Information System Security Officer (ISSO) Lead (Remote)

Remote in Stafford, VA, US • Posted 4 hours ago • Updated 4 hours ago
Full Time
On-site
USD $111,776.00 - 164,390.00 per year
Fitment

Dice Job Match Score™

📊 Calculating match score...

Job Details

Skills

  • Mergers and Acquisitions
  • Marketing Operations
  • Public Relations
  • Interviewing
  • Cloud Computing
  • Information System Security
  • Continuous Monitoring
  • Restructuring
  • Lifecycle Management
  • Information Assurance
  • Information Systems
  • CISSP
  • Durable Skills
  • Technical Drafting
  • Documentation
  • Privacy
  • Security Impact Analysis
  • Impact Analysis
  • Data Security
  • Management
  • Communication
  • Typing
  • Presentations
  • Security Clearance
  • DoD
  • NAC
  • FBI
  • Reporting
  • Law Enforcement
  • Recruiting
  • ISO 9000
  • Auditing
  • Information Governance
  • Cyber Security
  • Risk Management
  • Regulatory Compliance
  • SAP GRC
  • Information Security
  • Roadmaps
  • DSC
  • Computer Hardware
  • Application Development
  • ICD
  • High-level Design
  • Security Analysis
  • Risk Management Framework
  • RMF
  • Status Reports
  • Authorization
  • Life Insurance
  • Law
  • Human Resources

Summary

The following states/districts are excluded from this job ad: AK, CA, CO, CT, DC, HI, LA, MA, MN, MO, NE, NV, NH, NJ, NM, NY, ND, OR, PR, RI, VT, WA, WY

Future Need - Actively Interviewing

Location: Remote in any United States jurisdiction not excluded from this job advertisement.

Lead the authorization integrity of one of the Department of Veterans Affairs (VA's) most complex multi-tenant cloud platforms. As the Information System Security Officer (ISSO) Lead, you will manage Authorization to Operate (ATO)/Approval to Connect (ATC) sustainment, security audits, and continuous monitoring across a platform undergoing active authorization boundary restructuring.

Position Description: The ISSO Lead manages all Authorization to Operate (ATO)/Approval to Connect (ATC activities, coordinates security audits and assessments, and oversees Plan of Action and Milestones (POA&M) lifecycle management across the tiered multi-tenant authorization environment.

Minimum/General Experience: 10 years of experience in information systems security

Minimum Education: Bachelor's Degree in cybersecurity, information assurance, or related field; Certified Information Systems Security Professional (CISSP) or Certified Authorization Professional (CAP) (preferred)

Essential Skills/Qualifications:
  • Expert knowledge of National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) process (e.g., Categorize, Select, Implement, Assess, Authorize, and Monitor)
  • Excellent ability to initiate actions required to establish new ATOs/ATCs
  • Excellent ability to maintain existing authorizations
  • Excellent ability to attend or conduct security audits
  • Excellent experience drafting assessment finding mitigation plans
  • Excellent knowledge of multi-tenant ATO inheritance frameworks
  • Excellent ability to support authorization boundary management between platform and tenant layers
  • Above average ability to maintain security documentation (e.g., Privacy Threshold Analysis (PTA), Privacy Impact Assessment (PIA), Security Impact Analysis (SIA), Business Impact Analysis (BIA), Data Security Categorization (DSC), hardware/software lists, and Ports, Protocols, and Services Management (PPSM) documents)
  • Experience supporting a federal agency
  • Excellent verbal and written communication skills

General Physical Requirements needed to perform the essential functions of this job may vary based on the location of the assignment.
  • Assignment Location - Remote
  • Sedentary Work - Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects.
  • Typing, communicating, repetitive motions.
  • Close visual acuity to prepare and analyze data, view computer monitors and read. May need to view presentation screens and other visual aids in a virtual setting.
  • Inside environmental conditions with protection from outside elements.

Security: Active Federal Civilian Public Trust clearance
  • U.S. Citizenship or Permanent Resident that has lived in the United States for at least 3 years

Federal Civilian Public Trust Consists of a review of up to but not limited to:
  • Covers 10 year period and in some instances lifetime events
  • OPM Security Investigations Index (SII)
  • DOD Defense Central Investigations Index (DCII)
  • National Agency Check (NAC) records
  • FBI name check
  • FBI fingerprint check
  • Credit report check
  • Written inquiries to previous employers and references listed on the application for employment
  • Potential interviews with the subject, spouse, neighbors, supervisor, coworkers
  • Law enforcement check
  • Court records check
  • Education check - Attendance and Degrees

Tasks/activities include, but are not limited to:
  • Initiates actions required to establish new ATOs and ATCs
  • Maintains all existing authorizations including periodic assessment oversight and staffing of all ATO audits
  • Coordinates all RMF activities with the AO, ISSO counterparts, ISO, and designated stakeholders
  • Attends or conducts all security audits including General (IG), Security Assessment and Validation Data (SAVD), Cybersecurity Compliance Task Force (CCTF), Office of Information Security (OIS), Information Security Risk Management (ISRM), Governance Risk and Compliance (GRC), and Information Security Policy & Strategy (ISPS) assessments
  • Attends closeout meetings and reviews all reported findings for accuracy
  • Drafts assessment finding mitigation plans including roadmap and timeline
  • Submits Plans of Action and Milestones (POA&M) for all prescribed remediations
  • Maintains program security documents, diagrams, and artifacts required for ATO/ATC upkeep including PTA, PIA, SIA, BIA, DSC, hardware lists, software lists, and PPSM documents
  • Collaborates with application development teams and platform architects to establish and maintain Interconnection Diagrams (ICD), High Level Diagrams (HLD), and security assessment boundary diagrams
  • Supports the Multi-Tenant Platform Evolution Strategy ensuring ATO inheritance frameworks and authorization boundaries between platform and tenant layers are clearly defined
  • Ensures no lapse in ATO status for any platform capability, service, or hosted application
  • Contributes to the monthly RMF, security, and ATO status report including authorization posture, renewal timelines, and control implementation status

Compensation & Benefits: The annual projected pay range for this position is $111,776 - $164,390 with consideration being given to various factors including but not limited to qualifications, experience, job responsibilities, and geographic location.

Oxley Enterprises, Inc. offers a full array of benefits including:
  • Medical, dental, vision and prescription drug coverage for you and your family.
  • Life Insurance, short-term disability and long-term disability paid for by the Company.
  • Supplemental coverages including Accident, Critical Illness, and Hospital.
  • Additional Life insurance coverage for you and your dependents.
  • 401k plan with various options to select based on your retirement goals.

Oxley Enterprises , Inc. is a certified service-disabled veteran-owned (SDVOSB), veteran-owned (VOSB), and woman-owned small business (WOSB) that has 26 years of experience building and delivering quality IT systems and programs. Oxley is ranked in the INC 5000 7 times (2016, 2017, 2018, 2021, 2023, 2024, 2025). Oxley is a 2019 - 2025 Department of Labor HIRE Vets Medallion Award Winner. Oxley is Virginia Values Veterans certified.

All qualified applicants will receive consideration for employment without regard to any status protected by applicable federal, state, or local law.

If you require a reasonable accommodation to apply for a position at Oxley Enterprises, Inc., please send an email to our Human Resources Department at: with the following information:

Subject Line: Accommodation Request

Provide a description of your accommodation request

Include your contact information: Full name, Email address, Best number to reach you (optional)

We participate in the E-Verify program.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10374408
  • Position Id: a0bdd38765e8fcb4b5c1bede8a6133ff
  • Posted 4 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Vienna, Virginia

Today

Full-time

USD 119,000.00 - 170,000.00 per year

Arlington, Virginia

Today

Full-time

Arlington, Virginia

Today

Full-time

Washington, District of Columbia

Today

Full-time

USD 80,001.00 - 120,000.00 per year

Search all similar jobs