Senior ISSO/Team Lead
Systems Planning & Analysis · Colorado Springs, CO · 1 wk ago
Information Technology$125k–$135k/yrFull-time
Responsibilities
- Support the United States Space Force (USSF) Space Systems Command with their mission responsibilities.
- Lead the ISSO/ISSE team to ensure the security posture is met and maintained.
- Create and maintain RMF documentation, including eMASS and ITIPS database entries with SSP, SAR, POA&M, and other NIST processes artifacts.
- Maintain cybersecurity baselines via eMASS or equivalent, and track system’s cybersecurity baselines.
- Review, assess, create, and update enclave documentation in eMASS and CM systems for ISSM review and approval.
- Identify, collect, review, and maintain RMF required artifacts according to cybersecurity policies, guidance, and plans.
- Maintain cybersecurity data for systems registered in ITIPS according to FISMA requirements.
- Conduct and/or report annual FISMA security reviews, contingency test completion dates, and validate cybersecurity control compliance.
- Perform annual control validations (ACVs) for NC3 systems and non-NC3 systems in accordance with AFGSC and SMC/ECP policies.
- Create and maintain mission common control packages and serve as the common control provider for each mission system.
- Create and maintain ATC guest system packages in eMASS for non-USSF systems connected to SMC/ECP systems.
- Ensure the required cybersecurity functional activities and actions during the systems’ Operation and Support (O&S) phase are conducted.
- Evaluate system’s sources of changes such as DRs, PRs, CRs/CPs, RFCs, and AF Form 1067s, and update RMF artifacts accordingly.
- Document all findings and prepare letters of assurance, security impact letters, and risk assessment letters.
- Monitor and adhere to the system’s A&A schedule deadlines.
- Review and provide recommended updates to program cybersecurity policies and plans.
- Assist with the cybersecurity vulnerability management plan and risk assessment capability.
- Receive and review ACAS and SCC reports from the sustainment contractor quarterly and characterize risk for each system semi-annually.
- Provide monthly reporting on team status.
- Provide performance reviews on assigned team members on a routine basis.
- Represent team concerns to the customer.
Qualifications
- Active DoD TOP SECRET clearance with SCI eligibility.
- Bachelor's Degree with 4 - 6 years of experience in IT/RMF/GRC and leadership; Master's degree equivalent to 4 years experience.
- Meets DoD 8140 Cybersecurity Analyst Mid-Level Education, Training, or Certification qualifications (CySA, Sec+, etc.).
- Reports to designated work location in Colorado Springs up to full time, based on the needs of the customer.