Summary
CTC Group is seeking Information Systems Security Officers (ISSO), for a contingent program supporting the security and accreditation of classified information systems. In this role, you will help maintain a strong operational security posture, evaluate security risks and solutions, develop critical IA documentation, and work closely with ISSMs, technical teams, and Government customers to protect mission systems throughout their lifecycle.
Locations: Annapolis Junction / Ft. Meade
Responsibilities
- Implement and enforce information systems security policies, standards, and methodologies
- Support senior ISSOs and ISSMs in maintaining the appropriate operational security posture for systems, programs, and enclaves
- Perform day-to-day information system security operations and help manage security-related activities
- Evaluate security solutions to ensure classified information is appropriately protected
- Develop and maintain System Security Plans (SSPs), accreditation documentation, and other IA/security documentation
- Support Certification & Accreditation (C&A) and security authorization activities in accordance with applicable ODNI and DoD requirements
- Perform configuration management for security-relevant software, hardware, and firmware
- Maintain security records for workstations, servers, routers, firewalls, network switches, and other system components
- Assess proposed system changes and evaluate their potential security impact
- Develop and maintain system security policies and monitor compliance
- Support vulnerability and risk assessments for information systems and programs
- Administer user identification and authentication mechanisms for information systems
- Plan and coordinate IT security programs, policies, and related activities
- Support the overall Information Assurance program for assigned systems, organizations, programs, or enclaves
- Coordinate with technical teams and stakeholders to resolve security issues and maintain compliance
- For Level 3 positions, provide oversight and direction to other ISSOs and support ISSM-level security responsibilities
Requirements
- Active TS/SCI with polygraph security clearance
- Bachelor’s degree in Computer Science or related discipline from an accredited college or university is required.
- Four (4) years of additional experience as an ISSO may be substituted for a bachelor’s degree.
- Information Assurance Management (IAM) Level I (CAP/CGRC, CND, Cloud+, GSLC, Security+ CE, HCISPP)
Level 2 Qualifications
- Ten (10) years experience as an ISSO on programs and contracts of similar scope, type, and complexity is required.
- Experience is to include at least two (2) of the following areas: knowledge of current security tools, hardware/software security implementation; communication protocols; and encryption techniques/tools.
- Fifteen (15) years experience as an ISSO on programs and contracts of similar scope, type, and complexity is required.
- Experience is to include at least three (3) of the following areas: knowledge of current security tools, hardware/software security implementation; communication protocols; and encryption techniques/tools.
#CJ
Skills Required
- Active TS/SCI with polygraph security clearance
- Bachelor's degree in Computer Science or a related discipline from an accredited college or university
- Four additional years of ISSO experience may substitute for the bachelor's degree
- Information Assurance Management Level I certification, such as CAP/CGRC, CND, Cloud+, GSLC, Security+ CE, or HCISPP
- Level 2: Ten years of ISSO experience on programs and contracts of similar scope, type, and complexity
- Level 2: Experience in at least two areas including current security tools, hardware/software security implementation, communication protocols, or encryption techniques/tools
- Level 3: Fifteen years of ISSO experience on programs and contracts of similar scope, type, and complexity
- Level 3: Experience in at least three areas including current security tools, hardware/software security implementation, communication protocols, or encryption techniques/tools
What We Do
CTC Group is a Service-Disabled Veteran-Owned Small Business (SDVOSB) that delivers timely, high-quality Digital Government and Mission Solution services to the federal government. The company specializes in supporting Intelligence Community customers with mission-focused technical expertise and operational experience, employing highly-cleared professionals who possess a deep understanding of the critical environments and requirements they serve.









