
Information Systems Security Officer – ISSO
Posted Sep 3

Posted Sep 3
This is a fully remote position, open to applicants in Illinois.
• Take ownership of and oversee the security authorization posture for designated DoD systems.
• Collaborate with engineering, operations, and architecture teams to guarantee secure system functionality.
• Create, revise, and sustain System Security Plans (SSPs).
• Manage Plans of Actions and Milestones (POA&Ms) from identification to remediation and closure.
• Compile and present comprehensive Authorization to Operate (ATO) packages.
• Perform continuous monitoring in accordance with program strategy and Risk Management Framework (RMF) standards.
• Utilize eMASS to monitor RMF workflows, manage artifacts, and support Governance, Risk, and Compliance (GRC) processes.
• Collaborate with Information System Security Engineers (ISSEs) and Security Operations (SecOps) teams to validate the implementation of security controls.
• Develop Security Assessment Plans (SAPs) and assist in the creation and coordination of Security Assessment Reports (SARs).
• Draft plans for supply chain risk management.
• Work alongside the Cybersecurity Architect on RMF strategic planning and enhancements throughout the system lifecycle.
• Progress into a senior GRC career pathway with established opportunities for professional advancement.
• Active Secret or Top Secret clearance.
• 3–5 years of experience with RMF/ATO in DoD or federal settings.
• Practical experience using eMASS.
• Proficient understanding of NIST SP 800‑53 Rev. 5 and DoD RMF processes.
• Proven capability to independently author SSPs and manage POA&Ms.
• DoD 8140.03M DCWF Basic Tier — CEH certification.
• DoD 8140 Interim Education Options certification.
• Willingness to travel to Scott Airforce Base on a quarterly basis.
• Bachelor’s degree in Computer Science, Cybersecurity, Data Science, Information Systems, IT, or Software Engineering (preferred).
• DoD 8140.03M DCWF Intermediate Tier — CEH(P), RCCE Level 1, Cloud+, CPTE, FITSP‑A, GCED, GCIH, GCSA, GICSP, GSEC, PenTest+, or Security+ certifications (preferred).
• Experience with eMASS or other RMF automation tools (preferred).
• Familiarity with cloud-hosted or hybrid system authorization boundaries (preferred).
• Awareness of the DoD RMF Knowledge Service (preferred).
• Flexible time off policy.
• Extensive learning resources available.
• Comprehensive healthcare coverage.
• Wellness programs and benefits.
• Financial benefits and support.
• Retirement savings plans.
• Family support programs.
• Continuing education assistance.
• Competitive compensation packages.
• Opportunities for learning and professional development.
Zscaler
Viatris
ActBlue
AlphaSense
Get handpicked remote jobs straight to your inbox weekly.