Information System Security Officer (ISSO)

Posted 2 Days Ago
Be an Early Applicant
Ridgecrest, CA, USA
In-Office
115K-135K Annually
Mid level
Aerospace • Professional Services • Defense
The Role
Serve as an ISSO for a DoD program: implement and enforce information system security policies, perform vulnerability assessments (ACAS, STIGs, SCAP), implement OS/network STIG configurations, conduct continuous monitoring, risk assessments, and support ATO documentation (SSP, POA&Ms, SOPs). Collaborate on mitigation strategies and prepare certification artifacts for DoD systems, including satellite communications infrastructure.
Summary Generated by Built In

Description

Location: NAWS China Lake (Ridgecrest, CA)

Security Clearance Requirement: Top Secret

Telework Eligible? No, work will be performed on-site at NAWS China Lake

What You’ll Do:

As an Information System Security Officer, you will play a key role in supporting a high-visibility DoD program. In this role, you’ll help shape and enforce the information system security policies, standards, and methodologies that keep our mission-critical systems protected. Are you ready to make an impact? 

Key Responsibilities: 

  • Proposing, coordinating, implementing, and enforcing information system security policies, standards and methodologies.
  • Conducting vulnerability assessments using automated benchmarks and tools such as Assured Compliance Assessment Solution (ACAS), Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs), and Security Content Automation Protocol (SCAP) Compliance Checker. 
  • Implementing operating systems and network devices security configuration in accordance with Defense Information Systems Agency (DISA) approved Security Technical Implementation Guides (STIGs).
  • Performing security control continuous monitoring, reviewing system security plans and associated artifacts, security audits, risk analysis and developing mitigation strategies for DoD information systems.
  • Identifying Common Criteria and National Information Assurance Partnership (NIAP) certified technologies and the DISA Approved Products List (APL).
  • Preparing certification letters and Memoranda of Agreement (MoA) with system owners for interface and networking implementations.
  • Providing guidance on cross-functional cybersecurity efforts, ensuring alignment with organizational and program goals and milestones. 
  • Collaborating on documentation for Information System Authority to Operate (ATO) decisions, including SSPs, SOPs, POA&Ms, and Knowledge Articles. 
  • Conducting comprehensive risk assessments and vulnerability analyses to identify and mitigate potential threats to satellite communication infrastructures.

This description outlines the general nature and scope of the role. Additional duties may be assigned as necessary. 

Requirements

What You’ll Bring:   

  • CompTIA Security + is required. To qualify for this position, you must hold a  bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related area of study. Without a bachelor's degree, one of the following certifications is required: CISSP, SecurityX (formerly CASP+), CISM, or GSLC. Please upload copies of any relevant IT certifications you hold. 
  • Demonstrated knowledge of Information Assurance/Cybersecurity (IA/CS) and Risk Management Framework (RMF) DODI 8510.01.
  • Experience with security controls and implementation delineated in Committee of National Security Systems Instruction (CNSSI) 1253 and National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53, and the Joint Special Access Program Implementation Guide (JSIG).
  • Able to perform vulnerability assessments using Assured Compliance Assessment Solution (ACAS), Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG), the Security Content Automation Protocol (SCAP) Compliance Checker, incorporating automated benchmarks.
  • Implementing operating systems and network device security configuration in accordance with Defense Information Systems Agency (DISA) approved Security Technical Implementation Guides.
  • Performing security control continuous monitoring, security audits, risk analysis and developing mitigation strategies for DoD information systems.
  • Identifying Common Criteria and National Information Assurance Partnership (NIAP) certified technologies and the DISA Approved Products List (APL). 

Equally Important:

  • Ability to build positive, collaborative relationships across teams and with external partners.
  • Effective communicator with strong verbal and written skills.
  • Proactive, self-directed work style with the ability to operate independently.
  • Analytical thinker with proven problem-solving capabilities.
  • Highly organized, with the ability to balance competing priorities in a fast-paced environment.

ASEC is committed to providing access and reasonable accommodation in its services, activities, programs, and employment opportunities in accordance with the Americans with Disabilities Act and other applicable laws.

Security Clearance Requirement:

  • This position requires U.S. citizenship and an active DoD Top Secret clearance. Selected candidate will be subject to a government security investigation and must meet eligibility requirements for access to classified information.

Salary Range:

  • The anticipated annual salary range for this position is $115,000 - $135,000, commensurate with an individual’s experience, qualifications, and skill set. ASEC is committed to providing fair and equitable compensation. The low end of this salary range is accounting for a candidate that meets or exceeds all of the listed requirements.  

Who We Are:

ASEC offers meaningful, mission-driven work within a culture that supports your professional and personal growth. We partner with our government customers to deliver innovative solutions across engineering, information technology, training, and logistics. Above all, we are committed to doing what’s right for the Warfighter—plain and simple. Explore what makes ASEC different by visiting our website.

Why work at ASEC?

  • 100% employee-owned company. Learn more about our Employee Stock Ownership Plan (ESOP) here!
  • Comprehensive benefits package, including 11 paid holidays, medical/dental/vision coverage, HSA/FSA options, disability insurance, and more!
  • 401(k) with company match
  • Tuition assistance for undergraduate and graduate education
  • Veteran-friendly employer
  • Thriving employee culture

Not the right opportunity for you? Send this job posting to a friend!

ASEC is an Equal Opportunity Employer. We recruit, hire, train, compensate, and promote employees based on qualifications, merit, and business needs, without regard to race, color, religion, sex, national origin, ancestry, age, marital status, sexual orientation, gender identity or expression, disability, veteran status, genetic information, pregnancy or related conditions (including breastfeeding), or any other status protected by law.

ASEC also complies with all applicable pay transparency laws and will not discriminate against employees or applicants for inquiring about, discussing, or disclosing compensation.

Skills Required

  • CompTIA Security+ certification
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field
  • If no bachelor's degree, hold one of: CISSP, SecurityX (formerly CASP+), CISM, or GSLC
  • U.S. citizenship and active DoD Top Secret security clearance
  • Knowledge of Information Assurance/Cybersecurity (IA/CS) and Risk Management Framework (RMF) per DODI 8510.01
  • Experience with security controls in CNSSI 1253, NIST SP 800-53, and JSIG
  • Ability to perform vulnerability assessments using ACAS and SCAP Compliance Checker and apply DISA STIGs
  • Implement operating system and network device security configurations per DISA STIGs
  • Experience with continuous monitoring, security audits, risk analysis, and developing mitigation strategies for DoD information systems
  • Familiarity identifying Common Criteria/NIAP certified technologies and the DISA Approved Products List (APL)
  • Experience preparing ATO-related documentation (SSPs, SOPs, POA&Ms, certification letters, MOAs)
  • Strong written and verbal communication, collaboration, organization, and analytical problem-solving skills
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Denver, CO
600 Employees

What We Do

An award winning, employee-owned small business focused on providing value and innovation in the areas of engineering, training, and flight services.

Similar Jobs

Boeing Logo Boeing

Cybersecurity - Information System Security Officer (ISSO)

Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
In-Office
El Segundo, CA, USA
170000 Employees
113K-153K Annually

ASEC, Inc. Logo ASEC, Inc.

Information System Security Officer (ISSO)

Aerospace • Professional Services • Defense
In-Office
Lemoore, CA, USA
600 Employees
115K-150K Annually

ASEC, Inc. Logo ASEC, Inc.

Junior Information System Security Officer (ISSO)

Aerospace • Professional Services • Defense
In-Office
Ridgecrest, CA, USA
600 Employees
90K-110K Annually

ASEC, Inc. Logo ASEC, Inc.

Senior Information System Security Officer (ISSO)

Aerospace • Professional Services • Defense
In-Office
Ridgecrest, CA, USA
600 Employees
135K-155K Annually

Similar Companies Hiring

Allen Control Systems Thumbnail
Defense • Manufacturing
Austin , TX
350 Employees
Onebrief Thumbnail
Software • Defense
US
350 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account