Information Systems Security Officer
About the role
Quevera is seeking an Information Systems Security Officer (ISSO) with an active TS/SCI clearance with Polygraph to support mission-critical programs in Ft. Meade, Maryland. In this role, you will support the implementation, coordination, and enforcement of information system security policies, standards, and methodologies while maintaining the operational security posture of enterprise information systems. You will work alongside system administrators, software engineers, and cybersecurity professionals to support Risk Management Framework (RMF) activities, maintain security documentation, evaluate security controls, and assist with certification and accreditation efforts. You'll help ensure information systems remain compliant with government security requirements while supporting the protection of mission-critical environments.
Primary work location: East Campus Building 2, Ft. Meade, Maryland.
Responsibilities
- Support the implementation, coordination, and enforcement of information systems security policies, standards, and methodologies.
- Maintain the operational security posture of assigned information systems, programs, or enclaves.
- Collaborate with technical teams to evaluate security solutions and ensure compliance with Secure the Enterprise (STE) and Secure the Network (STN) requirements.
- Assist with configuration management activities for information system security software, hardware, and firmware.
- Assess system changes and evaluate their impact on the overall security posture of the environment.
- Develop, maintain, review, and update System Security Plans (SSPs) and other information assurance documentation supporting Authorization to Operate (ATO) and Certification & Accreditation (C&A) activities.
- Prepare and maintain Risk Assessment Reports, Security Requirements Traceability Matrices (SRTMs), and related security documentation.
- Support vulnerability assessments, risk analysis, certification, and accreditation efforts in accordance with the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF).
- Maintain security records for workstations, servers, routers, firewalls, network devices, and other enterprise information systems.
- Assist System Administrators and Software Engineers in maintaining security software, hardware, and firmware updates.
- Support Information System Security Managers (ISSMs) in maintaining the appropriate Information Assurance (IA) posture for assigned systems.
- Serve as the Approval Authority for assigned information systems, when applicable.
Requirements
- Active TS/SCI clearance with Polygraph required.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related technical discipline from an accredited college or university. Four (4) additional years of Information Systems Security Officer (ISSO) experience may be substituted for a bachelor's degree.
- Seven (7) years of experience as an Information Systems Security Officer (ISSO) supporting programs and contracts of similar scope, type, and complexity.
- Experience in at least two (2) of the following areas: current security tools, hardware and software security implementation, communication protocols, encryption techniques and security tools.
- Experience supporting information assurance, cybersecurity, or Risk Management Framework (RMF) activities.
- Experience preparing and maintaining security documentation supporting certification and accreditation efforts.
- DoD 8570 Information Assurance Management (IAM) Level I certification or higher required.
- Active Security+ certification required.
Skills
- Experience developing and maintaining System Security Plans (SSPs), Risk Assessment Reports, and Security Requirements Traceability Matrices (SRTMs).
- Experience supporting Authorization to Operate (ATO) and Certification & Accreditation (C&A) activities.
- Experience supporting NIST Risk Management Framework (RMF) implementation.
- Experience collaborating with System Administrators, Software Engineers, and Information System Security Managers (ISSMs).
- Experience supporting configuration management and enterprise security compliance initiatives.
Benefits
- 100% employer-paid medical coverage (optional plan).
- Competitive options for Medical, Dental, and Vision insurance.
- Employer-paid short-term and long-term disability coverage.
- Employer-paid life insurance.
- $5,000 annually for education, training, certifications, and professional development.
- Career advancement through a structured iQTouch Program.
- Up to 6% 401(k) match.
- Additional 4% profit-sharing contribution, at company discretion.