Information Systems Security Officer (ISSO) -
Full Visibility LLC is a federally certified Small Business delivering innovative technical solutions to address the nation’s most critical and sensitive missions. Founded in 2006, we support federal and state government agencies with over 100 cleared technical experts specializing in Digital, AI & Analytics, Cyber, and Engineering. With offices in the National Capital Region, Quantico, VA, and Huntsville, AL, we deliver critical technical solutions to various federal government agencies and departments.
About the role
The Information Systems Security Officer (ISSO) will work closely with customers to ensure the confidentiality, integrity, and availability of systems, applications, networks, and data through planning, analysis, development, implementation, maintenance, and enhancement of information systems security programs, infrastructure, applications, Security Assessment and Authorization (SAA), IA policy directives (PD) and guides (PG), and IA Security tools such as Tenable.io, Nessus Pro, and NMap.
The candidate will coordinate with other ISSOs to ensure requirements for interconnection, policy, and procedures are met, and all documentation is provided and updated as necessary. The ideal candidate will advise on methods such as encryption technology, vulnerability analysis, and security management standards to protect systems and applications, meeting Federal Information Security Modernization Act (FISMA) requirements.
Responsibilities
- Prepare documentation such as Configuration Management Plans, Incident Response Plans, Information System Contingency Plans, and Plan of Action and Milestones (POA&M) to ensure compliance with PDs, PGs, and Federal IA requirements.
- Identify IA vulnerabilities and coordinate with Infrastructure and Development teams to correct, mitigate, or apply for exceptions via POA&M processes.
- Review vulnerability and compliance SCAP and/or DISA STIGs scans on infrastructure and applications to ensure patch and configuration compliance (on-premises and in the cloud).
- Prepare SAA package(s) to obtain and maintain an authority-to-operate (ATO), authority-to-test (ATT), or other SAA authority types for all systems and applications.
- Attend and represent program security interests in meetings within and outside the program.
- Schedule and conduct meetings with pertinent program personnel to address findings, determine appropriate paths forward, and document within the CMP and POA&M as necessary.
- Conduct the entire Risk Management Framework (RMF) through all seven steps.
- Support information assurance and cybersecurity development of security plans or packages supporting Assessment and Authorization (A&A) of IT systems Authority to Operate (ATO).
- Work with cyber continuous diagnostics and mitigation tools, such as Splunk and Graylog.
- Review NESSUS/ACAS vulnerability scans, audit logs, Security Technical Implementation Guides (STIGs), and Information Assurance Vulnerability Alerts (IAVA).
- Assess current and evolving security threats in an operational environment.
Requirements
- Active Top Secret Clearance; this position may require the successful completion of a Counterintelligence (CI) Polygraph.
- Bachelor’s degree in Information Systems Technology, Computer Science, Engineering, or related field, and 5+ years of experience in cybersecurity or risk management. In lieu of a BS, must have 9+ years of experience with any of the following certifications: CISSP, CISM, CAP, CASP+, etc.
- Experience with application installation, configuration, and operational procedures in support of cybersecurity mandates.
- Experience reviewing vulnerability scans and audit logs.
- Ability to work ONSITE in Quantico, VA.
Pay
A reasonable salary range for this position is $170,000–$197,000, based on market pay structures and candidate qualifications such as skills, education, and experience.
Benefits
Full Visibility LLC is committed to employee development, success, and morale, demonstrated by our consecutive top ranking as the Best Place to Work by the Washington Business Journal as a thirteen-time honoree. We have also been included on the Inc. 5000 Fastest-Growing Private Companies in America list nine times since 2014.
Our benefits focus on professional and personal well-being. For detailed information on our company benefit offerings, visit https://www.fullvisibility.com/benefits.