Information System Security Officer (ISSO) II

Amatriot Group, LLC

  • Wright-Patterson AFB, OH
  • 1 day ago
  • $110,000–$112,000 Per Year

Highlights

The ISSO manages the security aspects of an information system and supports day-to-day security operations, including physical and environmental protection, personnel security, incident handling, and security training and awareness. The position supports Special Access Programs (SAPs) for Department of Defense (DoD) agencies, including HQ Air Force, the Office of the Secretary of Defense (OSD), and Military Compartments efforts.

Numbers & Facts

LocationWright-Patterson AFB, OH
Salary$110,000–$112,000 Per Year

Description

Location: Wright-Patterson AFB, OH
Security Clearance: Active TS/SCI [Required] (Must be able to obtain a Ci Poly)
Job Type: Full-Time

Target Salary Range*:$110,000 - $112,000

*This represents the potential salary range for this position depending on education level, years of experience and/or certifications in addition to other position specific requirements which may impact salary


Position Overview

The Information System Security Officer (ISSO) is responsible for maintaining the appropriate operational security posture of an information system and works closely with the ISSM and ISO. The ISSO manages the security aspects of an information system and supports day-to-day security operations, including physical and environmental protection, personnel security, incident handling, and security training and awareness.

The position supports Special Access Programs (SAPs) for Department of Defense (DoD) agencies, including HQ Air Force, the Office of the Secretary of Defense (OSD), and Military Compartments efforts. The ISSO provides day-to-day support for Collateral, Sensitive Compartmented Information (SCI), and Special Access Program (SAP) activities.


Key Responsibilities

Security Operations and Compliance

  • Assist the ISSM in meeting duties and responsibilities.

  • Perform ISSO duties in support of in-house and external customers.

  • Conduct periodic reviews of information systems to ensure compliance with the security authorization package.

  • Prepare reports on the status of security safeguards applied to computer systems.

  • Ensure all information system security-related documentation is current and accessible to properly authorized individuals.

  • Ensure audit records are collected, reviewed, and documented, including anomalies.

  • Execute the cybersecurity portion of the self-inspection, including security coordination and review of system assessment plans.

Authorization and Risk Management

  • Prepare, review, and update authorization packages.

  • Monitor information systems and their environments of operation in coordination with the ISSM and ISO.

  • Develop and update authorization documentation.

  • Notify the ISSM of changes that might affect the authorization determination of information systems.

  • Conduct security impact analysis activities for configuration management changes to authorization boundaries and provide the results to the ISSM.

  • Identify cybersecurity vulnerabilities and assist with implementing countermeasures.

Configuration and Change Management

  • Implement configuration management across authorization boundaries.

  • Assess the security impact of configuration changes and make recommendations to the ISSM.

  • Coordinate changes or modifications to system hardware, software, or firmware with the ISSM and AO/DAO before implementation.

  • Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly.

Physical, Media, and Personnel Security

  • Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media.

  • Support physical and environmental protection, personnel security, incident handling, and security training and awareness activities.

Training

  • Attend required technical and security training, including operating system, networking, and security management training, as applicable to assigned duties.

  • Work in close coordination with the ISSM and ISO to monitor information systems and their environments of operation.


Qualifications

Education

  • Bachelor's degree [Required], or 4 years of additional experience in lieu of degree [Required].

Experience

  • 2–5 years of related experience [Required], especially in developing RMF packages or bodies of evidence.

  • Prior performance in roles such as System/Network Administrator or ISSO [Required].

  • SAP experience [Required].

Certifications

  • IAT Level II or IAM Level II certification [Required].

Clearance

  • TS/SCI clearance [Required].

  • Must be willing to obtain a CI Poly [Required].

Similar Jobs

See more jobs