Information System Security Officer (ISSO)
Our Mission
At Dobbs Defense, we deliver mission-centric IT, Cyber, and data analytics solutions for our government and commercial clients through the convergence of automation, innovation, training, and education. Delivering high-quality IT, cybersecurity, and data analytics solutions through proven and innovative methods is our vision.
Job Description
Dobbs Defense Solutions is seeking an Information Systems Security (ISSO) to be at the forefront of cybersecurity, ensuring that information systems maintain a robust security posture and continue to meet the highest standards in national security. You'll work hands-on with cutting-edge technology, collaborate with government stakeholders, and play a key role in shaping the future of our cybersecurity programs.
Duties
- Work closely with the Information Systems Security Manager (ISSM) to drive information assurance initiatives, including security authorization activities, compliance with Risk Management Framework (RMF) policies, and the development of System Security Plans (SSPs).
- Perform Security Technical Implementation Guide (STIG) reviews, self-assessments, and participate in Assessment & Authorization (A&A) testing to ensure our systems stay secure and compliant
- Analyze system audit logs for unusual activity, conduct vulnerability assessments, and implement mitigation strategies to protect against potential risks
- Use your expertise to apply a comprehensive range of cybersecurity policies, principles, and techniques to maintain the integrity of systems processing classified information
- Perform risk analysis for system changes, contribute to the Risk Management Framework process, and recommend security solutions to address any identified gaps
- Partner with government customers to support Continuous Monitoring (ConMon) activities, manage security incidents, and ensure timely vulnerability remediation
- Ensure all system documentation is up to date in government record-keeping systems like Xacta
- Manage changes to security-relevant software, hardware, and firmware to maintain system security
Required education and experience:
- Bachelor's degree with at least 8 years of relevant experience or a
- Master's Degree and 6 years of relevant experience. An additional 4 years of experience may be considered in lieu of a degree
- 6+ years of experience in IA/security roles, with a strong understanding of OMB information security directives and policy compliance
- Security+, CISSP, CISA, or equivalent certifications (DoD 8570 IAM Level 2 equivalent)
- At least 5 years of experience with FISMA, NIST, and OMB federal information system requirements
- Advanced written and verbal communication skills to effectively communicate security concepts and policies
- Experience shaping policies and programs for Federal or DoD information security initiatives
- Knowledge of NIST guidelines (SP 800-37, 800-53, 800-53A) and proven experience in Security Control Assessment
- Hands-on risk assessment experience that incorporates system/mission requirements and operational constraints
- Splunk experience to enhance your threat detection capabilities
- Understanding of FISCAM compliance, with familiarity in managing risk for federal systems
- Cloud experience with AWS is a plus
- Xacta experience is highly desirable for security documentation and compliance management
- TS/SCI or SCI eligibility and active polygraph or ability to obtain a polygraph
- Onsite