Information System Security Officer (ISSO)
Expertise And FunctionsEnsure all systems and applications meet DoD and Air Force cybersecurity requirements as directed by the Information System Security Manager (ISSM)Protect the confidentiality, integrity, and availability of systems, networks, and data by developing, implementing, and maintaining cybersecurity programs, policies, procedures, and security toolsSupport all Risk Management Framework (RMF) authorization and accreditation activities, including configuration, artifact creation, documentation, and compliance reviewsAssist the ISSM in performing risk and vulnerability assessments on planned and operational information systems, identifying security gaps and recommending mitigation actionsConduct security evaluations, audits, and reviews; support development of system contingency and disaster recovery plans; and promote user compliance with cybersecurity policies and training requirementsParticipate in system and network design efforts to ensure appropriate security controls and RMF activities are incorporated from the startCollect, analyze, and preserve digital evidence related to cybersecurity incidents or policy violationsMaintain the operational security posture of assigned IT systems, monitor situational awareness, and implement actions to improve or restore cybersecurity resilienceEnforce Air Force cybersecurity policies, procedures, configuration guidelines (e.g., STIGs/SRGs), and change management processesMaintain and audit authorized user access documentation and ensure users meet clearance, need‑to‑know, and annual training requirementsReport security incidents or vulnerabilities to the ISSM and support implementation of corrective or protective measuresInitiate and track exceptions, deviations, or waivers to cybersecurity requirements as neededOther duties as assignedRequirementsEducation/Training: Bachelor's Degree preferredIAT Level II (Security+, GSEC, CCNA-Security, Certified Systems Security Professional (CISSP), or equivalent certificationMust maintain required cybersecurity certifications in accordance with AFMAN 17‑1303. Experience: 3+ years of experience in a related field in a DoD environmentExperience supporting Risk Management Framework (RMF) activities and cybersecurity complianceExperience using eMASS for authorization packages, artifact management, and accreditation supportVulnerability assessment and risk mitigation analysisSTIG/SRG implementation and configuration managementSecurity audits, assessments, and incident response supportInformation system security and operational security posture managementSecure system and network design support in DoD environmentsAbility to develop innovative approaches to complex test problemsStrong attention to quality, adequacy, and completeness of test results and conclusionsAbility to deliver thorough, timely, and efficient task executionAbility to provide clear analysis and recommendations to program test leadership Security:Must be a US citizenMust have an active Secret clearancePhysical RequirementsAble to occasionally reach with hands and armsProlonged periods of computer screen use, while sitting or standing at a deskAdhere to safety protocols when in work areas requiring use of PPE (e.g. eyewear, gloves, masks, hearing protection, steel toed shoes, etc.)Able to safely lift and carry up to 20 pounds at a timeBenefitsHealth Care Plan (Medical, Dental & Vision)Retirement Plan (401k, IRA)Life Insurance (Basic, Voluntary & AD&D)Paid Time Off (Vacation, Sick & Public Holidays)Short Term & Long Term DisabilityTraining & DevelopmentWellness ResourcesSalary: The projected salary range for this position is $89,000 - $105,000. This is not a guarantee of compensation, rather actual salary will be based on experience, qualifications, and applicable certifications or degrees held. Offered salary may fall outside of this range.