Information Systems Security Officer; ISSO - Secret Clearance - Remote
San Antonio, Bexar County, Texas, 78208, USA
Listed on 2026-02-12
-
IT/Tech
Cybersecurity, Information Security, Systems Engineer
Information Systems Security Officer (ISSO), Secret Clearance
* Eligible for full time remote
DTSI is seeking a highly technical Information Systems Security Officer (ISSO) to serve as the primary authority for the cybersecurity architecture, risk posture, and compliance of assigned information systems. This role is hands‑on and technical in nature, requiring in-depth knowledge of system architectures, operating systems, networks, and security tooling to effectively assess, implement, and validate cybersecurity controls.
The ISSO will be responsible for ensuring information systems are securely implemented, and maintained in accordance with DoD, NIST SP 800-53 (Rev
5), ICD 503, and RMF requirements. This position supports the full system lifecycle and works closely with system engineers, administrators, and program stakeholders to ensure confidentiality, integrity, and availability (CIA) of mission‑critical systems and data.
- Develop a technical understanding of system architectures, applications, operating systems, and network components to respond to Information Assurance (IA) inquiries, DISA Technical Orders (DTOs), and RMF artifacts.
- Manage the cybersecurity program for assigned systems across the entire system lifecycle (design, development, deployment, operations, sustainment, and decommissioning).
- Author, review, and maintain System Security Plans (SSPs), Security Control Traceability Matrices (SCTMs), Continuous Monitoring (Con Mon) strategies, POA&Ms, updating and supporting all RMF documentation.
- Understand the technology to support system authorization (ATO) efforts under the DoD RMF, including control selection, implementation validation, and assessor coordination.
- Perform technical risk assessments and vulnerability analyses, correlating scan results, STIG findings, and architectural weaknesses to actionable mitigation strategies.
- Review, validate, and report STIG and SRG findings, and manage artifacts within eMASS.
- Conduct and oversee security control assessments, vulnerability scanning, and configuration compliance validation using tools such as:
- Support incident response activities, including technical analysis, reporting, coordination with CSSPs, and remediation tracking.
- Monitor system security posture through continuous monitoring, metrics analysis, and compliance reporting.
- Support Security Readiness Reviews (SRRs) and Command Cyber Readiness Inspections (CCRIs), including preparation, technical evidence collection, and remediation.
- Maintain and update Configuration Management Plans, contingency plans, and conduct system contingency exercises.
- Provide technical and executive-level briefings on system risk posture, vulnerabilities, and remediation status to senior leadership.
- Stay current on emerging threats, vulnerabilities, and DoD cybersecurity directives, ensuring proactive system protection.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience).
- 5+ years of relevant cybersecurity experience, with at least 1 year in a senior ISSO capacity.
- In-depth understanding of DoD RMF (NIST SP 800-37), NIST SP 800-53 controls, and related frameworks for revisions 4 AND 5.
- Experience managing system accreditation and continuous monitoring activities in highly regulated environments.
- 8+ years' experience with implementing/assessing security controls assessment for eMASS (preferred)
- Knowledge of DISA Risk Management Framework (RMF) and Security Technical Implementation Guides (STIGs)
- Knowledge of the DISA Cyber Exchange (formerly IASE)
- Knowledge of the Fed Ramp IL4 and IL5 requirements
- Strategic cybersecurity knowledge
- Master of regulatory compliance and RMF expertise
- Risk management and mitigation
- Incident response coordination
- Technical writing and documentation excellence
- Team development and cross-functional collaboration
- Proficiency in maintaining accreditation artifacts in eMASS, ensuring full compliance with DISA ATO procedures.
- Master level knowledge of DISA STIGs, SRGs, CC SRG, and Cybersecurity Service Provider (CSSP) requirements.
- Working knowledge of DoD Cloud…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).