Innovative Management Concepts, Inc. · 8 hours ago
Information System Security Officer (ISSO) - IMC0828
Innovative Management Concepts, Inc. is a Service-Disabled Veteran-Owned Small Business providing IT services to government and commercial customers. The Information System Security Officer (ISSO) is responsible for managing the Risk Management Framework (RMF) and ensuring the security of information systems while providing guidance and support to the command and subordinate units.
Information Technology
Responsibilities
Lead the Risk Management Framework (RMF) process for all systems from initiation to decommissioning
Develop and maintain A&A documentation (SSP, Contingency Plans, Security Assessment Reports)
Validate Certification & Accreditation (C&A) packages
Conduct security control assessments, identify vulnerabilities, and manage POA&M for risk mitigation
Serve as the primary security advisor to System Owners and leadership
Act as TYCOM/ISIC representative for network maintenance, inspections, and assessments
Provide technical guidance on Information Assurance (IA) compliance and directives
Advise commanders on accreditation and IA-related issues
Implement and enforce cybersecurity policies per DoD, DoN, Fleet, and Force standards
Perform security impact analysis for system changes
Oversee continuous monitoring, vulnerability scanning, log analysis, and incident response
Assist the ship’s force with operational and maintenance issues affecting system performance
Mentor squadron and ship personnel on security best practices
Administer Windows Server, VMware vSphere, enterprise storage, and Active Directory
Manage GPOs, DNS, and security configurations
Utilize ACAS, HBSS, and SCCM for vulnerability management and patching
Provide Tier III support for complex security incidents
Qualification
Required
At start date, must possess CompTIA Security+CE or higher certification to meet IAT Level II requirements
4 - 6 years of experience in Tier 3 System or Network Administration, including: Windows, Linux, and Unix environments, Network configuration management, VDI administration, Policy development and STIG compliance
Solid understanding of Layer 1-3 networking, enclave boundaries, and infrastructure integration to advise, coordinate, and assess risk (will not serve as primary network engineer)
6+ years total IT/Cyber experience, with 3+ years directly supporting RMF and ISSO responsibilities in DoD or DoN environments
Hands-on familiarity with the following: Windows Server, Active Directory, STIGs, ACAS/HBSS, Enterprise security tooling
Extensive experience with the Risk Management Framework (RMF) and the DoD Assessment & Authorization (A&A) process
Proven experience as an Information System Security Officer (ISSO) or in a similar cybersecurity role
Strong technical knowledge of Windows Server environments, virtualization (VMware), and enterprise storage solutions
Proficient in administering Microsoft Teams and Public Key Infrastructure (PKI)
Experienced in IT deployments, inventory management, and troubleshooting
Skilled in IT procurement processes, including RFC submissions and DISA DMCC provisioning
Capable of performing standard help desk support and ad hoc IT troubleshooting
Knowledgeable in managing communications circuits and resource allocation (TCO duties)
Detail-oriented and highly organized, with excellent written and oral communication skills
Excellent interpersonal skills for dealing with diverse military and civilian stakeholders
Strong self-motivation, organizational skills, and ability to work independently or collaboratively
Excellent communication, customer service, and consensus-building skills, with proven ability to work with senior leaders in a Joint Operations Center
Ability to handle after-hours on-call support when authorized
Please note that pursuant to a government contract, this specific position requires U.S. Citizenship
All applicants must have current DoD TS/SCI clearance eligibility day one and prior to entry on duty
Preferred
Prior Fleet, TYCOM, or Joint command experience is highly desirable
Possess one or more of the following certifications: CISSP, CISM, SecurityX
Proficiency in Windows command-line (CMD) and PowerShell scripting for system administration and automation
Benefits
401(k) with a 3% employer match
Paid time off
Paid holidays
FSA spending
Dental
Vision
Health insurance
Company-sponsored AD&D
Life insurance
Bonus and/or other incentives