Information System Security Officer
Red Cedar Consultancy, LLC · Randolph Air Force Base, TX · 2 days ago
Information TechnologyFull-time
Responsibilities
- Maintain the system's Authority to Operate (ATO) by fulfilling all requirements outlined in the NIST Risk Management Framework (RMF)
- Conduct annual security control assessments and reviews, documenting findings and implementing corrective actions to address vulnerabilities
- Manage all system documentation and artifacts within the eMASS system, ensuring accuracy and completeness
- Develop and maintain the System Security Plan (SSP) and other required security documentation
- Stay abreast of emerging threats and vulnerabilities, recommending and implementing security enhancements to mitigate risks
Requirements
- A minimum of 3 years of experience serving as an Information Assurance/ISSO in a regulated and compliant environment
- NIST RMF, Security Control Assessments, eMASS, System Security Plan (SSP), Vulnerability Management
- CISSP or CISM (IAM Level II) certification required