ASM Research

ISSO Mid

ASM Research  •  $140k - $163k/yr  •  Ashburn, VA (Onsite)  •  4 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

The Information Systems Security Officer (ISSO) supports the overall information security posture of assigned Major Applications (MAs) and General Support Systems (GSSs) within the customer environment. This individual serves as the subject-matter expert and principal point of contact for all system security requirements on assigned FISMA systems, providing expert-level guidance and leadership in implementing, maintaining, and enforcing information security policies, standards, and methodologies in accordance with federal regulations and agency requirements.

  • Serve as the subject-matter expert and principal point of contact for security requirements on assigned FISMA systems (MAs, GSSs, and sub-systems/applications).
  • Complete and maintain system authorization packages (System Security Plans, Interconnection Security Agreements, Contingency Plans, POA&Ms, waivers, and exceptions) in the DHS FISMA system management tool supporting the NIST Risk Management Framework (RMF).
  • Ensure assigned systems are operated, maintained, and disposed of in accordance with NIST SP 800-37 Rev. 2, DHS 4300A Policy and Handbook, and agency Handbook 1400-05D.
  • Perform periodic security management activities and monthly audit log reviews for assigned FISMA systems, identifying and documenting security anomalies.
  • Obtain input from system administrators, security engineers, and system owners to document and track system weaknesses as POA&Ms; recommend and track corrective actions to remediation.
  • Support risk acceptance and waiver requests, system access request reviews, and endorsement/rejection determinations with documented justification.
  • Investigate and report security incidents to the Director, SOD and CSD ISSM, and ensure protective or corrective measures are initiated upon discovery of a security incident or vulnerability.
  • Review Privacy Threshold Analyses (PTAs) and Privacy Impact Assessments (PIAs) and provide documented security feedback to system/business owners.
  • Lead, prepare materials for, and participate in meetings supporting system assessment and authorization, vulnerability/POA&M reviews, and internal and external audits.
  • Support the DHS Ongoing Authorization (OA) Program transition and maintenance activities for assigned systems.
  • Provide audit support and liaison services between auditors (e.g., OIG, annual IPA/KPMG audit) and agency CSD, including collection of artifacts and formulation of responses across FISMA, FISCAM, and OMB Circular A-123 areas.

Minimum Qualifications

  • Bachelor’s Degree in Computer Science or a related field or equivalent experience; Advanced Degree preferred.
  • Minimum 5 years of information security experience, including at least 5 years in a lead ISSO or similar leadership capacity on programs/contracts of comparable scope and complexity.
  • US Citizenship / No Dual

Other Job Specific Skills

  • Solid knowledge of FISMA, NIST, and the Risk Management Framework (RMF) methodology.
  • Experience with security authorization processes (Certification & Accreditation and Authorization to Operate) and the ability to develop associated documentation.
  • Strong understanding of security tools, hardware/software security implementation, communication protocols, and encryption techniques.
  • Proven ability to analyze security vulnerabilities, deliver comprehensive assessments, and develop effective remediation instructions.
  • Excellent written and verbal communication skills, with the ability to present complex security information clearly to technical and executive audiences.
  • Certified Information Systems Security Professional (CISSP) Preferred
  • Certified Information Security Manager (CISM) Preferred

Qualifications

Compensation Ranges

Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.

Physical Requirements

The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.

Disclaimer

The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

Compensation Range

$140k - $163k

ASM Research

About ASM Research

ASM Research, an Accenture Federal Services Company, is an information solutions integrator and a leading provider of innovative technology solutions and advanced analytical services for the Federal government. Headquartered in Fairfax, Virginia, ASM has over 30 years of experience providing application, software, system, network, database, and reporting solutions. Our extraordinary commitment and unique insight into clients’ information technology (IT), program management, security, healthcare / medical management, education and training management consistently produce extraordinary results.

We are always seeking quality individuals to join our team. We offer an employee-friendly work environment, outstanding benefits, and a level of stability rarely found in the government contracting world. We have ongoing needs for Web Applications Developers (ASP.Net), SharePoint Developers, Cyber Security Analysts, QA Analysts, Helpdesk Analysts and Oracle DBAs. You can see a full list of our current openings at http://asmr.com/Opportunities.aspx or send your resume to hr@asmr.com. You can also connect with our corporate recruiter, Chris Gibbons, http://www.linkedin.com/pub/chris-gibbons/0/635/213 or Erik Thompson, https://www.linkedin.com/in/erikthompsonitt.

Privacy Policy: https://www.asmr.com/privacy-policy/

Industry
IT & Software
Company Size
1,001-5,000 employees
Headquarters
Fairfax, Virginia
Year Founded
1978
Website
asmr.com
Social Media