- Company Name
- JPI Technology LLC
- Job Title
- Fed: Information System Security Officer (ISSO) Cloud, RMF, CSAM (Secret /TS clearance)
- Job Description
-
**Job Title**
Information System Security Officer (ISSO) Cloud, RMF, CSAM (Secret/TS Clearance)
**Role Summary**
Senior cloud and information system security professional responsible for deploying, assessing, and maintaining RMF‑compliant security controls across classified and commercial cloud environments. Oversees the creation of core security artifacts, conducts rigorous risk assessments, and provides expert guidance on securing enterprise architectures.
**Expactations**
- Maintain all required documentation (BOE, SCTM, SSP, POA&M, Incident Response Plan).
- Meet federal RMF timelines and secure classification-level requirements.
- Deliver monthly reports and alerts to stakeholders, ensuring timely remediation.
- Conduct assessments and authorizations for cloud‑based CI platforms.
- Serve as the security liaison during configuration control and change management.
**Key Responsibilities**
- Construct and maintain the Body of Evidence, Security Control Traceability Matrix, and other RMF artifacts.
- Execute security assessments, authorizations, and risk evaluations for systems processing classified information.
- Perform system security analyses, vulnerability reviews, and capacity‑planning for client networks and services.
- Design and maintain custom security tools and assessments dashboards (Nessus, Splunk, or similar).
- Develop and update policies, procedures, and contingency plans for continuous compliance.
- Report incidents, coordinate incident response, and ensure audit traceability.
- Participate in the Configuration Control Board to manage CS‑relevant software, hardware, and firmware.
- Provide subject‑matter expertise on security architecture, access control, and secure communication devices.
**Required Skills**
- 5–6 years ISSO experience with a focus on RMF, CSAM, and NIST SP 800‑53.
- Expert knowledge of commercial and classified cloud security, including PaaS and CUI environments.
- Proficiency with Nessus, Splunk, or equivalent security dashboards.
- Strong documentation, reporting, and deadline‑management capabilities.
- Ability to perform system audit, vulnerability remediation, and configuration control.
- Excellent communication skills for cross‑functional stakeholder engagement.
**Required Education & Certifications**
- U.S. citizen with active Interim, Secret, or TS clearance.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field (or equivalent experience).
- Certifications: CISSP, CISM, or similar; RMF‑certified; NIST SP 800‑53 expertise preferred.