(691) Mid Information Systems Security Officer
Arlo Solutions
Mid Information Systems Security Officer
Washington, DC
Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future.
The Mid Information System Security Officer (ISSO) (IAM 2) will support the Defense Security Cooperation Agency (DSCA) Cybersecurity (CYBR) team by providing expertise in Risk Management Framework (RMF) activities, security control assessments, controls validation, and continuous monitoring. The role involves ensuring compliance with RMF, IT, and Federal Information System Controls Audit Manual (FISCAM) guidelines, and supporting the cybersecurity responsibilities detailed in the DSCA CYBR Service Catalog.
Work Location: DSCA HQ D.C. or Mechanicsburg PA
Clearance: Active Secret Clearance Must be a U.S. Citizen
Responsibilities and/or Success Factors:
- Produce all required DOD compliance documentation for RMF, Audit Response and Remediation, Cyber Task Orders, Required Scorecards, Privacy documentation, and other compliance requirements as detailed in the DSCA CYBR Service Catalog.
- Draft and coordinate cybersecurity-related documentation to meet required standards, controls, and metrics.
- Support all steps of the RMF process (Steps 0-6) required to gain and maintain DOD Information Network (DODIN) and agency commercial network authority to operate.
- Assist in categorization, control selection, implementation, and tailoring support, as well as support of assessments from the ISSO role.
- Prepare and validate controls in eMASS packages for assessment and review.
- Ensure that control requirements are well-defined and that necessary documentation and evidence are gathered for validation and assessment.
- Work in the DOD GRC tool Enterprise Mission Assurance Support Service (eMASS) to support control validation.
- Conduct continuous monitoring of information systems to detect vulnerabilities, threats, and security incidents.
- Utilize security tools and technologies to perform regular scans, assessments, and analysis of system vulnerabilities.
- Maintain and update continuous monitoring processes and procedures to ensure they are effective and aligned with organizational requirements.
- Assist in the configuration and maintenance of security tools and technologies provided by the CSSP.
- Assist in the detection, analysis, and response to cybersecurity incidents.
- Participate in incident response activities, including triage, containment, eradication, and recovery.
- Document and report on incident response activities, providing detailed analysis and recommendations for improvement.
- Provide support to the Watch Officer in monitoring and managing cybersecurity events and incidents.
- Maintain situational awareness of the organization's security posture and emerging threats.
- Assist with the performance of daily and ad hoc/on-demand vulnerability scans, monthly audit scans, and monthly discovery scans.
- Provide weekly vulnerability compliance reporting to ISSMs.
- Review and adjust assets, subnets, credentials, and policies to properly manage C5ISR provided Assured Compliance Assessment Solution (ACAS) solutions.
- Track and ensure configuration compliance of Enterprise Security Services (ESS) Suite with RMF, ATO, and Inspection requirements.
- Assist with the maintenance of completed security waiver forms in coordination with EADSD and ISSM (PMO).
- Work with TSD to implement effective scanning, COAMS System Registration, and Continuous Monitoring Scoring (CMRS) Tagging.
- Maintain and update Ports, Protocols, and Services Management (PPSM) records, including emergency and exception requests.
- Support the maintenance and accuracy of DoD Allow List entries.
- Maintain accurate and up-to-date documentation of all RMF, IT, and FISCAM controls validation activities.
- Prepare and submit regular reports on the status of security controls, RMF activities, and DevSecOps pipeline security.
- Provide detailed documentation and evidence to support security assessments and audits.
- Support the maintenance and configuration needed to maintain accurate ingestion of logs from all assets.
- Provide summaries of events/incidents, including time of event/incident, anomalous activity identified, asset names and IPs, affected users, and POC for outreach/additional actions.
- Complete Cybersecurity Incident Reporting Forms and assist with the detection and analysis of cybersecurity events and incidents.
- Support accurate IR POC list, accurate hardware/software and IP inventory, and accurate summary of event/incident.
- Document efforts involved in mitigating cybersecurity-related events/incidents that occur within the enterprise.
- Support the generation of performance monitoring reports to monitor asset availability.
- Support the correlated agency-level POA&Ms
Minimum Qualifications Including Certificates:
- Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field is required OR additional four (4) years of experience
- Strong understanding of Risk Management Framework (RMF) processes and security control assessments, including experience with categorization, control selection, implementation, and assessment.
- Minimum of two (2) years of relevant experience in cybersecurity, information assurance, or a related field.
- Experience in IT controls validation and familiarity with Federal Information System Controls Audit Manual (FISCAM) guidelines.
- Experience in incident response, continuous monitoring, and vulnerability management.
- Proficiency in using security assessment tools and platforms such as eMASS (Enterprise Mission Assurance Support Service).
- Familiarity with continuous monitoring processes and tools.
- Experience with incident response processes and tools.
- Knowledge of cybersecurity frameworks and standards, such as NIST, ISO 27001, and CIS Controls.
Desired Qualifications:
- Certifications such as CSSP, CISM, CISA, CAP, Security+, or equivalent is highly desirable.
- Experience with OKTA
- Experience as an ISSO or otherwise prior experience with IT Risk Management Framework Support.
AAP Statement
We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.
$62k - $141k
Phase2 Technology in Arlington, Virginia is seeking an Information System Security Officer, Mid, to ensure information system security controls are implemented and continuously monitored. Responsibilities include conducting security hardening, vulnerability management,...Suggested- A reputable IT services provider in Washington is seeking a Mid-Level Information System Security Officer (ISSO). The role involves ensuring the confidentiality, integrity, and availability of information systems. Responsibilities include implementing security controls,...Suggested
$62k - $141k
Information System Security Officer, Mid The Opportunity Perform analysis of policies and procedures to ensure information system security controls are implemented and continuously monitored throughout the system development life cycle. Conduct hands‑on validation and...SuggestedContract workLocal area- ...resources for a wide range of IT and security solutions at best‑value pricing.... ...solutions that enhance system functionality, while maximizing reliability... ...XPECT Solutions is looking for a Mid‑Level Information System Security Officer (ISSO). The Information System Security...SuggestedTemporary workWork experience placement
$120k - $181k
...talented individual to join AIS as a Lead Security Engineer. Core Knowledge & Skills... ...the unique needs of our client as a Information System Security Officer, Senior. Position Summary The... ...strategies Mentor Junior and Mid-level ISSOs Interface with ISSMs,...SuggestedContract work- 4275 Information Systems Security Officer 4275 | Top Secret Job Description: OVERVIEW: We are seeking a mid-level ISSO for our mission critical customer in Washington, DC. You will work as part of a highly talented team providing security compliance expertise...
- ...Everforth ECS Federal is seeking an experienced Information System Security Officer Sr. (Cloud) to support cybersecurity, risk management, and Security... ...to-service security considerations. Mentor junior and mid-level cybersecurity personnel by providing technical...Contract workWork experience placement
- ...Information System Security Officer (ISSO) Employment Type: Full-Time, Mid-Level Department: Administrative and Logistics Support As a FSR ISSO, you will be embedded on-site with U.S. Government customers to ensure the secure, compliant operation of a production...Full timeFlexible hours
$100k - $150k
...civilians with intelligent systems. Its products include the... ...product lines. With offices and facilities across the... ...operations worldwide. For more information, visit Follow Shield AI... ...: We are seeking a mid-level Information System Security Officer (ISSO) to support...Full timeTemporary workPart timeWorldwide- Job order - J1225-1857 - Permanent Full Time Title Cloud Information Systems Security Officer (Cloud ISSO) - Mid‑Level Category Cyber Security City Washington, District of Columbia, United States Job Description US CITIZENSHIP AND ACTIVE TOP SECRET CLEARANCE IS REQUIRED...Permanent employmentFull timeContract workLocal area
- ...Job Description Job Description SECURITY CLEARANCE REQUIREMENT: TS, WITH SCI ELIGIBILITY... ...and Management to improve the Information Assurance (IA) posture of a federal... ...Security performed by the Information System Security Officer (ISSO) at a minimum, shall consist of...Contract workWork experience placementRemote work
- Job Family: IT Cyber Security Travel Required: None Clearance Required: Active... ...We are seeking a highly experienced Information Security Systems Officer (ISSO)- to support a major federal initiative... ...artifacts. Mentor junior and mid‑level ISSEs and act as a technical...Temporary workFlexible hours
$100k - $140k
...A certified small business in Washington, DC, is seeking an experienced Information Systems Security Officer. The role involves creating and maintaining security policies, managing Information Assurance measures, and implementing security plans for federal systems. Candidates...Flexible hours- ...A cybersecurity solutions provider in Washington, DC is seeking an Information Systems Security Officer (ISSO) to oversee security configurations and ensure compliance across information systems. The ideal candidate will have a Top Secret Security Clearance and at least...
- ...Resources by Cherry Bekaert in Arlington, VA is seeking a Head of Information Security / CISO. In this executive role, the successful candidate... .... Required qualifications include a degree in Information Systems or related fields, with industry certifications and at least...
- ...approaches and techniques. Mid-Level Analysts have the knowledge... ...expertise to surface combat system program offices. Lead efforts to bring platform information technology systems through the... ...including categorization, security planning, POA&M updates, review...Work at office
- ...you regarding the next step in your career. Come join our team! Zantech is looking for a talented Cybersecurity Information System Security Officer to be responsible for technical cybersecurity efforts in coordination with the Lead ISSO, for an upcoming Onsite role...Contract work
- ...to talk with you regarding the next step in your career. Come join our team! Zantech is looking for a talented Senior Information System Security Officer to be responsible for the most complex systems and serves as the Cybersecurity Division's primary point of contact...Contract work
$160k - $175k
...Information Systems Security Officer Sme Everforth ECS is seeking an Information Systems Security Officer SME to work in our Washington, DC office. Please note: This position is contingent upon contract award. We are seeking a cleared Information Systems Security...Contract workWork at office- ...confidentiality, integrity, and effectiveness of security-related initiatives. The SME works cross-functionally to evaluate systems, identify vulnerabilities, and recommend... ...the development and implementation of information security policies, standards, and guidance....
- ...Senior Information Systems Security Officer (ISSO-S) Location: Fort Meade, MD This role requires an ctive Top Secret/SCI with Polygraph and begins immediately . The position leads cybersecurity policy development, compliance efforts, and security oversight...Immediate start
$113k - $188k
...practice, you will lead and execute core security compliance and RMF activities for classified federal systems. You will ensure systems maintain an... ...engagement. What You Will Do : The Information Systems Security Officer ( ISSO ) serves as the primary liaison...Temporary workFlexible hours- ...documentation, including Body of Evidence artifacts, SSPs, and related security documentation within eMASS to support authorization and continuous monitoring activities. Serve as the Information System Security Officer (ISSO) for assigned Joint Service Provider (JSP) systems...Permanent employmentLocal area
$95k - $110k
...Information Systems Security Officer (ISSO) Location: Washington, DC (Onsite) Clearance: Top Secret Status: Exempt Salary: $95k - $110k per year Responsibilities: Work as part of the IT Security Support Team which manages and operates an information systems...Local area- ...Tactibit Technologies provides innovative information technology, cybersecurity, and cloud support services to the Federal Government... ...in everything we do. About the Information System Security Officer position We are looking for a talented cybersecurity professional...Flexible hours
- ...Information System Security Officer / ISSO NXTKey provides commercial and government entities with the horsepower to drive their business machine faster and more efficiently to successful outcomes. To support our customers needs; we excel at providing Cyber Security...
$100k - $115k
...succeed while fostering a culture of collaboration and excellence. The Opportunity We are currently seeking an Information System Security Officer (ISSO) to support a federal government customer. This is a remote position supporting cybersecurity, compliance,...Remote work- ...iQuasar, LLC is seeking a motivated Information System Security Officer to join our team. The ideal candidate will have a Bachelor's degree in Computer Science or a related four-year technical field, along with 4+ years of IT experience in NIST Cybersecurity Risk Management...Work at office
$120.03k
...Job Description Information Systems Security Officer (ISSO) II Location: JB Anacostia-Bolling, DC Salary: $120,028.24 Minimum Clearance Requirement: Active Top Secret Clearance with eligibility for Sensitive Compartmented Information (SCI) and Special Access...Contract work- ...particular focus on Defense and National Security mission sets. We leverage more than... ...and motivated individuals with Systems Administration, Software Development... ...backgrounds to join our team as an Information System Security Officer (ISSO). You will collaborate with other...For contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to (691) Mid Information Systems Security Officer. Be the first to apply!
- remote ciso Washington DC
- chief information security officer Washington DC
- information security officer iso Washington DC
- ciso Washington DC
- chief information security officer ciso Washington DC
- information systems security officer Washington DC
- information security officer Washington DC
- business information security officer Washington DC
- information technology system analyst Washington DC
- management information systems director Washington DC

