×
Register Here to Apply for Jobs or Post Jobs. X

Information System Security Officer; ISSO

Job in Vienna, Fairfax County, Virginia, 22184, USA
Listing for: ITCON Services
Full Time position
Listed on 2026-03-01
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security, Systems Engineer, IT Consultant
Salary/Wage Range or Industry Benchmark: 80000 - 100000 USD Yearly USD 80000.00 100000.00 YEAR
Job Description & How to Apply Below
Position: Information System Security Officer (ISSO)

Overview

ITCON Services is seeking an experienced and highly skilled Information Security Analyst / ISSO to support multiple federal information systems in a fast-paced, mission-driven environment. The ideal candidate is a proactive security leader with deep knowledge of federal cybersecurity standards, vulnerability management, cloud security, and the Risk Management Framework (RMF). This role partners closely with engineering, development, and customer teams and supports solution design across multiple programs.

At ITCON, we offer competitive compensation, paid training and development opportunities, healthcare benefits that start on your first day, commuter benefits, work-life balance, and the opportunity to work alongside an amazing and growing team.

Applicant must be a permanent resident or citizen of the United States and clearable for Public Trust clearance with the U.S Government.

Responsibilities
  • Vulnerability Management & Security Operations
    • Lead vulnerability scanning, analysis, and risk triage across multiple systems and environments.
    • Interpret scan results and recommend prioritized remediation plans.
    • Collaborate with development and engineering teams to ensure timely remediation and patching.
    • Track and manage Plans of Action & Milestones (POA&Ms), ensuring risk mitigation is completed within required time frames.
  • RMF, ATO, and Compliance
    • Develop and maintain full ATO packages and security documentation (e.g., SSPs, SARs, CMPs, Contingency Plans).
    • Lead Certification & Accreditation (C&A) activities using NIST 800-53 and other federal security frameworks.
    • Ensure compliance in FedRAMP, Azure, AWS, PCI DSS, and multi-tenant cloud environments.
    • Conduct ongoing system monitoring, continuous diagnostics, and reporting for federal stakeholders.
  • Security Architecture & Engineering
    • Design, recommend, and validate integrated security solutions to protect sensitive and proprietary data.
    • Design and implement security controls including firewalls, Web Application Firewalls (WAFs), and SIEM tooling.
    • Provide technical security engineering services, including secure configuration, hardening, and architecture review.
    • Translate business and security requirements into actionable technical designs during strategic planning.
  • Cloud & Dev Sec Ops
    • Apply modern cloud security concepts, including identity, access, governance, logging, and workload protection.
    • Knowledge of edge security platforms such as Akamai or Azure Front Door.
    • Partner with Dev Sec Ops  and engineering teams to integrate security controls into CI/CD pipelines.
    • Assess cloud posture, drive remediation, and communicate overall system risk.
  • Collaboration & Communication
    • Serve as a security advisor to technical teams and federal clients.
    • Contribute to the development of internal security best practices.
    • Support proposal development by providing technical security content and solution input.
Required Skills And Qualifications
  • 6+ years of experience supporting regulatory, audit, or compliance programs for secure cloud or federal systems.
  • 4–6 years hands-on experience as an Information Security Analyst or ISSO for major enterprise or federal systems.
  • Strong understanding of NIST 800-series, FISMA, RMF, continuous monitoring, and federal security controls.
  • Demonstrated experience in:
    • Vulnerability scanning and interpretation
    • Managing ATO/C&A activities
    • Selecting and implementing security controls
    • Cloud security engineering (Azure, AWS, Gov Cloud, FedRAMP)
    • Monitoring and managing multi-organization compliance
    • Communicating complex security concepts in business-friendly language
    • Experience with Dev Sec Ops  processes and secure SDLC practices
  • Bachelor's degree in STEM (Science, Technology, Engineering, Mathematics).
  • U.S. Citizen or Permanent Resident; eligible for Public Trust clearance.
Desired Skills And Qualifications
  • 7+ years of experience in security operations, incident investigation, and network security monitoring.
  • Experience developing system/application certification and accreditation documentation.
  • Experience working in Agile / SAFe environments and supporting testing activities.
  • Experience conducting risk assessments, threat identification, security categorization, gap analysis, and compliance reporting.
  • Active certifications preferred:
    • CISSP (Certified Information Systems Security Professional)
    • CAP (Certified Authorization Professional)
    • Other relevant certifications (Security+, CISM, CCSP) a plus.
#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary