Astrion logo

Information System Security Officer (ISSO)

Astrion
  • Eglin Air Force Base, Florida
    8 days ago

    Job Description

    Overview:

    INFORMATION SYSTEM SECURITY OFFICER (ISSO)

    LOCATION: Eglin AFB, FL

    JOB STATUS: Full-time
    CLEARANCE: Secret, with ability to obtain Top Secret

    CERTIFICATION:CompTIA Security+

    TRAVEL: 0-10%

     

     

    Astrion has an exciting opportunity for an INFORMATION SYSTEM SECURITY OFFICER (ISSO) supporting the 96th Test Wing located at EGLIN AFB, FL.

     

     

    REQUIRED QUALIFICATIONS / SKILLS

    • Active SECRET clearance. Must be eligible for a TOP SECRET clearance. Must be a U.S. citizen.
    • Requires 10+ years of relevant experience
    • Master’s degree in the applicable discipline.
      • Bachelor's Degree plus 8 years work experience may be substituted for a Master's Degree; OR 12 years work experience may be substituted for a Master's Degree.
    • This skill level typically works on high-visibility or mission critical aspects of a given program and performs all functional duties independently.
    • CompTIA Security+ certification is required.  Other certification may be required based on constantly changing requirements.

     

    PREFERRED QUALIFICATIONS / SKILLS  

    • Technical audits and enforcement of information systems security procedures.
    • Experience working with government regulations, such as NISPOM, JAFAN, JSIG, DIACAP and Risk Management Framework.
    • Experience supporting various system configurations (Stand Alone, Local Area Networks, and Wide Area Networks).
    • Self-motivated and possess good written, verbal, listening and presentation skills.
    • Previous experience working in a classified information systems environment.
    • Familiarity with test equipment and sanitization procedures.

     

    RESPONSIBILITIES

    • The primary purpose of this position is to serve as an Information Systems Security Officer (ISSO) overseeing the cybersecurity posture and compliance of critical mission systems. Responsible for executing the Risk Management Framework (RMF) lifecycle, adhering to the DoD Joint SAP Implementation Guide (JSIG), and securing Authorities to Operate (ATOs) for Information Systems (IS).
    • Responsibilities include developing, updating, and maintaining System Security Plans (SSPs), managing Plans of Action and Milestones (POA&Ms), and conducting continuous monitoring of classified and unclassified networks.
    • Ensures systems comply with information security policies, Federal Information Security Management Act (FISMA), National Institute of Standards and Technology (NIST) controls, and applicable DoW/DoD regulations.
    • Integrates security by design, advising software developers, system administrators, and project leaders on secure architecture, hardware/software compatibility, and vulnerability mitigation. The incumbent designs and reviews security audit routines, analyzes complex security incidents, and performs risk assessments on new technologies and system modifications. Works to achieve quality improvement in security processes and takes a proactive approach to customer assistance. Maintains an up-to-date awareness of emerging cyber threats and technologies to predict future security requirements.
    • Knowledge of Information Assurance (IA) and Cybersecurity principles, concepts, and methods sufficient to evaluate new and emerging IT security technologies and ensure their successful integration into the existing and anticipated infrastructure.
    • Knowledge of the Risk Management Framework (RMF), DoD JSIG, NIST SP 800-53 security controls, and FISMA requirements to guide systems through the assessment and authorization (A&A) process and maintain continuous ATO status.
    • Knowledge of IT systems architecture, operating systems, and network infrastructure to isolate vulnerabilities, interpret vulnerability scanner results (e.g., ACAS/Nessus, STIGs), and recommend technical mitigations that support organizational business processes without compromising security.
    • Knowledge of system development life cycles (SDLC) and DevSecOps to ensure security controls are integrated early in the design phase and to evaluate the security impact of proposed modifications or new applications.
    • Ability to gather facts and use analytical methods to assess complex cybersecurity requirements, develop and manage System Security Plans (SSPs) and POA&Ms, and solve intricate security and compliance problems.
    • Ability to maintain an up-to-date awareness of technological advances and cyber threat intelligence to predict how management can securely meet future operational requirements.
    • Ability to communicate orally and in writing to brief senior leadership on cyber risks, draft comprehensive security documentation, and provide training to functional users.
    • Ability to modify and adapt precedent security solutions to unique, specialized, or Special Access Program (SAP) requirements.
    • Skill in applying agency cybersecurity policies, incident response procedures, and audit management standards.

     

    #CJ

    #FloridaJobs
    #LI-LP1

    “TMAS2_96TW”

    Numbers & Facts

    LocationEglin Air Force Base, Florida
    IndustryOther/Not Classified
    Company Size2,500 to 4,999 employees
    Websitehttps://astrion.us/about-us/

    About Company

    We are the transformative evolution of two prominent government services firms, ERC and Oasis Systems, each bringing with them a rich legacy of dedicated service to our nation’s Defense and Federal communities.

    The company brings together 2,800 employees focused on Cybersecurity, Digital Solutions, Mission Support, and Systems Engineering serving customers in more than 36 states across the U.S. with Centers of Excellence in Washington DC, Huntsville, AL and Burlington, MA.

    Our resources, deep expertise, and adaptable solutions will enable us to scale and expand development and engineering capabilities for Defense and Federal communities.

    Skills

    • Analysis Skillsunmatched
    • Auditingunmatched
    • Business Processesunmatched
    • CompTIA - Computing Technology Industry Associationunmatched
    • CompTIA Security+unmatched
    • Computer Securityunmatched
    • DIACAP - DoD Information Assurance Certification and Accreditation Processunmatched
    • Documentationunmatched
    • Emerging Technologyunmatched
    • FISMA - Federal Information Security Management Actunmatched
    • Government Regulationsunmatched
    • Hardware Architectureunmatched
    • Incident Responseunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Local Area Network (LAN)unmatched
    • Nessusunmatched
    • Network Administration/Managementunmatched
    • Operating Systemsunmatched
    • Presentation/Verbal Skillsunmatched
    • Process Improvementunmatched
    • Process Qualityunmatched
    • Regulationsunmatched
    • Requirements Managementunmatched
    • Risk Analysisunmatched
    • Risk Management Framework (RMF)unmatched
    • SAPunmatched
    • Secret Clearanceunmatched
    • Security Analysisunmatched
    • Security Attacksunmatched
    • Security Auditingunmatched
    • Security Complianceunmatched
    • Security Designunmatched
    • Security Monitoringunmatched
    • Software Developmentunmatched
    • Software Development Lifecycle (SDLC)unmatched
    • System Architectureunmatched
    • Systems Administration/Managementunmatched
    • Systems Analysisunmatched
    • Systems Maintenanceunmatched
    • Technical Supportunmatched
    • Technology Analysisunmatched
    • Test Equipmentunmatched
    • Training/Teachingunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • United States Citizenunmatched
    • United States Department of Defense (DoD)unmatched
    • Vulnerability Scannersunmatched
    • Wide Area Network (WAN)unmatched
    • Writing Skillsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder