Bowhead seeks an Information Systems Security Officer (ISSO) who will be a part of a dynamic, energetic, and mission-oriented team providing Technical Integration Management Support (TIMS) to the U.S. Customs and Border Protection (CBP) Passenger Systems Program Directorate (PSPD). The ISSO will maintain and protect the security posture of mission-critical CBP applications. This position operates during core business hours of 8:00 AM – 4:00 PM, Monday through Friday, primarily onsite in Ashburn, VA (with telework available at the discretion of the Government).
To be successful, the ISSO must be able to mitigate security risks to the enterprise and ensure all activities performed by PSPD application teams comply with federal security requirements. This work includes meticulous documentation, tracking, and continuous monitoring of information systems in accordance with FISMA, DHS 4300A, and CBP 1400-05D policies. Coordination with development teams, audit liaisons, and CBP CISO staff is key to success for this time-sensitive, schedule-driven work area.
The successful candidate must hold a current and favorably adjudicated CBP suitability background investigation or an In-Scope DoW Top Secret clearance..
The ISSO will interact with system owners, developers, Security Control Assessors (SCAs), and key government staff. Consequently, this role requires excellent customer service, analytical, and communication skills, and the ability to provide the following services:
• Serve as an experienced Information Systems Security Officer (ISSO) to maintain the security posture of PSPD applications.
• Obtain and maintain access to the DHS Cyber Security Assessment and Management (CSAM) tool to document and manage all system security artifacts.
• Develop, manage, and update critical security documentation including System Security Plans (SSP), Authority to Operate (ATO) packages, Interconnection Security Agreements (ISA), Privacy Impact Assessments (PIA), and Contingency Plans (CP).
• Monitor system security posture by coordinating with the CBP Vulnerability Assessment Team (VAT) to perform regularly scheduled vulnerability scans.
• Create Plans of Action and Milestones (POA&M) within CSAM for any identified security risks, provide remediation timeframes, and update statuses monthly.
• Review all Change Requests (CRs) for security impacts prior to presentation to the Systems Engineering Governance Board (SEGB).
• Review vulnerability scan reports and open Jira tickets to assign remediation tasks to application teams.
• Follow the Agile process for all security-related work, participating in Sprint Planning, Sprint Reviews, and daily stand-up meetings.
• Coordinate with the CBP Security Test and Evaluation (ST&E) team to support independent assessment activities and annual penetration testing.
• Actively track and verify the manual installation and renewal of Public Key Infrastructure (PKI) certificates.
• Review and approve/disapprove Technical Reference Model (TRM) requests for the use of new hardware and software.
• Provide a monthly report of accomplishments and outstanding security issues to be briefed to PSPD Division Directors.
• Other duties as assigned
• Bachelor's degree in an IT-related field.
• Minimum of eight (8) years of demonstrated experience in Information Systems Security, Information Assurance, or Cybersecurity supporting federal IT systems.
• Deep knowledge of FISMA legislation, NIST 800-53 security controls, DISA Security Technical Implementation Guides (STIGs), and DHS/CBP security policies.
• Experience utilizing enterprise risk management and security authorization tools (e.g., CSAM).
• Proficiency with security scanning and monitoring tools utilized by CBP (e.g., Splunk, Nessus, Anchore, WebInspect, DBProtect, Qualys).
• Outstanding communications skills—both written and oral—to effectively articulate complex cybersecurity risks to non-technical stakeholders and development teams.
• Ability to work in a highly collaborative, schedule-driven Agile environment.
• Prior experience supporting U.S. Customs and Border Protection (CBP) or Department of Homeland Security (DHS) systems as an ISSO is preferred.
• Active cybersecurity certifications such as CISSP, CISM, CAP, or Security+ CE is preferred.
SECURITY CLEARANCE REQUIREMENTS: Candidates must hold a current and favorably adjudicated CBP suitability background investigation or an In-Scope DoW Top Secret clearance with the ability to obtain and maintain a favorably adjudicated CBP suitability background investigation within 45 days of hire.
Physical Demands:
Targeted salary range is $130,000 to $150,000 annually based on qualifications and experience.
Please note that the salary information is a general guideline only. Bowhead considers factors such as (but not limited to) scope and responsibilities of the position, candidate’s work experience, education/training, key skills, internal peer equity, as well as, market and business considerations when extending an offer.
#LI-MN1
| Location | Ashburn, VA |
| Industry | Real Estate/Property Management |
| Salary | $130,000–$150,000 Per Year |
| Company Size | 2,500 to 4,999 employees |
| Year Founded | 1999 |
| Website | https://www.bowheadsupport.com/ |
UIC Government Services (UICGS) and its Bowhead family of companies are a division of Ukpeaġvik Iñupiat Corporation (UIC), an Alaskan Native Corporation (ANC). UIC is one of the largest ANC’s in Alaska, and combined with UICGS/Bowhead, we offer a wide variety of services to defense and civilian government agencies that reach across multiple disciplines, the U.S., and the world. With our excellent management team and great range of services in the areas of Information Technology, Logistics & Marine, Manufacturing & Products, Program Management and Operations, and Systems & Technology, we perform over 250 contracts worldwide with innovative business solutions in areas such as engineering, maintenance services, manufacturing, information technology, program support, logistics/base support, and procurement. Collectively, our 3,500+ employees of the Bowhead family of companies, UIC, UIC Government Services, UIC Government Construction, and UIC Commercial remain committed to delivering quality results to ensure our customers’ success. Headquartered in Virginia, we are a fast-growing, multi-million-dollar corporation consistently recognized as one of the top 25 8(a) certified small business companies for government contracting.
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.
Free resume templatesImprove your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.
Free resume builder