About this role
Job Title: Information Systems Security Officer (ISSO)
Job Category: Security
Time Type: Full time
Minimum Clearance Required to Start: Secret
Employee Type: Regular
Percentage of Travel Required: Up to 10%
Type of Travel: Local
* * *
The Opportunity:
As the CACI Information Systems Security Officer (ISSO) supporting the United States Army Special Operations Command (USASOC) G3 Risk Management Framework (RMF) project, you will provide day-to-day cybersecurity and RMF support to Special Operations Detachments (SODs) and other supported elements within the SOF Enterprise. You will help maintain the security posture of information systems supporting connectivity to the Special Operations Force Networks (SOFNET) and support systems throughout the RMF lifecycle, including initial authorization, continuous monitoring, and ATO sustainment.
The Responsibilities:
• Serve as an ISSO supporting assigned information systems in accordance with DoDI 8510.01, NIST SP 800-53, Rev 5 and applicable DoD cybersecurity requirements.
• Develop, review, and maintain RMF authorization documentation, including System Security Plans, Configuration Management Plans, Contingency Plans, Disaster Recovery Plans, Incident Response Plans, and supporting security artifacts.
• Maintain RMF security authorization packages in the Enterprise Mission Assurance Support Service (eMASS), including control implementation statements, evidence, artifacts, assessment results, and package updates.
• Support continuous monitoring and ATO maintenance activities throughout the authorization lifecycle.
• Review and validate security controls and support evidence to identify control gaps, deficiencies, and required remediation actions.
• Coordinate with enterprise system administrators, ISSMs, and Government representatives to address cybersecurity requirements and maintain compliance.
• Review vulnerability scans and compliance results and track remediation of identified vulnerabilities and findings.
• Support DISA STIG compliance, security configuration validation, and documentation of applicable findings and exceptions.
• Schedule and track vulnerability scans and reassessments of implemented security controls.
• Perform periodic account and access reviews, including privileged, service, group, and inactive accounts, to support least privilege and access-control requirements.
Qualifications:
Required:
• Current SECRET security clearance.
• Bachelor’s degree and 5+ years of relevant cybersecurity, information assurance, or RMF experience; associate degree and 7+ years of relevant experience; or equivalent directly relevant work experience.
• DoD 8140/8570-aligned cybersecurity certification appropriate to the position; CISSP, Security+, CASP+, GCIH, GSLC, or other applicable certification.
• Hands-on experience supporting the DoD Risk Management Framework (RMF) and maintaining cybersecurity authorization packages.
• Experience using eMASS to document security controls, maintain artifacts, track findings, and support ATO activities.
• Working knowledge of NIST SP 800-53 security controls, DoDI 8510.01, and applicable DoD cybersecurity requirements.
• Experience reviewing security control implementation and supporting evidence.
• Experience reviewing and analyzing audit logs using tools such as Splunk.
• Experience with Nessus, SCAP, or comparable vulnerability/compliance tools.
• Working knowledge of DISA Security Technical Implementation Guides (STIGs) and vulnerability scanning tools/processes.
• Ability to develop and maintain cybersecurity documentation, including SSPs, POA&Ms, contingency plans, incident response plans, and configuration management documentation.
• Excellent written and verbal communication skills and the ability to coordinate effectively with technical and non-technical stakeholders.
Desired:
• Experience supporting USASOC, Joint SOF, or other DoD organizations.
• Experience with Windows and Linux security configuration and secure baselines.
• Ability to work independently with limited Government oversight and function effectively as part of a joint working environment.
-
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.
Pay Range :
There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.
The proposed salary range for this position is:
$71,500 - $150,200
CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.