Cherokee Federal · 1 day ago
Information System Security Engineer
Cherokee Federal is a trusted partner for numerous federal clients, focusing on solving complex challenges and serving the government’s mission. The Information Systems Security Manager (ISSM) will lead information assurance efforts to maintain the Authority to Operate (ATO) for a mission-critical system, overseeing security posture and managing the RMF lifecycle.
GovernmentNon ProfitProfessional ServicesPublic Relations
Responsibilities
Lead the implementation, documentation, and continuous monitoring of Risk Management Framework (RMF) controls
Serve as the primary point of contact for all matters related to the system’s certification and accreditation (C&A) and ATO
Maintain and update all system security artifacts in eMASS, and create and manage Plans of Action & Milestones (POA&M)
Apply and maintain DISA STIGs across the architecture, including Windows Server, Oracle databases, and IIS web servers
Perform and document ACAS and SCAP scan reviews and coordinate all vulnerability remediation efforts
Oversee enterprise-level system hardening, patching, and the management of configuration baselines (GPOs, local security policy)
Ensure the secure configuration of server hardware and software within a distributed IT architecture
Secure applications and information using Public Key Infrastructure (PKI)
Troubleshoot network, database, and application connectivity issues that impact performance or security
Draft and maintain critical security documentation, including System Security Plans (SSPs), Standard Operating Procedures (SOPs), and change requests for the Configuration Control Board (CCB)
Ensure systems remain compliant with all DoD patching and IAVM directives
Performs other job-related duties as assigned
Qualification
Required
Active Secret clearance
U.S. citizenship or legal permanent residency
Bachelor's degree in a relevant technical field
CompTIA Security+ certification (or other DoD 8570 IAT Level II or higher certification)
Demonstrated experience with DoD Information Assurance policies and the full life cycle of the certification and accreditation (C&A) process
Hands-on experience with the Risk Management Framework (RMF) and creating/managing artifacts in eMASS
Proven experience in a DoD environment troubleshooting desktop, web, database, or server problems
Strong understanding of DISA STIGs and vulnerability management tools (e.g., ACAS, SCAP)
Experience administering and securing Windows Server environments, including IIS
Strong technical documentation and communication skills
Must pass pre-employment qualifications of Cherokee Federal
Benefits
Medical
Dental
Vision
401K
Other possible benefits as provided
Company
Cherokee Federal
Cherokee Federal, a division of Cherokee Nation Businesses, is a trusted team of government contracting professionals who can rapidly build innovative solutions.
Funding
Current Stage
Late StageLeadership Team
Recent News
2025-11-18
2025-09-02
2025-06-11
Company data provided by crunchbase