SonicJobs Logo
Left arrow iconBack to search

Information System Security Officer (ISSO)

Federal Staffing Solutions Inc.
Posted a day ago, valid for a month
Location

Hughesville, VA, US

Salary

$150,000 - $180,000 per year

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • Federal Staffing Solutions is seeking an experienced Information System Security Officer (ISSO) for a U.S. Customs and Border Protection (CBP) program in Ashburn, VA.
  • The position requires a minimum of 3–5 years of hands-on experience in ISSO or comparable information systems security roles.
  • Candidates must hold a Bachelor's degree in Cybersecurity, Information Technology, or a related field, along with certifications such as CISSP and CompTIA Security+.
  • The salary for this role ranges from $150,000 to $180,000, and a Secret Clearance is required or must be obtainable.
  • The ISSO will be responsible for ensuring compliance with cybersecurity policies and maintaining the security posture of assigned information systems.
We connect our employees with some of the best opportunities around.

Time and again, our employees tell us that the most important thing we offer is respect.  Federal Staffing Solutions puts people to work in all types of jobs.  When you work with us, you build a relationship with a team of employment professionals in your community who have, in turn, built professional relationships with the businesses that are hiring.

We are looking for an ISSO to work in Ashburn, VA supporting our client.

Location: Ashburn, VA

Clearance: Secret Clearance (or able to obtain)

Salary Rate: $150,000-$180,000

Position Summary:

Our client is seeking an experienced Information System Security Officer (ISSO) to support a U.S. Customs and Border Protection (CBP) program in Ashburn, VA. The ISSO will serve as the principal point of contact for the security posture of one or more assigned information systems, ensuring compliance with DHS, CBP, and NIST cybersecurity policies throughout the system's lifecycle. This role works closely with the Information System Security Manager (ISSM), Authorizing Official (AO), system owners, and technical teams to maintain a strong Risk Management Framework (RMF) posture and support continuous authorization to operate (ATO).


Key Responsibilities:

•     Serve as the primary ISSO for assigned CBP information systems, acting as the liaison between the ISSM, AO, system owners, and technical staff on all security-related matters.

•     Execute the NIST Risk Management Framework (RMF) lifecycle, including system categorization, security control selection, implementation, assessment, authorization, and continuous monitoring.

•     Develop, update, and maintain security authorization artifacts, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), Contingency Plans, and Risk Assessments.

•     Support Assessment and Authorization (A&A) activities and coordinate Security Control Assessments (SCAs) with independent assessors.

•     Monitor and track POA&M remediation activities, ensuring vulnerabilities are addressed within DHS/CBP-mandated timeframes.

•     Conduct continuous monitoring activities in accordance with DHS 4300A / CBP security policy and the organization's Information Security Continuous Monitoring (ISCM) strategy.

•     Review vulnerability scan results (e.g., Nessus, ACAS) and coordinate remediation with system administrators and engineering teams.

•     Support incident response activities for assigned systems, including detection, reporting, and coordination with the Security Operations Center (SOC).

•     Ensure system configurations align with applicable security baselines (e.g., DISA STIGs, CIS Benchmarks) and DHS/CBP policy.

•     Participate in Configuration Control Board (CCB) activities to assess the security impact of proposed system changes.

•     Prepare for and support audits, inspections, and compliance reviews conducted by DHS, CBP, or external oversight bodies.

•     Maintain awareness of, and ensure compliance with, applicable federal cybersecurity laws, regulations, and guidance, including FISMA, NIST SP 800-53, and FIPS publications.


Required Qualifications:

•     U.S. Citizenship required.

•     Ability to obtain and maintain a CBP Background Investigation (BI) / Public Trust clearance; existing favorable CBP or DHS suitability determination preferred.

•     Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent professional experience in lieu of degree.

•     Minimum of 3–5 years of hands-on experience performing ISSO, ISSM, or comparable information systems security duties on federal information systems.

•     Working knowledge of the NIST Risk Management Framework (RMF), NIST SP 800-37, and NIST SP 800-53 security controls.

•     Familiarity with DHS 4300A Sensitive Systems Policy or equivalent federal agency security policy.

•     Experience preparing or maintaining ATO documentation (SSP, SAR, POA&M, Contingency Plan).

•     Strong written and verbal communication skills, with the ability to translate technical risk into terms understandable to non-technical stakeholders.


Required Certifications:

Candidates must hold, at minimum, both of the following certifications at time of application (in accordance with DoD 8570.01-M / DoD 8140 IAM Level II requirements):

•     Certified Information Systems Security Professional (CISSP)

•     CompTIA Security+ (CE)


Preferred Qualifications:

•     Prior experience directly supporting CBP, DHS, or another federal law enforcement/homeland security agency.

•     Additional certifications such as CAP, CISM, CEH, or Cloud+.

•     Experience with cloud environments (AWS GovCloud, Azure Government) and associated FedRAMP/ATO requirements.

•     Experience with GRC and vulnerability management tooling (e.g., Xacta, CSAM, Nessus/ACAS, Splunk).

•     Active DHS/CBP Entry-on-Duty (EOD) or current CBP suitability determination.


Equal Opportunity Employer






Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.