Information Systems Security Officer (ISSO) jobs in United States
cer-icon
Apply on Employer Site
company-logo

Space Dynamics Laboratory · 9 hours ago

Information Systems Security Officer (ISSO)

Space Dynamics Laboratory (SDL) is seeking a highly experienced Information Systems Security Officer (ISSO) to lead security efforts, ensuring compliance with federal regulations and industry best practices. The ideal candidate will be responsible for overseeing security operations, developing incident response plans, and managing security training programs.

Non Profit
check
Growth Opportunities
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Ensures information systems comply with NIST 800-53, RMF, and other security frameworks
Conducts risk assessments, vulnerability management, and mitigation planning
Performs audit log reduction and analysis as well as SIEM tuning and configuration
Maintains Authority to Operate (ATO) requirements for classified systems
Oversees security operations, threat analysis, and intrusion detection
Develops and executes incident response plans to protect sensitive data
Implements continuous monitoring strategies to proactively identify threats
Develops security policies, procedures, and guidelines in alignment with DoD regulations
Ensures thorough audit readiness and proper documentation of security controls
Manages security training programs to promote best practices
Works closely with program teams, IT teams, and security personnel to strengthen SDL’s cybersecurity posture
Serves as a trusted advisor for leadership on emerging threats and risk management strategies
Leads security assessments and interfaces with Government agencies (e.g., DoD entities)

Qualification

CybersecurityRisk Management Framework (RMF)NIST 800-53SIEM toolsCISSP certificationCISM certificationCISA certificationCGRC certificationIncident ResponseVulnerability ManagementTechnical WritingCollaborationLeadershipCommunication

Required

5-10 years of experience in information systems security, cybersecurity, or related fields
Bachelor's degree in cybersecurity, computer science, information assurance, or a related field
Ability to obtain in 6 months after hire date one of the following certifications: CISSP, CISM, CISA, CGRC, or equivalent
Knowledge of Security Frameworks: NIST 800-53 Risk Management Framework (RMF), FISMA, and DoD security controls
Experience with examining and understanding security documentation for system hardware and software, to include System Security Plan (SSP), Plan of Action and Milestones (POA&M), equipment specifications, practices, and procedures including assessment of controls and artifacts to verify the system is ATO ready
Assist in the execution of the Incident Response Plan, specifically in Data Spillage Cleanup
Prepare the weekly, monthly, quarterly, bi-annual, and annual ConMon reports to push towards a perpetual ATO
Recommend software packages for use in secure spaces
Technical Skills: Expertise in SIEM tools, vulnerability scanning, encryption, and secure network architecture
Ability to create professional reports for system owners and technical staff that accurately describe test events and results for highly complex requirements
Must be a U.S. citizen with the ability to obtain and maintain a DoD security clearance

Preferred

Master's degree in cybersecurity, computer science, information assurance, or a related field
Certifications: CISSP, CISM, CISA, CGRC, or equivalent
Ability to understand, explain, and mitigate non-implemented controls
Familiarity with various interconnection agreements and memorandums of understanding
Detailed understanding of customer-centric RMF workflows and the ability to articulate that knowledge to internal and external customers
In-depth understanding of network topologies, protocols, hardware (switches, routers, etc.) and hardening techniques
Knowledge of the complex network environments involving shared networks and multiple security enclaves
Displays in-depth understanding of cybersecurity policies and procedures for government sector information systems
Familiarity with eMASS ATO submission process
Must possess the ability to bridge the technical implementation (i.e., developer talk) into commonly understood security words
Technical knowledge and experience to implement cybersecurity policies and procedures
Experience working with System Administrators, Developers, and Systems Engineers
Familiarity with developing and maintaining system security documentation
Work under limited supervision
Active Security Clearance

Benefits

Competitive salaries
Comprehensive benefits package

Company

Space Dynamics Laboratory

company-logo
Space Dynamics Laboratory is served as a nonprofit unit of the utah state university research foundation.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Darin Partridge
C4ISR Systems Division Director
linkedin
leader-logo
Jed Hancock
President
linkedin
Company data provided by crunchbase