Jobs · Information Technology · Utah

Information System Security Officer (ISSO) Senior

Torch Technologies, Inc. · Hill Air Force Base, Utah, United States · Yesterday
Information TechnologyFull-time

About the role

Torch Technologies is seeking a Senior Information System Security Officer (ISSO) to support the Aerospace Dominance Enabler Division (AFLCMC/C3BM) at Hill AFB in Ogden, Utah.

Responsibilities

  • Supports the protection, accreditation, and ongoing security posture of Air Force information systems.
  • Conducts risk assessments, supports accreditation activities, evaluates system security controls, and helps enforce policies, configurations, and user access standards.
  • Maintains monitoring for vulnerabilities, assists with incident response actions, maintains compliance artifacts, and supports secure system design efforts.
  • Ensures all systems and applications meet DoD and Air Force cybersecurity requirements as directed by the Information System Security Manager (ISSM).
  • Protects the confidentiality, integrity, and availability of systems, networks, and data by developing, implementing, and maintaining cybersecurity programs, policies, procedures, and security tools.
  • Supports all Risk Management Framework (RMF) authorization and accreditation activities, including configuration, artifact creation, documentation, and compliance reviews.
  • Affords assistance in performing risk and vulnerability assessments on planned and operational information systems, identifies security gaps and recommends mitigation actions.
  • Conducts security evaluations, audits, and reviews; supports development of system contingency and disaster recovery plans; and promotes user compliance with cybersecurity policies and training requirements.
  • Participates in system and network design efforts to ensure appropriate security controls and RMF activities are incorporated from the start.
  • Affords assistance in the collection, analysis, and preservation of digital evidence related to cybersecurity incidents or policy violations.
  • Maintains the operational security posture of assigned IT systems, monitors situational awareness, and implements actions to improve or restore cybersecurity resilience.
  • Enforces Air Force cybersecurity policies, procedures, configuration guidelines (e.g., STIGs/SRGs), and change management processes.
  • Maintains and audits authorized user access documentation and ensures users meet clearance, need-to-know, and annual training requirements.
  • Reports security incidents or vulnerabilities to the ISSM and supports implementation of corrective or protective measures.
  • Initiates and tracks exceptions, deviations, or waivers to cybersecurity requirements as needed.

Requirements

  • U.S. Citizenship
  • IAT Level II (Security+, GSEC, CCNA-Security, Certified Systems Security Professional (CISSP), or equivalent certification
  • Requires strong attention to detail, a commitment to cybersecurity excellence, and the ability to collaborate across technical and leadership teams.
  • Must have and maintain an active Secret security clearance.

Preferred Qualifications

  • Bachelor’s or Master’s Degree in a related field and 12 years of experience discipline being performed, 5 of which must be in the DoW, OR, 15 years of directly related experience, 5 of which must be in the DoW.
  • CISSP, or equivalent certification
  • Maintains required cybersecurity certifications in accordance with AFMAN 17-1303.
  • Experience supporting Risk Management Framework (RMF) activities and cybersecurity compliance.
  • Experience using eMASS for authorization packages, artifact management, and accreditation support.
  • Vulnerability assessment and risk mitigation analysis.
  • STIG/SRG implementation and configuration management.
  • Security audits, assessments, and incident response support.
  • Information system security and operational security posture management.
  • Secure system and network design support in DoW environments.
  • Ability to develop innovative approaches to complex test problems.
  • Strong attention to quality, adequacy, and completeness of test results and conclusions.
  • Ability to deliver thorough, timely, and efficient task execution.
  • Ability to provide clear analysis and recommendations to program test leadership.

Skills

  • Strong attention to detail
  • Commitment to cybersecurity excellence
  • Collaboration across technical and leadership teams
  • Active Secret security clearance
  • Related degree and/or experience
  • Certified Information Systems Security Professional (CISSP)
  • Experience with Risk Management Framework (RMF) activities and cybersecurity compliance
  • Experience using eMASS for authorization packages, artifact management, and accreditation support
  • Vulnerability assessment and risk mitigation analysis
  • STIG/SRG implementation and configuration management
  • Security audits, assessments, and incident response support
  • Information system security and operational security posture management
  • Secure system and network design support in DoW environments
  • Ability to develop innovative approaches to complex test problems
  • Strong attention to quality, adequacy, and completeness of test results and conclusions
  • Ability to deliver thorough, timely, and efficient task execution
  • Ability to provide clear analysis and recommendations to program test leadership

Benefits

  • ESOP participation
  • 401(k) match
  • Medical, dental, vision, life insurance
  • Short-term disability, long-term disability
  • Flexible spending accounts, Health Savings Accounts and Health Reimbursement Accounts
  • EAP
  • Education assistance
  • Paid time off
  • Holidays

Similar jobs