Information Systems Security Officer (ISSO) – Level III

Springfield, VA, US

Apply now Apply later

Description

Location: TSA Headquarters, Springfield, VA (Primary, Onsite); Potential other locations Arlington, VA; Herndon, VA; Junction, MD; Colorado Springs, CO


Incumbent contractor has the first right to refusal.


Company Description:

ASG is a Minority Woman Owned, small business with over 15 years' experience in federal government contracting. ASG offers data collection, statistical analysis, Systems Integration and IT Services and support. ASG provides a broad range of technology related services such as software development and integration, mobile apps, AI/ML, Analytics, Data Science, Bigdata, DevSecOps, Digital transformation, cloud, and cybersecurity. ASG is CMMI Level 3 certified for Development and Services, and holds ISO certifications 9001:2015, 20000-1:2011, and 27000:2015.


Job Description:

  

The ISSO Level 3 is tasked with ensuring the security compliance of TSA information systems by supporting ongoing RMF activities, conducting security assessments, and providing expert guidance on security controls. This role involves detailed documentation, continuous monitoring, and support for FISMA compliance across TSA systems.

The Enterprise ISSO Program contract shall provide the TSA IT enterprise with program support and expert ISSO support for accurate FISMA compliance capabilities; support centralized management strategic approach and oversight, standardization, allocation, and reporting; facilitate ISSO and System Owner training; provide program management support; facilitate quality documentation reviews of all TSA FISMA Systems; complete system documentation; and execute day to day RMF and FISMA compliance.

The Enterprise ISSO Program will provide Enterprise ISSO Program Management Support such as management, administration, technical correctness, timeliness, and quality of services and products meet or exceed the requirements specified by TSA. Provide continuous Enterprise RMF Readiness and Quality Documentation Reviews. Use the Risk Management Framework Readiness Guide to identify various RMF deliverables. Provide Enterprise ISSO and System Owner Training Services. Coordinate, facilitate, establish, develop, and deliver a comprehensive training program to educate the TSA cybersecurity workforce


What You Will Do:  

  • Serve as the principal advisor on all matters related to the security of assigned information systems.
  • Develop, maintain, and update comprehensive system security authorization documentation.
  • Support ongoing authorization (OA) and security control assessment (SCA) activities.
  • Facilitate the development and maintenance of Plans of Action and Milestones (POA&Ms) in accordance with DHS and TSA policy.
  • Ensure compliance with FIPS-199, Privacy Threshold Analysis (PTA), and other NIST guidelines.
  • Conduct regular reviews and assessments of system configurations, security plans, and contingency plans.

Requirements

What We Need:  

  • Bachelor’s degree in IT, Computer Science, or related field.
  • At least 5 years of experience in cybersecurity, with specific experience in government compliance, assessor and ISSO roles.
  • OR 8 years of IT cybersecurity experience including direct support for the US Government and 4 years acting as an ISSO, assessor, or compliance analyst
  • At least one of the following security certifications including but not limited to: CAP, CGRC, CISSO, CISM, or CISSP. The Government will determine if other applicable certifications are acceptable upon submittal.
  • Familiarity with DHS compliance tools such as Archer, Nessus, and Splunk.
  • Excellent analytical and documentation skills.
  • Experience communicating effectively, both oral and written, with technical, non-technical, and executive-level customers.

Even Better:

  • Demonstrated knowledge and application of NIST Guidelines and FISMA Cybersecurity compliance requirements.
  • Knowledge of ITIL and agile methodologies.

Clearance Level:

DHS Secret Clearance


Additional Information:

At ASG, we value diversity and always treat all employees and job applicants based on merit, qualifications, competence, and talent. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us by sending an email to careers @ a2-g.com. We will treat your request as confidentially as possible. In your email, please include your name and preferred method of contact, and we will respond as soon as possible.


Perks:

At ASG, we want you to be well and thrive. Our benefits package includes:

  • Healthcare Benefits
  • Paid Time Off
  • 401k Matching
  • Employee Referral Bonus
  • Education Assistance
  • Learning and Development resources
  • EOE, including Disability/Veterans
Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Agile Analytics CGRC CISM CISSP Clearance Cloud Compliance Computer Science DevSecOps FISMA ITIL Monitoring Nessus NIST Privacy Risk management RMF Security assessment Splunk

Perks/benefits: Career development Salary bonus

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.