Information Systems Security Officer
Modern Technology Solutions, Inc. (MTSI) is seeking an Information Systems Security Officer for positions in Springfield, VA or St. Louis, MO. U.S. citizenship, an active TS/SCI clearance, and eligibility to obtain a CI polygraph are required.
About the Role
Support accreditation and cybersecurity for a Digital Engineering Ecosystem (DEE) supporting NGA from program stand-up. This role involves close partnership with platform engineering and the Enterprise Architect to ensure compliance and secure integration across multiple security enclaves.
Responsibilities
- Partner with platform engineering and the Enterprise Architect to ensure the Cloud Native Platform, Data Layer, and Digital Engineering tool chain meet ATO and compliance requirements across TS/SCI and future SBU/Secret/CAP-SAP enclaves.
- Build Zero Trust Architecture (ZTA) hardening into the Cloud Native Platform, coordinating directly with government security stakeholders on boundary definitions and compliance timelines as the team scales toward FedRAMP Azure Gov and NGA CORE onboarding.
- Ensure completion of assigned technical and compliance tasks within estimated time frames and budget constraints while meeting established quality standards.
- Support Authority to Operate (ATO) and compliance activities for the DEE across the Cloud Native Platform, Data Layer, and Digital Engineering tool chain.
- Validate Zero Trust Architecture (ZTA) implementation, including identity/access controls, secrets management, hardened container images, and Kubernetes policy enforcement.
- Develop and maintain security documentation (e.g., System Security Plans, POA&Ms, risk assessments) required for accreditation of DEE components.
- Support continuous monitoring, vulnerability management, and incident response coordination for the DEE environment.
- Assess security implications of new tool onboarding and architecture decisions, feeding into the program's Architecture Decision Record (ADR) process.
- Coordinate with government security stakeholders on accreditation timelines, boundary definitions, and compliance reviews as the platform scales toward external stakeholder integration.
- Support secure onboarding processes for expanding user bases and, eventually, limited external participant access.
Requirements
- Bachelor's degree in Cybersecurity, Computer Science, or a related field, or additional relevant experience in lieu of a degree.
- 5+ years of information systems security / ISSO experience within IC or DoD environments.
- Working knowledge of the Risk Management Framework (RMF) and experience supporting ATO packages for cloud-native or hybrid-cloud systems.
- Familiarity with Zero Trust Architecture principles and associated technical controls (identity federation, secrets management, policy-as-code, hardened images).
- DoD 8570/8140-compliant certification (e.g., Security+, CISSP, or equivalent) at time of hire or shortly thereafter.
Qualifications
- Experience supporting NGA, DoD, or Intelligence Community accreditation efforts.
Desired Qualifications
- Experience serving as an ISSO or ISSM of record for an accredited IC or DoD system.
- Familiarity with Kubernetes security tooling (Kyverno, OPA/Gatekeeper) and supply-chain security practices.
- Experience supporting multi-enclave environments (TS/SCI, Secret, SBU, CAP/SAP) and cross-domain solution considerations.
- CISSP, CISM, or equivalent advanced cybersecurity certification.
Clearance Requirements
- Must be a U.S. citizen with an active TS/SCI clearance and have the ability to pass a CI polygraph within 30 days.
Pay
The pay range for this position is $130,000 to $190,000 per year, with base pay varying based on established government contract ranges, job-related knowledge, skills, and experience.
Benefits
MTSI offers a full range of medical, financial, and other benefits, dependent on the position offered.