Demo

Senior ISSO

Mount Indie
Huntsville, AL Full Time
POSTED ON 4/13/2025
AVAILABLE BEFORE 5/6/2025

Job Description

Job Description

General Summary :

Implementing and documenting management, operational, and technical NIST 800-53 security controls and control enhancements for information technology systems and platforms to ensure a healthy cybersecurity posture and to achieve and maintain Authorization to Operate under the Risk Management Framework in accordance with DOD and organizational policies.

Principal Duties and Responsibilities (

  • Essential Functions) :
  • Overseeing the development and implementation of security policies and procedures that align with the organizations mission and goals as well as government requirements and regulations.
  • Ensuring that IT supply chain security and risk management policies and requirements are met as they relate to cybersecurity.
  • Advising appropriate leadership (e.g., Program Information System Security Manager, Authorizing Official Designated Representative, etc.) of security relevant changes affecting the organizations cybersecurity posture.
  • Updating and maintaining enterprise Mission Assurance Support System (eMASS) records for information systems and platforms.
  • Creating or updating system Authorization Boundary Diagrams, Information or Data Flow Diagrams, and Security Architectures.
  • Ensuring that assigned IT systems, platforms, or applications can receive an ATO or Assess Only Approval.
  • Reviewing existing documentation and performing edits and updates to ensure the applicable security controls continue to be met and remain effective.
  • Conducting Annual Security Reviews (ASR) and FISMA Reviews for Information System records in eMASS.
  • Reviewing, creating, or updating a variety of DOD and RMF documentation (including but not limited to Security Plans (SP), Configuration Management Plans (CMP), Incident Response Plans (IRP), Contingency Plans (CP), Access Control Policies, and other Assessment & Authorization (A&A) artifacts).
  • Preparing, distributing, and maintaining plans, instructions, guidance, and standard operating procedures concerning the security of network or system operations.
  • Identifying the correct applicable Security Technical Implementation Guide (STIG) and Security Requirements Guides (SRG) for technologies used with systems and also test and apply them to the components of the information system.
  • Identifying and addressing applicable Cyber Tasking Orders, alerts, advisories, errata, and bulletins published from authoritative sources across the organization.
  • Identifying and properly documenting deviations, vulnerabilities, and mitigations on the system Plan of Actions and Milestones (POA&M) in eMASS, to include importing results from technical scans into eMASS and managing the resulting POA&M items.
  • Using a variety of cybersecurity tools that include, but are not limited to, enterprise Mission Assurance Support System (eMASS), Security Content Automation Protocol (SCAP) Compliance Checker (SCC), Assured Compliance Assessment Solution (ACAS) / Nessus Vulnerability Scanner, Evaluate-STIG, eMASSter, DISA STIG Viewer, etc.
  • Performing detailed analyses to validate established security requirements and to recommend additional security requirements and safeguards where appropriate.
  • Supporting the formal testing requirements through pre-test preparations, participating in the tests, analyzing of the results, and preparing required reports as needed.
  • Performing evaluations (e.g., internal compliance audits) and / or active evaluations (e.g., vulnerability assessments) of systems to assess Cybersecurity posture and identifying mitigations for risks.
  • Performing routine vulnerability scanning using ACAS / Nessus and STIG configuration compliance scans in accordance with organizational time frames and requirements.
  • Selecting, justifying, and obtaining approval for the correct impact levels for Confidentiality, Integrity, and Availability as well as identifying and implementing applicable control overlays for system records.
  • Performing detailed analyses to validate established security requirements and recommending additional security requirements and safeguards.
  • Supporting meetings with system or information owners, stakeholders, user representatives, engineers, administrators, and leadership to ensure that cybersecurity considerations are addressed across the team and organization.

Required Experience

  • Bachelors Degree in related field
  • Minimum of 10 years of work related experience
  • At a minimum, current and active Security CE certification or higher, or equivalent
  • DoD Secret security clearance required
  • Strong written and verbal communication skills
  • Experience working in the DOD enterprise Mission Assurance Support System (eMASS)
  • Experience creating and managing Plans of Actions and Milestones (POA&M) within eMASS
  • Experience assessing and implementing DISA Security Technical Implementation Guides (STIG) and Security Requirement Guides (SRG)
  • Experience performing DOD Assurance Compliance Assessment Solution (ACAS) or Nessus vulnerability scanning
  • Experience with Assessment & Authorization (A&A) (formerly Certification & Accreditation) as it relates to achieving Authorization to Operate (ATO) under the Risk Management Framework (RMF)
  • If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Senior ISSO?

    Sign up to receive alerts about other jobs on the Senior ISSO career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $152,549 - $188,894
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $220,784 - $286,649
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Mount Indie

    Mount Indie
    Hired Organization Address San Diego, CA Full Time
    Mount Indie is looking for aTalent Acquisition Specialist to help us grow and succeed. We are a Woman-Owned Small Busine...
    Mount Indie
    Hired Organization Address Warner, GA Full Time
    Responsibilities : Knowledge of avionics engineering in support of avionics subsystem definition, development, integrati...
    Mount Indie
    Hired Organization Address Huntsville, AL Temporary
    Job Description Job Description Advanced Systems Engineer Missile Defense Help shape the future of missile defense. Join...
    Mount Indie
    Hired Organization Address Huntsville, AL Temporary
    Job Description Job Description Mount Indie is seeking an experienced Lead Systems Engineer to join our team! In this ro...

    Not the job you're looking for? Here are some other Senior ISSO jobs in the Huntsville, AL area that may be a better fit.

    Senior ISSO

    Concurrent Technologies Corporation, Huntsville, AL

    ISSO

    KBR, Inc., Huntsville, AL

    AI Assistant is available now!

    Feel free to start your new journey!