ASRC Federal Holding Company logo

Senior Information System Security Officer (Isso)

ASRC Federal Holding Company

  • Reston, VA
  • 2 days ago
    Want to know if you’re a fit?
    Upload your resume and let our AI show you.

    Skills

    • Analysis Skillsunmatched
    • Automationunmatched
    • CCSP - Cisco Certified Security Professionalunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Certification & Accreditation Process (C&A)unmatched
    • Cloud Computingunmatched
    • Communication Skillsunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Configuration Managementunmatched
    • Contingency Plansunmatched
    • Documentationunmatched
    • Documentation Planunmatched
    • FIPS (Federal Information Processing Standards) 199unmatched
    • FISMA - Federal Information Security Management Actunmatched
    • Federal Compliance Regulationsunmatched
    • Federal Governmentunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Inventory Managementunmatched
    • Maintain Complianceunmatched
    • Policy Developmentunmatched
    • Privacy Controlsunmatched
    • Privacy Impact Assessment (PIA)unmatched
    • Procedure Developmentunmatched
    • Process Improvementunmatched
    • Regulatory Complianceunmatched
    • Requirements Managementunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Risk Management Framework (RMF)unmatched
    • Security Analysisunmatched
    • Security Monitoringunmatched
    • Support Documentationunmatched
    • System Integration (SI)unmatched
    • System Lifecycleunmatched
    • Systems Maintenanceunmatched
    • Training/Teachingunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Vulnerability Scannersunmatched

    Description

    ASRC Federal Data Networx is seeking a Senior Information System Security Officer (ISSO) to support federal cybersecurity and Risk Management Framework (RMF) activities for enterprise information systems. The ISSO serves as the primary cybersecurity and privacy advisor to System Owners (SOs), ensuring security and privacy requirements are integrated throughout the system lifecycle while maintaining compliance with federal regulations and Authorization to Operate (ATO) requirements.Key Responsibilities

    Serve as the primary cybersecurity and privacy advisor to System Owners for assigned systems.Lead RMF activities, including development and maintenance of System Security and Privacy Plans (SSPPs), authorization packages, risk documentation, and supporting artifacts.Ensure systems maintain Authorization to Operate (ATO) through assessment support, continuous monitoring, and compliance with NIST RMF, FISMA, and federal security requirements.Assess security risks, validate security controls, and coordinate remediation of vulnerabilities and Plans of Action and Milestones (POA&Ms).Maintain system inventories, security documentation, contingency plans, configuration management plans, and privacy documentation.Collaborate with ISSMs, System Owners, Security Control Assessors, and technical teams to integrate security throughout the system lifecycle.Monitor system security posture, review vulnerability and compliance scan results, and support continuous authorization initiatives.Provide cybersecurity guidance, develop security policies and procedures, and deliver security awareness training.Support security engineering, certification and accreditation activities, and implementation of security controls across systems.Recommend process improvements and automation opportunities to enhance RMF and cybersecurity operations.

    Required Qualifications

    Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, Information Technology, or a related field.Minimum 5-7 years of experience supporting information assurance, cybersecurity, RMF, or information system security, or an equivalent combination of education and experience.Experience supporting federal cybersecurity programs and the NIST Risk Management Framework (RMF).Experience developing and maintaining RMF documentation, authorization packages, and Governance, Risk, and Compliance (GRC) tools.Strong knowledge of NIST SP 800-37, NIST SP 800-53, FISMA, FIPS 199, and federal privacy requirements.Experience supporting Authorization to Operate (ATO), Continuous ATO (cATO), or Continuous Authorization efforts.Strong analytical, communication, documentation, and stakeholder engagement skills.

    Required Certifications

    Certified Information Systems Security Professional (CISSP)Certified in Governance, Risk and Compliance (CGRC) or Certified Cloud Security Professional (CCSP)

    Preferred Qualifications

    Experience supporting U.S. federal civilian agencies, preferably the USPTO.Experience with continuous monitoring, vulnerability management, and security automation.Familiarity with cloud security, DevSecOps, and continuous authorization initiatives.Knowledge of privacy compliance activities, including Privacy Threshold Assessments (PTAs), Privacy Impact Assessments (PIAs), and System of Records Notices (SORNs).

    Numbers & Facts

    LocationReston, VA
    IndustryAerospace and Defense
    Company Size5,000 to 9,999 employees
    Year Founded2003
    Websitehttp://www.asrcfederal.com

    Benefits

    Military Leave, On Site Cafeteria, Parking, Prescription Drug Coverage, Professional Development, 401K, Employee Referral Program, Flexible Spending Accounts, Employee Events, Tuition Reimbursement, Work From Home, Life Insurance, Merchandise Discounts

    About Company

    ASRC Federal comprises a family of companies that provide mission-critical services to federal government agencies dedicated to defense, civil and intelligence support. Our customer-focused service delivery model and emphasis on operational excellence are foundational elements infused in all our companies. The reliability and quality of day-in, day-out service delivery from our family of companies ensure our customers that we keep our sights on their mission-critical priorities.

    Similar Jobs

    See more jobs