Information System Security Officer; LEVELS
Listed on 2026-09-12
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Consultant
Company Overview
XPECT Solutions, LLChas built a strong reputation by supporting our clients in meeting their strategic goals and mission objectives. We provide high quality resources for a wide range of IT and security solutions at best-value pricing. Our success is built on a solid foundation of well-vetted, highly technical personnel, a disciplined project management approach, and an overarching commitment to customer service.
We develop, test, deploy, and support exceptional solutions that enhance system functionality, while maximizing reliability and availability, and ensure the tightest security.
XPECT Solutions is looking for Information System Security Officers (ISSO) at multiple levels (Jr./Mid./Sr.)and various locations. The Information System Security Officer (ISSO) plays a critical role in ensuring the confidentiality, integrity, and availability of information systems within an organization. Acting as the primary liaison between system owners and cybersecurity stakeholders, the ISSO is responsible for implementing and maintaining security controls, managing risk assessments, and ensuring compliance with federal regulations and organizational policies.
This role requires a deep understanding of security frameworks, continuous monitoring practices, and incident response procedures to safeguard sensitive data and support mission-critical operations.
- Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for each IS
- Provide liaison support between the system owner and other IS security personnel
- Ensure that selected security controls are implemented and operating as intended during all phases of the IS lifecycle
- Ensure that system security documentation is developed, maintained, reviewed, and updated on a continuous basis
- Conduct required IS vulnerability scans according to risk assessment parameters.
- Develop Plan of Action and Milestones (POAMs) in response to reported security vulnerabilities
- Manage the risks to ISs and other our customer’s assets by coordinating appropriate correction or mitigation actions, and oversee and track the timely completion of (POAMs)
- Coordinate system owner concurrence for correction or mitigation actions
- Monitor security controls for our customer’s ISs to maintain security Authorized To Operate (ATO)
- Upload all security control evidence to the Governance, Risk, and Compliance (GRC) application to support security control implementation during the monitoring phase
- Ensure that changes to an our customer’s IS, its environment, and/or operational needs that may affect the authorization status are reported to the system owner and IS Security Manager (ISSM)
- Ensure the removal and retirement of ISs being decommissioned in coordination with the system owner, ISSM, and ISSR
- AN ACTIVE TOP SECRET CLEARANCE IS REQUIRED
- Experience can range from 2 - 12+ years (experience requirement will vary depending on level Jr./Mid./Sr.)
- Holds one (or more) of these
Certifications:- Certified Systems Security Professional (CISSP),
- CompTIA Advanced Security Practitioner (CASP),
- Certified Secure Software Lifecycle (CSSLP)
- (CISSP Special Focus) Information System Security Engineering Professional (ISSEP)
- (CISSP Special Focus) Information System Security Architecture Professional (ISSAP)
- Similar or Comparable Security Focused Certifications
- Proven experience with the use and operation of security tools including Tenable Nessus and/or Security Center, IBM Guardium, HP Weblnspect, Network Mapper (NMAP), and/or similar applications.
Skills and Qualifications
- Bachelors in Computer Science, Cybersecurity, or other…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).