
Information System Security Officer – ISSO
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in United States.
• Assist in the implementation and enforcement of cybersecurity policies and controls in line with DoD RMF, NIST 800-53, and Air Force guidelines.
• Aid in security compliance efforts for enterprise financial data and system integrations by applying and maintaining RMF Financial Management Overlay security controls.
• Contribute to ATO lifecycle activities, encompassing control implementation, validation, and ongoing monitoring.
• Create, maintain, and revise RMF documentation, including SSPs, POA&Ms, security control implementation evidence, assessment artifacts, and other ATO and FISCAM audit readiness documentation.
• Facilitate recurring Government cybersecurity and financial audits by preparing documentation, responding to auditor inquiries, and engaging in technical walkthroughs.
• Assess and validate security controls for systems, applications, and integrations, including cloud and API-based architectures.
• Support incident response efforts, including detection, reporting, and coordination with cybersecurity teams.
• Monitor, document, and assist in the remediation of security findings through Corrective Action Plans (CAPs).
• Provide assistance to the Information System Security Manager (ISSM) in maintaining the proper operational IA posture for a system, program, or enclave.
• Collaborate with cybersecurity, engineering, system architecture, and Government stakeholders.
• Mentor junior team members as necessary.
• Must possess an active Secret Clearance.
• Experience with DoD RMF processes, particularly for FM systems, including preparation for FISCAM audits, FM control implementation, POA&M management, and ATO support.
• Proven experience supporting FISCAM, FIAR, or other Federal audit activities.
• Familiarity with NIST 800-53 security controls and continuous monitoring practices.
• Experience in conducting security assessments and validating system compliance.
• Knowledge of vulnerability management tools such as ACAS, Tenable, or similar products.
• Experience utilizing eMASS to manage RMF packages and security documentation.
• Understanding of cloud security principles, including AWS, Azure, GovCloud, or similar environments.
• Proven track record in proposing, coordinating, implementing, and enforcing information systems security policies, standards, and methodologies, preferably on a large software or IT program.
• Experience in securing enterprise data integrations, APIs, or system interfaces.
• Strong documentation skills, particularly for RMF artifacts such as SSPs and compliance reporting.
• Excellent analytical, problem-solving, and organizational abilities.
• Capacity to work collaboratively across engineering, architecture, and cybersecurity teams.
• Exceptional interpersonal skills.
• Security+ certification required, or a higher DoD 8570/8140 equivalent.
• 5+ years of experience in information system security, cybersecurity, or related fields.
• Bachelor’s degree in Computer Science, Cybersecurity, or a comparable academic discipline.
• Ability to successfully pass required background checks and drug testing.
• Competitive salary in the market.
• Generous paid time off (PTO) package.
• Comprehensive medical, dental, vision, and life insurance plans.
• 401K plan.
• Short-term disability insurance.
• Long-term disability insurance.
• A fun and engaging workplace culture.
• Training opportunities to keep you updated on the latest technologies.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.