Jobs · Information Technology · California

Junior Information System Security Officer (ISSO)

ASEC · Ridgecrest, CA · 3 wk ago
On-siteInformation Technology$90k–$110k/yrFull-time

Location: NAWS China Lake (Ridgecrest, CA). Work is performed on-site; this position is not telework eligible.

This position requires U.S. citizenship and an active DoD Top Secret clearance. Selected candidate will be subject to a government security investigation and must meet eligibility requirements for access to classified information.

About the role

Join a mission-focused cybersecurity team protecting critical DoD information systems. As a Junior Information System Security Officer (ISSO), you’ll play a hands-on role in vulnerability management, RMF compliance, and continuous monitoring, gaining valuable experience while directly supporting a mission-critical program. If you’re detail oriented, technically driven, and ready to grow in a high-impact security environment, this is your opportunity to make a difference.

Responsibilities

  • Support the implementation and enforcement of cybersecurity policies, standards, and procedures in alignment with DoD RMF requirements.
  • Perform vulnerability assessments using tools such as ACAS, SCAP Compliance Checker, and DISA STIG benchmarks to identify and remediate security gaps.
  • Apply and validate DISA STIG configurations across Windows, Linux, and network devices to ensure compliance with DoD security standards.
  • Assist in continuous monitoring activities, including reviewing audit logs, tracking POA&M items, and supporting security control assessments.
  • Contribute to the development and maintenance of RMF documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), POA&Ms, and related artifacts supporting ATO efforts.
  • Coordinate with system owners, engineers, and ISSMs to track vulnerabilities, implement mitigations, and support remediation timelines.
  • Review and verify compliance of hardware and software against NIAP Common Criteria certifications and the DISA Approved Products List (APL).
  • Support preparation of security authorization packages and interface agreements (MOAs/MOUs) for interconnected systems.
  • Conduct risk assessments and assist in identifying mitigation strategies to protect classified and unclassified DoD information systems.
  • Participate in cybersecurity working groups and cross-functional meetings to ensure alignment with program milestones and mission objectives.
  • Provide user awareness support and assist with incident response documentation and reporting activities.

This description outlines the general nature and scope of the role. Additional duties may be assigned as necessary.

Requirements

  • CompTIA Security+ certification is required.
  • BS degree in Information Technology, Cybersecurity, Computer Science, or related area of study is desired.
  • The following certifications are highly desired: CISSP, SecurityX (formerly CASP+), CISM, or GSLC.
  • 2-3 years of experience in the following technical areas is preferred:
    • Information Assurance / Cybersecurity (IA/CS) within DoD environments.
    • Risk Management Framework (RMF) in accordance with DoDI 8510.01.
    • Implementation of security controls aligned with CNSSI 1253, NIST SP 800-53, and JSIG.
    • Conducting vulnerability assessments using ACAS, DISA STIGs, and SCAP Compliance Checker with automated benchmarks.
    • Applying DISA STIG configurations to operating systems and network devices.
    • Supporting continuous monitoring, security audits, risk assessments, and mitigation planning.
    • Reviewing technologies for compliance with NIAP Common Criteria and the DISA Approved Products List (APL).
    • Familiarity with ICD 705, DoD 5205.07/5205.07-M (Vol 1–4), SAP policy, and JSIG requirements.

Skills

  • Ability to build positive, collaborative relationships across teams and with external partners.
  • Effective communicator with strong verbal and written skills.
  • Proactive, self-directed work style with the ability to operate independently.
  • Analytical thinker with proven problem-solving capabilities.
  • Highly organized, with the ability to balance competing priorities in a fast-paced environment.

Pay

The anticipated annual salary range for this position is $90,000 - $110,000, commensurate with an individual’s experience, qualifications, and skill set.

Benefits

  • 100% employee-owned company with an Employee Stock Ownership Plan (ESOP).
  • Comprehensive benefits package, including 11 paid holidays, medical/dental/vision coverage, HSA/FSA options, and disability insurance.
  • 401(k) with company match.
  • Tuition assistance for undergraduate and graduate education.
  • Veteran-friendly employer.
  • Thriving employee culture.

About the company

ASEC offers meaningful, mission-driven work within a culture that supports your professional and personal growth. We partner with our government customers to deliver innovative solutions across engineering, information technology, training, and logistics. Above all, we are committed to doing what’s right for the Warfighter—plain and simple.

Similar jobs