Information Systems Security Officer (ISSO)

Posted 11 Days Ago
Be an Early Applicant
Washington, DC, USA
In-Office
110K-135K Annually
Senior level
Computer Vision • Cybersecurity
The Role
Serve as the primary cybersecurity advisor for assigned systems and lead Risk Management Framework assessment and authorization activities. Develop and maintain security plans, assessments, POA&Ms, risk acceptances, agreements, and other authorization artifacts. Conduct continuous monitoring, control assessments, vulnerability reviews, impact analyses, and user account reviews. Coordinate remediation with system owners and technical teams, support audits and inspections, and help maintain compliant Authority to Operate status.
Summary Generated by Built In
Tetrad Digital Integrity (TDI) is a cybersecurity firm built for high-consequence environments where mission, complexity, and trust intersect. Our single focus has been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years!
TDI is seeking an Information Systems Security Officer (ISSO) to provide expertise needed to align and help mature the organization and technology-specific risk management plans and processes, through the implementation of the Risk Management Framework (RMF). 
 
This position is hybrid with commute to the DC area 3 times per week.
RESPOSIBILITIES: 
  • Serve as the primary cybersecurity advisor to the System Owner (SO), Information Systems Security Manager (ISSM), and Chief Information Security Officer (CISO) on all security matters related to assigned information systems.
  • Lead and support all phases of the Risk Management Framework (RMF) Security Assessment and Authorization (A&A) process, ensuring assigned systems achieve and maintain a compliant Authority to Operate (ATO).
  • Develop, maintain, and update all required RMF security documentation, including System Security Plans (SSPs), Security Impact Analyses (SIAs), Plans of Action and Milestones (POA&Ms), Risk Acceptances, Configuration Management Plans, Supply Chain Risk Management Plans, Interconnection Security Agreements (ISAs), Memorandums of Understanding (MOUs), Information Exchange Agreements (IEAs), vulnerability reports, authorization letters, and other required security artifacts.
  • Perform continuous monitoring activities to verify security controls are implemented correctly, operating effectively, and meeting cybersecurity requirements by conducting security control self-assessments, reviewing vulnerability and compliance scan results, validating system log reviews, and ensuring periodic user account reviews are completed.
  • Assess the cybersecurity impact of system changes, document findings through Security Impact Analyses, and communicate associated risks and recommendations to stakeholders.
  • Identify security control deficiencies, manage the POA&M process, and coordinate remediation efforts with system owners and technical teams to resolve vulnerabilities identified through assessments, audits, inspections, and continuous monitoring activities.
  • Collaborate with engineering, operations, and system owners to strengthen the security posture of assigned systems while ensuring compliance with organizational cybersecurity policies and RMF requirements.
  • Support internal and external security assessments, audits, and authorization activities by providing required system access, documentation, evidence, and technical guidance.
QUALIFICATIONS:
  • U.S. Citizenship is required 
  • Active CISSP, CISM, CRISC, or equivalent cybersecurity certification required.
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related technical field.
  • 5+ years of experience performing security assessments, developing RMF/A&A documentation, and supporting the authorization of enterprise systems, networks, servers, databases, or cloud environments.
  • Working knowledge of NIST Risk Management Framework (RMF), NIST security and privacy publications, and security authorization processes.
  • Experience using Archer or a similar governance, risk, and compliance (GRC) platform to support Assessment and Authorization (A&A) activities.
  • Understanding of cloud service models (IaaS, PaaS, SaaS), hybrid cloud environments, financial applications, and mobile security technologies.
PAY RANGE:
The anticipated salary range for this position is $110,000 - $135,000. This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data and applicable contract requirements, and may fall outside the posted range.

Skills Required

  • U.S. citizenship
  • Active CISSP, CISM, CRISC, or equivalent cybersecurity certification
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related technical field
  • 5+ years of experience performing security assessments, developing RMF/A&A documentation, and supporting authorization of enterprise systems, networks, servers, databases, or cloud environments
  • Working knowledge of NIST Risk Management Framework, NIST security and privacy publications, and security authorization processes
  • Experience using Archer or a similar GRC platform for Assessment and Authorization activities
  • Understanding of IaaS, PaaS, SaaS, hybrid cloud environments, financial applications, and mobile security technologies
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Washington, DC
50 Employees
Year Founded: 2001

What We Do

For over 20 years, TDI’s one and only passion has been delivering cybersecurity solutions to effectively manage the business of cyber. At the global vanguard of innovation, we created Cybersecurity Performance Management (CPM) and the industry-leading CPM platform, CnSight®. Combining CnSight® with our remarkable historical experience and our exceptional capabilities of cyber operations and compliance, we offer Managed Cybersecurity Performance, a first of its kind managed CPM offering. TDI’s CPM solutions mitigate risk, reduce ransomware, provide continuous compliance, improve cyber-ROI, and provide comprehensive instantaneous visibility into how an organization is performing against its cyber strategy, particularly for Boards of Directors. CnSight® is the industry-leading Cybersecurity Performance Management (CPM) platform which mitigates risk, reduces ransomware, provides continuous compliance, improves cyber-ROI, and provides comprehensive instantaneous visibility into how an organization is performing against its cyber strategy, so executives and Boards may effectively manage the business of cybersecurity– the result: reduced stress, better performance, less cost, and a true understanding of cyber investment. With CnSight® at its core, TDI’s Managed Cybersecurity Performance offering ensures strategic cyber goals are met to protect an organization’s investments, assets and reputation by reducing the risk of ransomware, lowering cyber insurance premiums, improving ROI, reducing legal and fiduciary liability, delivering actionable reporting to the Board and C-Suite, providing on-call advice, ensuring continuous compliance and providing subject matter expertise on the organization’s behalf in meeting with the C-Suite and the Board, dealing with auditors, and supporting budget decisions – the result: reduced stress, better performance, less cost, and a true understanding of cyber investment.

Similar Jobs

Keeper Security, Inc. Logo Keeper Security, Inc.

Senior Information Systems Security Officer (ISSO)

Mobile • Security • Software • Cybersecurity
Remote or Hybrid
US
350 Employees

Contact Government Services, LLC Logo Contact Government Services, LLC

Information Systems Security Officer (ISSO)

Information Technology • Legal Tech • Software • Consulting
In-Office
Washington, DC, USA
92K-125K Annually

General Dynamics Information Technology Logo General Dynamics Information Technology

Information Systems Security Officer (ISSO)

Aerospace • Information Technology • Professional Services • Security • Software
In-Office
4 Locations
21625 Employees
111K-150K Annually

Similar Companies Hiring

Allen Control Systems Thumbnail
Artificial Intelligence • Computer Vision • Machine Learning • Robotics • Defense • Manufacturing
Austin , TX
350 Employees
Blissway Thumbnail
Computer Vision • Fintech • Hardware • Internet of Things • Machine Learning • Software • Transportation
Denver, CO
24 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account