ASEC, Inc. Logo

ASEC, Inc.

Information System Security Officer (ISSO)

Posted 3 Days Ago
Be an Early Applicant
In-Office
Ridgecrest, CA
90K-110K Annually
Junior
In-Office
Ridgecrest, CA
90K-110K Annually
Junior
Support DoD RMF compliance, vulnerability management, DISA STIG implementation, and continuous monitoring for classified systems. Perform vulnerability scans, review audit logs, track POA&Ms, assist with SSPs/SARs, and support ATO efforts while coordinating remediation with system owners.
The summary above was generated by AI

Description

Location: NAWS China Lake (Ridgecrest, CA)

Security Clearance Requirement: Top Secret

Telework Eligible? No, work will be performed on-site at NAWS China Lake

What You’ll Do:

Join a mission-focused cybersecurity team protecting critical DoD information systems. As a Information System Security Officer (ISSO), you’ll play a hands-on role in vulnerability management, RMF compliance, and continuous monitoring, gaining valuable experience while directly supporting a mission-critical program. If you’re detail oriented, technically driven, and ready to grow in a high-impact security environment, this is your opportunity to make a difference.

Key Responsibilities:

  • Support the implementation and enforcement of cybersecurity policies, standards, and procedures in alignment with DoD RMF requirements.
  • Perform vulnerability assessments using tools such as ACAS, SCAP Compliance Checker, and DISA STIG benchmarks to identify and remediate security gaps.
  • Apply and validate DISA STIG configurations across Windows, Linux, and network devices to ensure compliance with DoD security standards.
  • Assist in continuous monitoring activities, including reviewing audit logs, tracking POA&M items, and supporting security control assessments.
  • Contribute to the development and maintenance of RMF documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), POA&Ms, and related artifacts supporting ATO efforts.
  • Coordinate with system owners, engineers, and ISSMs to track vulnerabilities, implement mitigations, and support remediation timelines.
  • Review and verify compliance of hardware and software against NIAP Common Criteria certifications and the DISA Approved Products List (APL).
  • Support preparation of security authorization packages and interface agreements (MOAs/MOUs) for interconnected systems.
  • Conduct risk assessments and assist in identifying mitigation strategies to protect classified and unclassified DoD information systems.
  • Participate in cybersecurity working groups and cross-functional meetings to ensure alignment with program milestones and mission objectives.
  • Provide user awareness support and assist with incident response documentation and reporting activities.

This description outlines the general nature and scope of the role. Additional duties may be assigned as necessary.

Requirements

What You’ll Bring:

  • CompTIA Security + is required. BS degree in Information Technology, Cybersecurity, Computer Science, or related area of study, desired. The following certifications are highly desired: CISSP, SecurityX (formerly CASP+), CISM, or GSLC. Please upload copies of any relevant IT certifications you hold.

2-3 years of experience in the following technical areas is preferred:

  • Information Assurance / Cybersecurity (IA/CS) within DoD environments.
  • Risk Management Framework (RMF) in accordance with DoDI 8510.01.
  • Implementation of security controls aligned with CNSSI 1253, NIST SP 800-53, and JSIG
  • Conducting vulnerability assessments using ACAS, DISA STIGs, and SCAP Compliance Checker with automated benchmarks.
  • Applying DISA STIG configurations to operating systems and network devices.
  • Supporting continuous monitoring, security audits, risk assessments, and mitigation planning
  • Reviewing technologies for compliance with NIAP Common Criteria and the DISA Approved Products List (APL).
  • Familiarity with ICD 705, DoD 5205.07/5205.07-M (Vol 1–4), SAP policy, and JSIG requirements.

Equally Important:

  • Ability to build positive, collaborative relationships across teams and with external partners.
  • Effective communicator with strong verbal and written skills.
  • Proactive, self-directed work style with the ability to operate independently.
  • Analytical thinker with proven problem-solving capabilities.
  • Highly organized, with the ability to balance competing priorities in a fast-paced environment.

ASEC is committed to providing access and reasonable accommodation in its services, activities, programs, and employment opportunities in accordance with the Americans with Disabilities Act and other applicable laws.

Security Clearance Requirement:

  • This position requires U.S. citizenship and an active DoD Top Secret clearance. Selected candidate will be subject to a government security investigation and must meet eligibility requirements for access to classified information.

Salary Range:

  • The anticipated annual salary range for this position is $90,000 - $110,000, commensurate with an individual’s experience, qualifications, and skill set. ASEC is committed to providing fair and equitable compensation. The low end of this salary range is accounting for a candidate that meets or exceeds all of the listed requirements.

Who We Are:

ASEC offers meaningful, mission-driven work within a culture that supports your professional and personal growth. We partner with our government customers to deliver innovative solutions across engineering, information technology, training, and logistics. Above all, we are committed to doing what’s right for the Warfighter—plain and simple. Explore what makes ASEC different by visiting our website.

Why work at ASEC?

  • 100% employee-owned company. Learn more about our Employee Stock Ownership Plan (ESOP) here!
  • Comprehensive benefits package, including 11 paid holidays, medical/dental/vision coverage, HSA/FSA options, disability insurance, and more!
  • 401(k) with company match
  • Tuition assistance for undergraduate and graduate education
  • Veteran-friendly employer
  • Thriving employee culture

Not the right opportunity for you? Send this job posting to a friend!

ASEC is an Equal Opportunity Employer. We recruit, hire, train, compensate, and promote employees based on qualifications, merit, and business needs, without regard to race, color, religion, sex, national origin, ancestry, age, marital status, sexual orientation, gender identity or expression, disability, veteran status, genetic information, pregnancy or related conditions (including breastfeeding), or any other status protected by law.

ASEC also complies with all applicable pay transparency laws and will not discriminate against employees or applicants for inquiring about, discussing, or disclosing compensation.

ASEC, Inc. Pleasanton, California, USA Office

4695 Chabot Dr. Suite 200 , Pleasanton, United States, 94588

Similar Jobs

11 Days Ago
In-Office
113K-153K Annually
Mid level
113K-153K Annually
Mid level
Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
Serve as an ISSO for classified computing domains, implementing RMF A&A processes, performing security and risk assessments, configuration management, continuous monitoring, incident response support, and interfacing with government customers to ensure compliance with cybersecurity standards and directives.
Top Skills: AcasAudit ReductionCnssi 1253DaagDisa StigsHbssIcd-503JsigNessusNist Sp 800RmfScap
Yesterday
In-Office
Sunnyvale, CA, USA
175K-200K Annually
Senior level
175K-200K Annually
Senior level
Security • Cybersecurity
Supports NASA information-system cybersecurity throughout the system life cycle. Responsibilities include developing System Security Plans, managing RMF and A&A documentation, tracking POA&Ms and risk decisions, reviewing threats and vulnerabilities, supporting patching and remediation, evaluating cloud security, analyzing logs, testing contingency plans, and advising system owners on security controls, privacy assessments, and compliance requirements.
Top Skills: Assessment And Authorization (A&A)Classified NetworksCloud ServicesCybersecurity Vulnerability ManagementNasa RiscsRisk Management Framework (Rmf)
3 Days Ago
In-Office
115K-150K Annually
Senior level
115K-150K Annually
Senior level
Aerospace • Professional Services • Defense
Serve as the Information System Security Officer for a high-visibility DoD program. Implement and enforce RMF-based security controls, perform vulnerability assessments (ACAS, STIGs, SCAP), continuous monitoring, risk analyses, and support ATO documentation (SSPs, POA&Ms). Use SolarWinds or Splunk for monitoring and collaborate across teams to ensure compliance with DISA, NIST, CNSSI, JSIG, and SAP/ICD policies.
Top Skills: Assured Compliance Assessment Solution (Acas)Disa Security Technical Implementation Guides (Stigs)Security Content Automation Protocol (Scap) Compliance CheckerSolarwindsSplunk

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account