Information System Security Officer
Peraton
Responsibilities Position Overview The Information System Security Officer (ISSO) will provide cybersecurity, Information Assurance (IA), and Risk Management Framework (RMF) expertise across enterprise and mission-support environments. The ISSO will help strengthen security programs, maintain audit and Assessment & Authorization (A&A) readiness, manage cybersecurity risk, and ensure security decisions are technically sound, evidence-based, mission-aligned, and consistent with applicable requirements. The ideal candidate is a proactive security professional who can operate effectively in a mission-focused environment, translate complex cybersecurity requirements into actionable standards and controls, and collaborate with government stakeholders, system owners, engineers, vendors, and external partners. Key Responsibilities
- Identify gaps across cybersecurity, intelligence, and mission-support requirements and proactively develop, refine, and document standards that strengthen Information Assurance and RMF programs.
- Ensure new and revised standards are aligned with applicable DOE policy, IC direction, federal cybersecurity requirements, and organizational mission needs.
- Support continuous improvement of security processes, controls, procedures, and governance mechanisms.
- Translate policy and regulatory requirements into practical, implementable security guidance for technical and mission stakeholders.
- Maintain strong traceability between security requirements, controls, assessments, findings, remediation activities, and authorization decisions.
- Drive headquarters-level system audit readiness and RMF Assessment & Authorization (A&A) activities.
- Coordinate the preparation, review, validation, and maintenance of security documentation and assessment evidence.
- Support security control assessments, Plan of Action and Milestones (POA&M) management, risk determinations, remediation tracking, and authorization activities.
- Identify deficiencies and provide actionable recommendations to system owners and leadership.
- Support and coordinate incident response activities, ensuring appropriate escalation, documentation, containment, and follow-through.
- Maintain awareness of emerging threats and vulnerabilities that could affect mission systems, personnel, data, or supporting infrastructure.
- Support contingency planning, preparedness, testing, and continuous improvement activities.
- Apply a proactive risk-reduction mindset to cybersecurity operations and recommend mitigations before issues become mission-impacting events.
- Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 7 years with Ph.D. and 16 years with a HS Diploma
- Demonstrated experience as an Information System Security Officer (ISSO), Information System Security Manager (ISSM), Cybersecurity Analyst, Security Engineer, or comparable cybersecurity professional supporting federal or national security environments.
- Strong working knowledge of the Risk Management Framework (RMF), security controls, security assessment activities, authorization processes, and continuous monitoring.
- Experience supporting federal cybersecurity compliance, audit readiness, and Assessment & Authorization (A&A) activities.
- Demonstrated ability to analyze cybersecurity requirements and translate them into standards, procedures, controls, and actionable recommendations.
- Experience reviewing system changes, architectures, software, hardware, or network configurations from a cybersecurity and risk perspective.
- Strong analytical, technical writing, documentation, and briefing skills.
- Ability to work independently while coordinating effectively across multidisciplinary government and contractor teams.
- Ability to operate effectively in a fast-paced environment where mission urgency and cybersecurity rigor must be balanced.
- Experience supporting the Department of Energy.
- Familiarity with DOE cybersecurity and Information Assurance policies and procedures.
- Experience supporting classified or national security systems.
- Familiarity with IC security policies, standards, and risk-management practices.
- Relevant cybersecurity certifications such as CISSP, CISM, Security+, CAP, or equivalent credentials.
Vacancy posted more than 2 months ago
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information System Security Officer. Be the first to apply!
Related searches
- information systems security officer Washington DC
- chief information security officer Washington DC
- remote ciso Washington DC
- business information security officer Washington DC
- ciso Washington DC
- chief information security officer ciso Washington DC
- information security officer iso Washington DC
- information security officer Washington DC
- information system auditor Washington DC
- information systems manager Washington DC
