Information System Security Officer; ISSO
Listed on 2026-07-09
-
IT/Tech
Cybersecurity, Information Security, Security Management & Operations, IT Consultant
Koniag IT Systems (KITS), a Koniag Government Services company, is seeking an experienced ICAM ISSO (Identity, Credential, and Access Management Information System Security Officer) to support critical cybersecurity and identity management initiatives. The ideal candidate is a detail-oriented security professional with a strong background in ICAM frameworks, federal security compliance, and risk management. The successful candidate will bring a combination of technical expertise and strong communication skills to ensure the security and integrity of identity and access management systems.
Ability to obtain or maintain the required security clearance to support our government customer.
We offer competitive compensation and an extraordinary benefits package including health, dental, and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.
The ICAM ISSO will serve as the primary security point of contact responsible for ensuring confidentiality, integrity, and availability of identity, credentials, and access management systems. This individual will work closely with system owners, program managers, and security teams to maintain system authorization, manage risks, and ensure compliance with federal security standards and ICAM policies.
Principal responsibilities will include, but are not limited to:
Serve as the Information System Security Officer (ISSO) for one or more ICAM-related information systems, ensuring continuous monitoring and compliance with applicable federal security frameworks.
Develop, maintain, and update System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), and other Authorization to Operate (ATO) documentation in accordance with NIST and agency-specific requirements.
Support the Assessment and Authorization (A&A) process, including facilitating security assessments, coordinating with Security Control Assessors (SCAs), and preparing authorization packages.
Monitor and manage the security posture of ICAM systems, including identity proofing, credentialing, authentication, and access control solutions.
Review and analyze audit logs, security alerts, and system events to identify anomalies, potential threats, and compliance gaps.
Coordinate with system administrators, developers, and engineers to ensure security controls are properly implemented and functioning as intended.
Identify and document system vulnerabilities and risks, coordinating remediation efforts and tracking progress through the POA&M process.
Support the implementation and governance of ICAM policies, procedures, and standards in alignment with federal mandates such as FICAM, HSPD-12, EO 14028, and OMB Memoranda.
Participate in security incident response activities, including investigation, containment, and reporting of security events related to identity and access management systems.
Conduct periodic security reviews and assessments to ensure ongoing compliance with security requirements and ICAM best practices.
Provide security guidance and recommendations to program teams regarding identity management, privileged access management (PAM), multi-factor authentication (MFA), and zero trust principles.
Collaborate with cross-functional teams including IT, compliance, and operations staff to align security practices with organizational and mission objectives.
Prepare and deliver security briefings, reports, and documentation for government stakeholders and leadership.
Education and Experience:
Required:
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field from an accredited college or university.
5+ years of experience in information security, with at least 2 years of direct experience in an ISSO role or equivalent security capacity.
Demonstrated experience supporting the NIST Risk Management Framework (RMF) and ATO processes.
Experience working with ICAM technologies and frameworks, including identity proofing, PKI, MFA, and access management solutions.
Active or ability to obtain the required security clearance.
Preferred:
Experience supporting federal government IT security programs.
Familiarity with federal ICAM guidance, including FICAM Roadmap, NIST SP 800-63, and NIST SP 800-53.
Required Skills and
Competencies:
Exceptional communication skills in English – both written and oral – with the ability to communicate effectively with technical and non-technical stakeholders, including government leadership.
Strong working knowledge of the NIST Risk Management Framework (RMF), including NIST SP 800-53, NIST SP 800-37, and FIPS 199/200.
Proficiency in developing and maintaining ATO documentation, including SSPs, POA&Ms, Security Assessment Reports (SARs), and Interconnection Security Agreements (ISAs).
Knowledge of ICAM concepts including identity lifecycle management, credentialing, authentication protocols (MFA, PIV/CAC), privileged access management (PAM), and single sign-on (SSO).
Experience with continuous monitoring…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).