Arlo Solutions logo
Arlo SolutionsPosted 1 month ago

(703) Cybersecurity Information System Security Officer (ISSO)

HybridArlington, Virginia, United States

Full TimeSmallInformation Technology Consulting

Job Summary

Lead the ISSM for multiple DoD information systems supporting OUSW(A&S) mission requirements by managing the full Risk Management Framework (RMF) lifecycle, including system categorization, control implementation, assessment, authorization, and continuous monitoring. Develop and maintain authorization packages such as System Security Plans, Security Assessment documentation, Plans of Action & Milestones, and supporting Body of Evidence. Coordinate Assessment & Authorization activities for Authorization to Operate, Interim Authorization to Test, and system reauthorization while managing vulnerability management, STIG compliance, and cybersecurity reporting. Conduct risk assessments to support Authorizing Official decisions and provide cybersecurity guidance to Government leadership, Program Managers, and engineers. Prepare executive briefings and authorization recommendations for senior leadership. This hybrid position in Arlington, VA requires an experienced ISSO with an Active Top Secret Security Clearance and 8 years supporting DoD cybersecurity programs.

Required Qualifications

  • Active Top Secret Security Clearance
  • SCI eligibility
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related field
  • Equivalent experience to Bachelor's degree
  • Minimum 8 years supporting DoD cybersecurity programs
  • Minimum 5 years supporting DoD RMF and Assessment & Authorization activities
  • Experience managing multiple RMF authorization packages
  • Experience briefing senior Government leadership
  • Excellent analytical skills
  • Excellent written skills
  • Excellent verbal skills
  • Excellent presentation skills
  • Candidates should meet applicable DoD 8140 Cyber Workforce Qualification Program requirements

Desired Qualifications

  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • CompTIA CASP+
  • Certified Cloud Security Professional (CCSP)
  • Experience with DoD Risk Management Framework (RMF) and Assessment & Authorization (A&A)
  • Experience with Continuous Monitoring (ConMon) and cybersecurity governance
  • Experience with System Security Plans (SSPs), Security Assessment Reports (SARs), Risk Assessment Reports (RARs), and POA&M management
  • Experience with Security control implementation, validation, inheritance, and reciprocity
  • Experience with Vulnerability management, STIG compliance, ACAS, and cybersecurity reporting
  • Experience with eMASS, Xacta, or comparable Governance, Risk, and Compliance (GRC) platforms
  • Experience with Microsoft Windows, Linux, virtualization, enterprise networking, and cloud environments supporting FedRAMP High and the DoD Cloud Computing Security Requirements Guide (SRG)
  • Experience with Zero Trust Architecture (ZTA) and secure system engineering principles

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce