×
Register Here to Apply for Jobs or Post Jobs. X

Information System Security Officer; SME), Level III

Job in Baltimore, Anne Arundel County, Maryland, 21276, USA
Listing for: OneZero Solutions
Full Time position
Listed on 2026-09-04
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 120000 - 160000 USD Yearly USD 120000.00 160000.00 YEAR
Job Description & How to Apply Below
Position: Information System Security Officer (SME), Level III

We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. One Zero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance.

Additional details are available on our website:

Position Title
:
Information System Security Officer (SME), Level III

Location
: USCG Surface Forces Logistics Center, 2401 Hawkins Point Road, Baltimore, MD 21226. Work may also be performed at the SFLC satellite offices at 707 East Ordnance Road, approximately one mile from the primary site, and at other sites as determined necessary by the Contracting Officer's Representative (COR).

Clearance
:

  • No security clearance required. This position does not involve access to classified information or classified IT systems.
  • S. citizenship is required in accordance with HSAR  Alternate I.
Position Summary

The senior Information System Security Officer serves as the designated ISSO for assigned USCG SFLC Operational Technology and Platform IT systems and leads the Risk Management Framework process for that portfolio. The role owns the authorization packages end to end: preparation, submission, continuous monitoring, POA&M management, and sustainment of the Authorization to Operate.

As the SME-level ISSO on the task order, this position also sets the technical standard for the Level 2 ISSOs, handles the most complex or highest-visibility systems, and is the primary ISSO interface to the OT Security Manager (ISSM) on policy, risk posture, and authorization strategy.

Key Responsibilities
  • Serve as the designated OT Security Officer (ISSO) for assigned SFLC Operational Technology and lead the RMF process for those systems.
  • Support the OT Security Manager (ISSM) and staff in maintaining the programs, procedures, and policies that protect Government Sensitive But Unclassified (SBU) information.
  • Review existing policies, procedures, and guidelines for compliance with DHS, USCG, and DoD cybersecurity policy; draft or revise SFLC policy documentation for ISSM review and approval.
  • Prepare and maintain RMF security authorization documentation for assigned OT, ensuring Assessment and Authorization (A&A) packages are completed and submitted to the Authorizing Official in sufficient time to prevent expiration of the Authorization to Operate (ATO).
  • Maintain Host Based Security System (HBSS/ESS) compliance for assigned OT and review applicable system reports.
  • Create and validate SFLC RMF and security authorization accounts within Government-designated systems and tools.
  • Update and maintain RMF and authorization status and associated cybersecurity documentation within Government-designated tracking tools, keeping documentation current and accessible to authorized individuals.
  • Manage and track POA&M for assigned OT from creation through closure: validate content with stakeholders, track remediation, maintain supporting artifacts, and identify items requiring waivers or risk acceptance.
  • Maintain the continuous monitoring process for assigned OT and support compliance with DoD and USCG cybersecurity requirements and DISA STIGs.
  • Perform vulnerability and security compliance assessments for assigned OT using Government-approved methods and tools, including DISA STIGs and Security Requirements Guides.
  • Conduct, review, and analyze vulnerability and compliance scans of assigned OT, networks, devices, and associated components.
  • Coordinate with system administrators and stakeholders to remediate vulnerabilities and compliance findings, and initiate protective or corrective measures per Government policy.
  • Review system logs, audit records, and intrusion detection data for assigned OT to identify incidents, threats, and vulnerabilities; request system audit triggers and correlate audit records at least weekly; report incidents and log integrity gaps to the Government and coordinate incident response.
  • Support the Request for Modification (RFM) and change management processes; participate in change management boards and conduct Security Impact Assessments (SIAs) on proposed changes.
  • Develop and maintain connection approval documentation for assigned OT requiring USCG network connectivity, including Interconnection Security Agreements (ISAs), Memoranda of Understanding (MOUs), and Service Level Agreements (SLAs).
  • Develop and coordinate Contingency Plan (CP) training and testing; coordinate annual Disaster Recovery failover testing for systems with a DR capability and document results for Government review.
  • Support and coordinate external inspections, evaluations, audits, and assessments applicable to assigned OT.
  • Review security exception and exclusion requests for…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary