AnaVation LLC · 5 months ago
Junior Information System Security Officer (ISSO)
AnaVation is a leader in solving complex technical challenges for the U.S. Federal Intelligence Community. They are seeking a motivated Junior Information System Security Officer (ISSO) to support cybersecurity compliance and risk management efforts, including the development of documentation and system security assessments.
AnalyticsCloud Data ServicesCyber SecurityInformation TechnologySoftware
Responsibilities
Support the development and maintenance of ATO/ATT documentation for low to moderate-impact systems
Assist with system security assessments and control evaluations under the Risk Management Framework (RMF)
Maintain security artifacts and documentation in JCAM
Conduct biweekly reviews of system logs and vulnerability scan results
Track and manage POA&Ms in coordination with senior ISSOs and system owners
Participate in continuous monitoring, training exercises, and contingency planning events
Ensure compliance with cybersecurity policies and NIST SP 800-53 control
Qualification
Required
Bachelor's degree in Cybersecurity, Information Technology, or a related field. In lieu of a degree, a minimum of two (2) years of hands-on relevant experience is required
2 years of hands-on experience in Governance Risk and Compliance and the RMF process
Proficient with Federal policies, program standards, and NIST Special Publications guidelines to include but not limited to such as NIST SP 800-53, 800-37, 800-137
Experience supporting system security documentation, control assessments, and ATO or ATT packages for low to moderate-impact systems
Proficient on how to use various security tools, such as but not limited to: JCAM (or an equivalent GRC tool), Tenable, BigFix, and Splunk (or SIEM), and/or equivalent
Familiarity with tools such as JCAM and common security documentation templates
Exposure to POA&M tracking, audit support, and vulnerability scanning processes
Ability to draft and maintain basic cybersecurity documentation (e.g., SSP, CMP, IRP)
Detail-oriented with solid organizational and documentation skills
Ability to brief technical content to non-technical leadership
Proficient in Microsoft Office Suite (Word, Excel, PowerPoint)
Ability to obtain Public Trust clearance; Secret clearance strongly preferred
Preferred
CompTIA Security+
CGRC (formerly CAP), CEH, or equivalent entry-level cybersecurity certification
Benefits
Generous cost sharing for medical insurance for the employee and dependents
100% company paid dental insurance for employees and dependents
100% company paid long-term and short term disability insurance
100% company paid vision insurance for employees and dependents
401k plan with generous match and 100% immediate vesting
Competitive Pay
Generous paid leave and holiday package
Tuition and training reimbursement
Life and AD&D Insurance