Information Systems Security Officer Senior
Job in
Ashburn, Loudoun County, Virginia, 22011, USA
Listed on 2026-09-03
Listing for:
Saic
Full Time
position Listed on 2026-09-03
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Consultant
Job Description & How to Apply Below
Description
SAIC is seeking a senior-level Information System Security Officer (ISSO) and/or Alternate Information System Security Officer (AISSO) for one or more major federal IT information systems as a member of the customer directorate’s Security Team.
Overall, the candidate will be responsible for utilizing the NIST Risk Management Framework (RMF), NIST Security and Privacy Controls for Information Systems and Organizations, and related Continuous Monitoring activities to maximize the security of their assigned system(s) and ensure compliance with Federal Information Security Management Act (FISMA) requirements and DHS/CBP policies and processes.
This position is hybrid-remote and requires 1 day per-week on-site per week in Ashburn, VA.
Job Responsibilities- Conduct continuous monitoring and self-inspections of computer systems to ensure security compliance with the a forementioned guidance and DHS/CBP policy directives, and proactively report progress to management, make recommendations for security posture improvements, and ensure systems are ready for audits.
- Review and interpret security vulnerability scans, communicate their contents to management and technical stakeholders, and push them to remediation.
- Proactively report security status and concerns to management and make recommendations as appropriate.
- Participate in and support directorate responses for ongoing information system audits.
- Develop and update standard government security documentation such as System Security Plans, Contingency Plans, Interconnection Security Agreements, Risk Acceptances/Waivers, Privacy Threshold Analyses, Privacy Impact Assessments, and other ad-hoc documentation as needed.
- Review and approve/deny relevant system Change Requests as needed.
- Ensure configuration management is appropriate for all Information Systems (IS) software and hardware, in accordance with DoD STIGs (Security Technical Implementation Guides) and industry best practices.
- Execute system audit log reviews in accordance with established policy requirements using Security Information and Event Management (SIEM) tools such as Splunk, Kibana, etc.
- Assist creation of new policies/procedures as needed for directorate systems.
- Support ad-hoc data call and reporting requirements initiated by DHS CIO, CISA and other headquarters offices.
Job Responsibilities
- Conduct continuous monitoring and self-inspections of computer systems to ensure security compliance with the a forementioned guidance and DHS/CBP policy directives, and proactively report progress to management, make recommendations for security posture improvements, and ensure systems are ready for audits.
- Review and interpret security vulnerability scans, communicate their contents to management and technical stakeholders, and push them to remediation.
- Proactively report security status and concerns to management and make recommendations as appropriate.
- Participate in and support directorate responses for ongoing information system audits.
- Develop and update standard government security documentation such as System Security Plans, Contingency Plans, Interconnection Security Agreements, Risk Acceptances/Waivers, Privacy Threshold Analyses, Privacy Impact Assessments, and other ad-hoc documentation as needed.
- Review and approve/deny relevant system Change Requests as needed.
- Ensure configuration management is appropriate for all Information Systems (IS) software and hardware, in accordance with DoD STIGs (Security Technical Implementation Guides) and industry best practices.
- Execute system audit log reviews in accordance with established policy requirements using Security Information and Event Management (SIEM) tools such as Splunk, Kibana, etc.
- Assist creation of new policies/procedures as needed for directorate systems.
- Support ad-hoc data call and reporting requirements initiated by DHS CIO, CISA and other headquarters offices.
- B.S. in the Information Assurance / Cybersecurity field.
- 8+ years of overall IT security experience.
- 6+ years of experience as a primary ISSO or security compliance lead for an IT system.
- Possesses one of the following professional security certifications: CISSP or CCSP certification.
- Creating, tracking, and driving to completion Plans of Action and Milestones (POA&Ms) for resolving security control deficiencies.
- Providing system-level security auditing support, including interacting directly with auditors and providing artifacts as requested.
- Executing the completion of a new or renewed system Certification and Accreditation (C&A) package from start to finish.
- Effectively communicating security vulnerabilities with technical POCs and management.
- Possesses significant security experience with systems primarily supported by Linux OS (on premises) or Amazon Web Services (AWS).
- Possesses significant experience and knowledge of how to interpret details of vulnerability scans and effectively communicate results.
- Understands the differences between types of…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×