Information System Security Officer (ISSO) (23-007)
CTIAbout the role
The ISSO will be responsible for ensuring the appropriate operational security posture is maintained for an information system and as such, works in close collaboration with the ISSM and ISO. Appointed in writing by the authority at a site responsible for information system, the ISSO shall have the detailed knowledge and expertise required to manage the security aspects of an information system and, in many organizations, is assigned responsibility for the day-to-day security operations of a system. Responsibilities also include physical and environmental protection, personnel security, incident handling, and security training and awareness. In close coordination with the ISSM and ISO, the ISSO will play an active role in monitoring a system and its environment of operation to include developing and updating the SSP, managing and controlling changes to the system, and assessing the security impact of those changes.
Responsibilities of the ISSO include, but are not limited to:
- Assist the ISSM in meeting their duties and responsibilities. The ISSO shall assume ISSM responsibilities in the absence of the ISSM
- Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the security authorization package
- Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties
- Maintain required IA certifications
- Ensure all users have the requisite security clearances, authorization, need-to-know, and are aware of their security responsibilities before granting access to the IS
- Report all security-related incidents to the ISSM
- Conduct periodic reviews of information systems to ensure compliance with the security authorization package; h. Serve as member of the CCB, if designated by the ISSM
- Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
- Formally notify the ISSM and AO/DAO when changes occur that might affect system authorization
- Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
- Ensure all IS security-related documentation is current and accessible to properly authorized individuals
- Ensure audit records are collected, reviewed, and documented (to include any anomalies)
Requirements
Necessary skills and experience
- DoD 8570 Compliance for Information Assurance Technician (IAT) Level II: at least 3 years in IA technology or a related area
- Experience with Linux, Windows, Firewalls, Switching and Routing, Virtual Machines (VMs), Tenable Security Center and Nessus (ACAS), Risk Management Framework (RMF)
- DoD 8570 IAT Level II Compliant Certification (Most likely CompTIA Security+)
- Must be willing to obtain an ACAS certification within 6 months of being hired
- This position requires an active current U.S. Top Secret Security Clearance with ability to obtain TS/SCI
Beneficial skills and experience
- RedHat 7 and 8, Windows 10, Dell switches, Palo Alto firewalls, Kubernetes, Containerization, Joint Special Access Program (SAP) Implementation Guide (JSIG)
- Typically, a bachelor's degree or equivalent experience and minimum 5 years prior relevant experience, or an advanced Degree in a related field and minimum 3 years' experience
Not Relocation Eligible - Relocation assistance not available
Benefits
CTI is a rapidly growing company offering the following:
- Medical, dental and vision insurance
- H.S.A. (partially funded by CTI) and Flex Spending
- Company-paid life insurance/AD&D and disability insurance
- Optional supplemental life, critical illness, hospital indemnity and accident insurances
- Paid vacation, sick leave and holidays
- 401k plan with Safe Harbor contribution
- Tuition reimbursement/professional training options
- Employee Assistance Program
- Travel Assistance
- Financial Planning Assistance
- Voluntary Pre-Paid Legal
- Flexible schedules with telecommuting options
- Service awards program
CTI is an Equal Opportunity employer and shall abide by the requirements of 41 CFR 60-1.4(a), 60-300.5(a) and 60-741.5(a). These regulations prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, religion, sex, sexual orientation, gender identity or national origin. Moreover, these regulations require that c
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s