ASEC, Inc. Logo

ASEC, Inc.

Information System Security Officer (ISSO)

Posted 12 Days Ago
Be an Early Applicant
In-Office
Lemoore, CA
115K-150K Annually
Senior level
In-Office
Lemoore, CA
115K-150K Annually
Senior level
Serve as the Information System Security Officer for a high-visibility DoD program. Implement and enforce RMF-based security controls, perform vulnerability assessments (ACAS, STIGs, SCAP), continuous monitoring, risk analyses, and support ATO documentation (SSPs, POA&Ms). Use SolarWinds or Splunk for monitoring and collaborate across teams to ensure compliance with DISA, NIST, CNSSI, JSIG, and SAP/ICD policies.
The summary above was generated by AI

Description

Location: NAS Lemoore, CA

Security Clearance Requirement: Top Secret

Telework Eligible? No - 100% On-Site

What You’ll Do:

As an Information System Security Officer (ISSO), you will play a key role in supporting a high-visibility DoD program. In this role, you’ll help shape and enforce the information system security policies, standards, and methodologies that keep our mission-critical systems protected. Are you ready to make an impact?

As the ISSO, you will provide mission-critical support by:

  • Proposing, coordinating, implementing, and enforcing information system security policies, standards and methodologies.
  • Conducting vulnerability assessments using automated benchmarks and tools such as Assured Compliance Assessment Solution (ACAS), Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs), and Security Content Automation Protocol (SCAP) Compliance Checker.
  • Utilizing SolarWinds or Splunk to perform advanced system monitoring, security event analysis, and continuous compliance activities.
  • Implementing operating systems and network devices security configuration in accordance with Defense Information Systems Agency (DISA) approved Security Technical Implementation Guides (STIGs).
  • Performing security control continuous monitoring, reviewing system security plans and associated artifacts, security audits, risk analysis and developing mitigation strategies for DoD information systems.
  • Identifying Common Criteria and National Information Assurance Partnership (NIAP) certified technologies and the DISA Approved Products List (APL).
  • Preparing certification letters and Memoranda of Agreement (MoA) with system owners for interface and networking implementations.
  • Providing guidance of cross-functional cybersecurity efforts ensuring alignment with organizational and program goals and milestones.
  • Collaborating on documentation for Information System Authority to Operate (ATO) decisions, including SSPs, SOPs, POA&Ms, and Knowledge Articles.
  • Conducting comprehensive risk assessments and vulnerability analyses to identify and mitigate potential threats to satellite communication infrastructures.
  • Position may require flexibility in working hours.

This description outlines the general nature and scope of the role. Additional duties may be assigned as necessary.

Requirements

What You’ll Bring:

  • CompTIA Security + is required. Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related area of study is required. In lieu of a bachelor's degree, candidates must have 5 years of information system security officer / cybersecurity engineering experience in addition to a DoD approved baseline certification (i.e. CompTIA SecurityX, Cloud+, CCSP, etc.) as defined by DoDD 8140-M.  Please upload copies of any relevant IT certifications you hold. 

 Preferred Qualifications: 

  • 5 years of experience with Information Assurance/Cybersecurity (IA/CS).
  • 5 years of experience with Risk Management Framework (RMF) DODI 8510.01.
  • Security controls and implementation delineated in Committee of National Security Systems Instruction (CNSSI) 1253 and National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53, and the Joint Special Access Program Implementation Guide (JSIG).
  • Performing vulnerability assessments using Assured Compliance Assessment Solution (ACAS), Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG), the Security Content Automation Protocol (SCAP) Compliance Checker, incorporating automated Benchmarks.
  • Implementing operating systems and network devices security configuration in accordance with Defense Information Systems Agency (DISA) approved Security Technical Implementation Guides.
  • Performing security control continuous monitoring, security audits, risk analysis and developing mitigation strategies for DoD information systems.
  • Identifying Common Criteria and National Information Assurance Partnership (NIAP) certified technologies and the DISA Approved Products List (APL).
  • Knowledge of the Intelligence Community Directive (ICD) 705, DoD 5205.07, and DOD 5205.07-M Volumes 1-4, Special Access Program (SAP) Policy, and the Joint Special Access Program Implementation Guide (JSIG).

Equally Important:

  • Ability to build positive, collaborative relationships across teams and with external partners.
  • Effective communicator with strong verbal and written skills.
  • Proactive, self-directed work style with the ability to operate independently.
  • Analytical thinker with proven problem-solving capabilities.
  • Highly organized, with the ability to balance competing priorities in a fast-paced environment.

ASEC is committed to providing access and reasonable accommodation in its services, activities, programs, and employment opportunities in accordance with the Americans with Disabilities Act and other applicable laws.

Security Clearance Requirement:

  • This position requires U.S. citizenship and an active DoD Top Secret clearance with SCI eligibility. Selected candidate will be subject to a government security investigation and must meet eligibility requirements for access to classified information.

Salary Range:

  • The anticipated annual salary range for this position is $115,000 - $150,000, commensurate with an individual’s experience, qualifications, and skill set. ASEC is committed to providing fair and equitable compensation. The low end of this salary range is accounting for a candidate that meets or exceeds all of the listed requirements.

Who We Are:

ASEC offers meaningful, mission-driven work within a culture that supports your professional and personal growth. We partner with our government customers to deliver innovative solutions across engineering, information technology, training, and logistics. Above all, we are committed to doing what’s right for the Warfighter—plain and simple. Explore what makes ASEC different by visiting our website.

Why work at ASEC?

  • 100% employee-owned company. Learn more about our Employee Stock Ownership Plan (ESOP) here!
  • Comprehensive benefits package, including 11 paid holidays, medical/dental/vision coverage, HSA/FSA options, disability insurance, and more!
  • 401(k) with company match
  • Tuition assistance for undergraduate and graduate education
  • Veteran-friendly employer
  • Thriving employee culture

Not the right opportunity for you? Send this job posting to a friend!

ASEC is an Equal Opportunity Employer. We recruit, hire, train, compensate, and promote employees based on qualifications, merit, and business needs, without regard to race, color, religion, sex, national origin, ancestry, age, marital status, sexual orientation, gender identity or expression, disability, veteran status, genetic information, pregnancy or related conditions (including breastfeeding), or any other status protected by law.

ASEC also complies with all applicable pay transparency laws and will not discriminate against employees or applicants for inquiring about, discussing, or disclosing compensation.

Similar Jobs

10 Days Ago
In-Office
175K-200K Annually
Senior level
175K-200K Annually
Senior level
Security • Cybersecurity
Supports NASA information-system cybersecurity throughout the system life cycle. Responsibilities include developing System Security Plans, managing RMF and A&A documentation, tracking POA&Ms and risk decisions, reviewing threats and vulnerabilities, supporting patching and remediation, evaluating cloud security, analyzing logs, testing contingency plans, and advising system owners on security controls, privacy assessments, and compliance requirements.
Top Skills: Assessment And Authorization (A&A)Classified NetworksCloud ServicesCybersecurity Vulnerability ManagementNasa RiscsRisk Management Framework (Rmf)
12 Days Ago
In-Office
135K-155K Annually
Senior level
135K-155K Annually
Senior level
Aerospace • Professional Services • Defense
Lead cybersecurity for mission-critical DoD systems: develop and enforce policies, manage vulnerability assessments (ACAS, STIGs, SCAP), implement RMF and continuous monitoring, evaluate NIAP/Common Criteria and DISA APL compliance, prepare authorization documentation and MOAs, advise leadership, and mentor junior staff.
Top Skills: AcasCismCisspCnssi 1253Comptia Security+Disa AplDisa StigsDod 5205.07-MDodd 5205.07Fitsp-MGcihIcd 705JsigNiap/Common CriteriaNist Sp 800-53RmfScap Compliance Checker
12 Days Ago
In-Office
115K-135K Annually
Mid level
115K-135K Annually
Mid level
Aerospace • Professional Services • Defense
Serve as an ISSO for a DoD program: implement and enforce information system security policies, perform vulnerability assessments (ACAS, STIGs, SCAP), implement OS/network STIG configurations, conduct continuous monitoring, risk assessments, and support ATO documentation (SSP, POA&Ms, SOPs). Collaborate on mitigation strategies and prepare certification artifacts for DoD systems, including satellite communications infrastructure.
Top Skills: Assured Compliance Assessment Solution (Acas)Cnssi 1253Common CriteriaDisa Approved Products List (Apl)Disa StigsJsigNiapNist Sp 800-53Rmf (Dodi 8510.01)Scap Compliance Checker

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account