RMF Information System Security Officer

OSI VISION LLC

San Antonio, TX

JOB DETAILS
SKILLS
Air Force, Code of Federal Regulations, Computer Science, Computer Security, Corrective Action, Facilities Management, Government, Identity Data Management, Incident Response, Internet Security, Metrics, Open Systems Interconnection (OSI), Policy Development, Public Key Infrastructure (PKI), Secret Clearance, Security Monitoring, System Validation, Systems Maintenance, U.S. National Institute of Standards and Technology (NIST)
LOCATION
San Antonio, TX
POSTED
30+ days ago

About the Role

Osi Vision is seeking an experienced ISSO to support the Air Force Public Key Infrastructure (PKI) System Program Office. You will own the RMF lifecycle for PKI and Air Force Identity and Access Management (IdAM) systems, maintaining accreditation packages, conducting compliance scans, and working directly alongside a government counterpart to keep systems authorized and secure.

This is a hands-on technical role. You need to be able to work independently in eMASS and run ACAS scans from day one.

What You Will Do

  • Own and manage RMF packages in eMASS to achieve and maintain Authority to Operate (ATO) and Approval to Connect (ATC)
  • Conduct compliance scans using ACAS, SCAP, and AF-approved tools; document and track findings in the POA&M
  • Apply and validate STIGs across system components; coordinate SCA-V assessments
  • Develop and maintain System Security Plans, Incident Response plans, and supporting artifacts
  • Assist the FSO with implementation and management of the facility Security Program per NISPOM (32 CFR Part 117) and DAAPM
  • Identify and document local threats and vulnerabilities; report indicators into the Insider Threat process
  • Brief stakeholders on security posture, schedule updates, and compliance status
  • Conduct periodic self-inspections and ensure corrective action on all findings

What You Need

  • Active Secret clearance
  • DoD 8570.01-M IAT Level II certification (Security+, CISSP, CCNA Security, GSEC, or equivalent)
  • Hands-on eMASS experience, managing controls and accreditation records independently
  • Hands-on ACAS and HBSS experience
  • Familiarity with RMF policy: DoDD 8500.1, DoDI 8500.2, DoDI 8510.01, NIST SP 800-53
  • Experience with Industrial Security programs and NISPOM compliance
  • Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience)

Preferred

  • Experience supporting PKI or IdAM systems
  • Vulnerability management program experience including policy development and metrics tracking

About the Company

O

OSI VISION LLC