer: Magnus Management Group 


Department: Federal Government Program  


Location: Honolulu, HI  


Clearance: None 


Telecommute: On‑site 


Position Type: Full‑time 


 
Position Overview 


The Senior Information System Security Officer (Senior ISSO) provides expertlevel cybersecurity leadership supporting a federal government program within the Pacific Region Headquarters. This role ensures the confidentiality, integrity, and availability of federal information systems by leading security governance, advising senior leadership, and overseeing compliance with federal cybersecurity requirements. 


The Senior ISSO serves as a technical authority, guiding system owners, administrators, and program leadership through the implementation of NIST‑aligned security controls, risk management processes, and enterprise security strategies across mission‑critical federal systems. 



Senior
Level Responsibilities 


Cybersecurity Leadership & Governance 


  • Serve as the primary cybersecurity advisor to federal program leadership, system owners, and technical teams on all matters related to IT security, risk, and compliance. 
  • Lead the development, implementation, and continuous improvement of the program’s cybersecurity posture in alignment with federal directives and policies. 
  • Oversee the application of NIST SP 800‑series guidance, FIPS requirements, and federal IT security standards across all assigned systems. 
  • Direct the creation, review, and maintenance of security policies, procedures, standards, and governance documentation

Risk Management & Compliance 


  • Lead the execution of the Risk Management Framework (RMF) lifecycle, including categorization, control selection, implementation, assessment, authorization, and continuous monitoring. 
  • Develop and maintain system security plans (SSPs), POA&Ms, security assessment reports, and other RMF artifacts. 
  • Conduct senior‑level risk analyses, recommending mitigation strategies and presenting risk decisions to Authorizing Officials and senior stakeholders. 
  • Ensure compliance with federal IT security baseline policies and all applicable federal cybersecurity requirements. 

Technical Security Expertise
 


  • Provide expert guidance on the implementation and monitoring of security controls across Windows, Linux, and hybrid enterprise environments. 
  • Oversee the use of enterprise security tools such as Cybersecurity Asset Management, Tenable Security Center, and other vulnerability, configuration, and compliance platforms. 
  • Lead the development and validation of contingency plans, backup strategies, and disaster recovery procedures, ensuring alignment with NIST SP 800‑34 and related guidance. 
  • Provide senior‑level expertise in encryption technologies, secure configurations, and data protection best practices. 

Security Operations & Continuous Monitoring
 


  • Direct vulnerability management activities, ensuring timely remediation and reporting of findings. 
  • Lead incident response coordination with federal cybersecurity teams, providing expert analysis and documentation. 
  • Oversee continuous monitoring activities, dashboards, and reporting to ensure ongoing compliance and operational readiness. 

Documentation, Reporting & Executive Communication
 


  • Develop high‑quality white papers, technical briefs, and decision documents for senior leadership. 
  • Present complex cybersecurity issues and recommendations to executives, system owners, and cross‑agency partners. 
  • Lead security reviews, audits, and assessments, ensuring accurate and complete documentation. 

Collaboration & Stakeholder Engagement
 


  • Coordinate with federal CIO offices, cybersecurity leadership, system owners, network administrators, and external partners to ensure a unified security posture. 
  • Mentor junior ISSOs, analysts, and technical staff, providing guidance on federal cybersecurity practices and NIST frameworks. 
  • Represent the Pacific Region program in enterprise‑level cybersecurity working groups and governance boards. 
 
Required Technical Skills 


  • Expert knowledge of US Federal IT security policies, implementation standards, and NIST SP 800‑series and FIPS requirements. 
  • Advanced proficiency applying IT security concepts, methodologies, and tools, including vulnerability management, asset management, and enterprise security platforms. 
  • Deep experience with enterprise architecture and security engineering principles. 
  • Senior‑level expertise in contingency planning, continuity of operations, and disaster recovery aligned with NIST guidance. 
  • Comprehensive understanding of encryption technologies, secure data handling, and cryptographic best practices. 
  • Demonstrated mastery of IT security tools, applications, and implementation techniques across diverse federal environments. 

Required Experience 


Experience must include federal government projects/contracts involving: 


  • Minimum of 10 years of progressive experience in federal cybersecurity, information assurance, or IT security operations, including direct support to federal programs and execution of NIST‑based security frameworks. 
  • Leading the development of IT security requirement solutions, including authoring white papers, technical analyses, and executive‑level documentation. 
  • Directing the creation of solution migration strategies, implementation plans, and security engineering roadmaps. 
  • Developing, implementing, and governing IT security policies, procedures, and standards across enterprise environments. 
  • Serving as a senior advisor to leadership on cybersecurity risk, compliance, and system authorization activities. 
  • Managing RMF activities for complex or high‑impact federal systems. 
 
Required Certifications 


At least one senior level certification must be included: 


  • CompTIA A+, Network+, Security+ 
  • GCIH, GSE, GISP, GSLC 
  • ISC2 CAP, SSCP, CISSP 
  • CISA, CRISC 
  • SCNP, SCNA 

Numbers & Facts

LocationHonolulu, HI
Job TypeFull-time

Similar Jobs

See more jobs