ECS Federal LLC logo

Information System Security Officer ISSO

ECS Federal LLC
  • Washington, DC
  • $140,000–$160,000 Per Year
1 day ago

Job Description

Everforth ECS is seeking an experienced Information System Security Officer (ISSO) to work in a hybrid capacity at our Fairfax, VA office.

The ISSO will support the development, authorization, and ongoing cybersecurity compliance of Jupiter, a newly established DISA IL5 AWS environment supporting CUI. The environment will house multiple U.S. Coalition Mission Partner Environments (MPE).

This position is a demanding, high energy role that requires strong cybersecurity judgement, attention to detail, and the ability to help build an RMF authorization package from the ground up across multiple enclaves in a dynamic AWS DoW environment. The ISSO will work closely with the ISSM, cloud and systems engineers, and government cybersecurity team to prepare the environment for an Interim Authorization to Test (IATT) and ultimately an Authorization to Operate (ATO).

The ideal candidate has hands-on ISSO experience supporting DoW programs, a strong working knowledge of RMF and NIST 800-53 controls, DISA STIGs, eMASS, ACAS/Nessus, POA&M management, and security authorization documentation. The candidate should be technically capable of independently investigating DTO's, control artifacts, reviewing system configurations and scan results, and working directly with engineers to validate and remediate cybersecurity findings. Experience supporting AWS DoW environments strongly preferred. The ISSO reports to the Senior Information System Security Manager.

Job Responsibilities:

  • Support RMF activities for the AWS IL5 environment throughout system development, IATT, ATO, and continuous monitoring, including security assessments, audit readiness, and authorization package updates.
  • Develop and maintain authorization artifacts, including security plans, control implementation evidence, vulnerability documentation, diagrams, inventories, risk documentation, policies, procedures, and SOPs.
  • Maintain eMASS records, including control implementation details, artifacts, assessment results, POA&Ms, risk documentation, and continuous monitoring evidence.
  • Develop, maintain, and track POA&Ms for vulnerabilities, STIG findings, control deficiencies, assessment findings, and other identified cybersecurity risks.
  • Review and validate DISA STIG artifacts and supporting evidence, including checklists, scan results, remediation evidence, mitigations, and closure documentation.
  • Perform hands-on vulnerability analysis using ACAS/Nessus, including reviewing scan results, affected assets, credentialed scan status, plugin output, remediation guidance, and scan coverage.
  • Evaluate DTOs, CVEs, cybersecurity directives, and vulnerability notifications to determine potential impact to Jupiter; configure, modify, or troubleshoot ACAS scans as necessary to validate system exposure.
  • Work with engineering teams to validate vulnerabilities and security findings, track remediation, conduct rescans and maintain supporting vulnerability and closure documentation.
  • Review the cybersecurity impact of new AWS services, applications, Kubernetes workloads, software packages, architecture changes, and system changes and ensure associated authorization documentation remains current.
  • Support and validate endpoint security, logging, monitoring, identity and access management, configuration management, and other technical security controls implemented within the environment.
  • Coordinate cybersecurity and authorization activities with engineering, program leadership, and government stakeholders.
  • Other duties, as assigned.

Salary Range: $140,000-160,000

Numbers & Facts

LocationWashington, DC
IndustryStaffing/Employment Agencies
Salary$140,000–$160,000 Per Year
Company Size50 to 99 employees
Year Founded2000
Websitehttp://www.ecs-federal.com/

About Company

ECS was founded in 2001 by experienced IT professionals with a commitment to quality processes, people and performance. Led by our Chairman, Roy Kapani, and an experienced executive leadership team, ECS provides our customers with solutions and services that support their critical needs and further mission objectives. This commitment has paved the way for expansive growth, year over year.

ECS gained market share in 2011 in the Department of Defense and Federal spaces through both organic and acquisition growth. In May, ECS completed its first strategic acquisition with the purchase of OAK Management, Inc., a leading provider of marine environmental services, ship systems engineering, maritime consulting and platform acquisition management. The OAK acquisition kicked off ECS’ intention to add tactical acquisitions as a part of its long term strategy to supplement and expand upon organic growth and to build enterprise value. ECS closed out 2011 with the acquisition of Paradigm Technologies, Inc. The Paradigm transaction added approximately 200 employees to ECS’ existing 900+ employees. Paradigm also added new Defense clients for ECS, including the Missile Defense Agency, the Navy’s Program Executive Officer for Integrated Warfare Systems, the United States Marine Corps, and the U.S. Marshals Service.

In 2012, ECS completed the acquisition of iLuMinA Solutions, Inc. iLuMinA brings large-scale Enterprise Resource Planning (ERP) software implementation and infrastructure design and development to ECS’ expanding capabilities.

ECS will continue to invest in corporate infrastructure and quality processes as we grow and enhance our ability to offer professional excellence to both our customers and our employees.

Skills

  • Access Authorizationunmatched
  • Amazon Web Services (AWS)unmatched
  • Cloud Computingunmatched
  • Computer Securityunmatched
  • Configuration Managementunmatched
  • DTOSunmatched
  • Defense Information Systems Agency (DISA)unmatched
  • Detail Orientedunmatched
  • Documentationunmatched
  • Endpoint Securityunmatched
  • Governmentunmatched
  • Identify Issuesunmatched
  • Identity Data Managementunmatched
  • Internet Securityunmatched
  • Leadershipunmatched
  • Nessusunmatched
  • Record Keepingunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • Security Analysisunmatched
  • Security Auditingunmatched
  • Security Monitoringunmatched
  • Standard Operating Procedures (SOP)unmatched
  • System Validationunmatched
  • Systems Administration/Managementunmatched
  • Systems Engineeringunmatched
  • Team Playerunmatched
  • Testingunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder