Contact Government Services, LLC Logo

Contact Government Services, LLC

Information Systems Security Officer (ISSO)

Posted 15 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in Los Angeles, CA, USA
92K-125K Annually
Senior level
Remote or Hybrid
Hiring Remotely in Los Angeles, CA, USA
92K-125K Annually
Senior level
Manage full lifecycle RMF/DIACAP Assessment and Authorization (A&A) activities to achieve ATOs for Department of Commerce systems. Conduct security assessments per NIST 800-53, maintain risk registries, support vulnerability scanning and patching (HBSS/ACAS/IAVM), produce A&A documentation in eMASS, and provide security guidance, configuration management recommendations, and mitigation strategies.
The summary above was generated by AI
ISSO
Employment Type: Full-Time, Experienced 
Department: Information Technology 

CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you’ll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.  

CGS brings motivated, highly skilled, and creative people together to solve the government’s most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. 

Skills and attributes for success:
- Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. 
- Maintain responsibility for managing cybersecurity risk from an organizational perspective. 
- Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.
- Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.
- Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).
- Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.
- Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.
- Provide subject matter expertise for cyber security and trusted system technology. 
- Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.
- Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. 
- Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.
- Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. 

Qualifications:
- Bachelor’s Degree.
- A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.
- eMASS experience.
- Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.
- Strong desktop publishing skills using Microsoft Word and Excel.
- Experience with industry writing styles such as grammar, sentence form, and structure.
- Ability to multi-task in a deadline-oriented environment.

Ideally, you will also have:
- CISSP, CASP, or a similar certificate is preferred.
- Master's Degree in Cybersecurity or related field.
- Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.
- Demonstrated ability to work well independently and as a part of a team.
- Excellent work ethic and a high commitment to quality.

Our Commitment:
Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client’s specific needs. We are committed to solving the most challenging and dynamic problems.

For the past seven years, we’ve been growing our government contracting portfolio, and along the way, we’ve created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work.

Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come.

We care about our employees. Therefore, we offer a comprehensive benefits package.
Health, Dental, and Vision
Life Insurance
401k
Flexible Spending Account (Health, Dependent Care, and Commuter)
Paid Time Off and Observance of State/Federal Holidays

Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Join our team and become part of government innovation!
Explore additional job opportunities with CGS on our Job Board:
https://cgsfederal.com/join-our-team/
For more information about CGS please visit: https://www.cgsfederal.com or contact:

#CJ

Similar Jobs

15 Days Ago
Remote or Hybrid
US
Senior level
Senior level
Mobile • Security • Software • Cybersecurity
Serve as the ISSO for assigned systems, maintain system security documentation (SSPs, control narratives, POA&Ms), support FedRAMP/GovRAMP/DoD authorization and continuous monitoring, coordinate remediation and assessments with engineering and auditors, support incident response and audit readiness, and track security metrics and evidence.
Top Skills: AWSChatgptClaudeDod Impact Level 5FedrampFedramp HighFips 199Fips 200GovcloudGovrampGovramp HighIso 27001Nist Risk Management Framework (Rmf)Nist Sp 800-37Nist Sp 800-53Nist Sp 800-53APlans Of Action And Milestones (Poa&M)Privileged Access Management (Pam)Soc 2System Security Plan (Ssp)
15 Minutes Ago
Remote or Hybrid
United States
95K-125K Annually
Expert/Leader
95K-125K Annually
Expert/Leader
Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Lead end-to-end executive recruiting for AVP, VP, and C-suite roles. Develop search strategies, source and assess senior candidates, build leadership pipelines, and advise business leaders and HR stakeholders. Conduct market mapping, provide compensation and competitive insights, manage executive search firms, and deliver a high-touch candidate experience. Support onboarding, promote diverse candidate slates, and ensure recruiting practices align with company values and governance standards.
16 Minutes Ago
Remote or Hybrid
USA
85K-120K Annually
Entry level
85K-120K Annually
Entry level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Investigate and respond to real-time security detections across endpoint, identity, email, network, and cloud environments. Analysts perform forensic and malware analysis, assess Microsoft 365 incidents, identify root cause and compromise scope, recommend remediation, improve detection processes, and communicate findings clearly to customers. The role requires incident response, threat analysis, operating system, network, identity, SIEM, scripting, and AI fundamentals, with a four-day, ten-hour schedule including one weekend day.
Top Skills: Active DirectoryBashEdrLinuxmacOSMicrosoft 365Microsoft Entra IdMitre Att&CkOktaPowershellPythonSIEMWindows

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account