ISSO (TS/SCI)
Zachary Piper Solutions · Colorado Springs, CO · 6 days ago
On-siteInformation Technology$80k–$120k/yrFull-time
Responsibilities
- Maintain and support the security posture of classified information systems and secure operating environments.
- Perform vulnerability assessments, risk assessments, and security reviews to support accreditation and authorization activities.
- Prepare and maintain RMF documentation including System Security Plans (SSPs), Authorization to Operate (ATO) packages, Risk Assessment Reports, Security Control Traceability Matrices, POA&Ms, and Continuous Monitoring Plans.
- Cook up Information System Security Assessments, testing activities, and compliance reviews.
- Review and process hardware, software, and external system connection requests.
- Support configuration management activities for information system security software, firmware, and hardware.
- Ensure proper response, reporting, and remediation activities are performed when vulnerabilities or incidents are identified.
- Conduct periodic evaluations of information assurance policies, procedures, and security controls.
- Cook up coordination with program security personnel and government stakeholders to ensure compliance with applicable security requirements.
- Support secure data transfers between systems operating at different classification levels.
- Aid in cybersecurity awareness, training, and security compliance activities.
Qualifications
- Bachelor’s degree in Cybersecurity, Information Security, Information Technology, or related field; equivalent experience considered.
- 5+ years of experience supporting cybersecurity, information assurance, system administration, or related security functions.
- Strong knowledge of the Risk Management Framework (RMF), NIST guidance, CNSS requirements, and federal cybersecurity standards.
- Experience supporting SAP and/or SCI environments.
- Experience handling classified information, secure data transfers, classification markings, and information protection requirements.
- Understanding of program security disciplines including OPSEC, personnel security, program protection, classification management, and security training.
- Experience supporting Windows environments with working knowledge of Linux systems.
Preferred
- Master’s degree in Cybersecurity, Information Security, or related field.
- Experience with eMASS, XACTA, ACAS, Nessus, STIGs, SCAP, Splunk, and related cybersecurity tools.
- Knowledge of JSIG, ICD 503, NIST SP 800‑53, NIST SP 800‑53A, CNSSI 1253, and Assessment & Authorization processes.
- Experience conducting information system audits and assessments.
- Understanding of CPSO responsibilities, DD254 requirements, and broader program security functions.
Compensation
Salary range: $80,000 – $120,000, depending on experience and qualifications.
Benefits
Comprehensive benefits package including medical, dental, vision, 401k, paid time off, 11 federal holidays, and sick leave.