Information System Security Officer (ISSO)

Basecamp Consulting & Solutions LLC
Reston, VA, US
Permanent
Full-time

Reports to : Account Executive

Status : Permanent, Full-time

Location : Hybrid, Northern Virginia

ORGANIZATIONAL BACKGROUND

Established in August 2016, Basecamp Consulting and Solutions, LLC is a dynamic Information Technology (IT) consulting firm committed to delivering results for our clients.

Specializing in next-generation IT and digital transformation solutions, Basecamp Consulting and Solutions is dedicated to helping clients achieve success through trust, innovation, quality work, and a steadfast commitment to results.

At Basecamp, we believe in the power of emerging technologies to propel our clients toward their goals. Our focus lies in business and IT modernization, utilizing Cloud solutions, cybersecurity, and cutting-edge application development.

We pride ourselves on a team of talented professionals who are passionate about supporting our clients on their journey towards innovative outcomes.

Basecamp Consulting and Solutions is dedicated to pushing the boundaries of IT consulting and we are equally committed to embodying these principles in every facet of our work.

Our head-office is located in Reston, VA.

POSITION OVERVIEW

Reporting to the Account Executive, the Information System Security Officer (ISSO), you will play a crucial role in ensuring the integrity, confidentiality, and availability of our federal client's information systems, specifically supporting our customer’s Cybersecurity initiatives including ensuring FISMA and FedRAMP compliance and standards.

This position demands a highly skilled and security-focused individual who can navigate complex regulatory environments and contribute to our ongoing security efforts.

DUTIES AND RESPONSIBILITIES

  • Implement and enforce all FISMA, FedRAMP and Security compliance requirements for assigned systems.
  • Manage the security aspects of the information system, including system security planning, system security testing, and security control assessments.
  • Collaborate with system owners, common control providers, and developers to ensure that security and privacy policies are implemented at all system layers.
  • Conduct regular security reviews and compliance audits and prepare audit reports for management and stakeholders.
  • Develop and update the System Security Plan (SSP), Risk Assessment Report, and Contingency Plan based on ongoing assessments and changes in the environment.
  • Provide guidance and support for Authorization and Accreditation (A&A) processes.
  • Monitor security systems for potential vulnerabilities and respond to and mitigate incidents as they arise.
  • Ensure proper configuration management of security tools and software, maintaining compliance with established standards and policies.
  • Serve as a point of contact for all matters related to information security concerning the assigned systems.

QUALIFICATIONS

  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field.
  • Minimum of 5 years of experience as an ISSO or in a similar role, with specific experience in FISMA, FedRAMP and Security Assessment and Authorization processes.
  • Strong understanding of NIST guidelines, particularly those related to federal information system standards.
  • Certified Information Systems Security Professional (CISSP) or similar security certification is highly preferred.
  • Proven ability to assess risks and implement effective risk management measures.
  • Exceptional problem-solving skills and the ability to work under pressure.
  • Excellent communication skills, capable of working effectively with multi-disciplinary teams.

COMPENSATION AND WORKING CONDITIONS

  • Competitive health and medical benefits package and paid-time off
  • Other internal benefits include access to professional development funds and organizational trainings as available
  • Working standard office hours with start and end time flexibility (40 hrs / week).
  • Physical / cognitive demands include use of typical office equipment, prolonged periods of sitting and working on a computer / telephone, high degree of concentration and attention to detail;
  • Psychological demands include deadline drive requirements, capacity to organize and prioritize own work, adaptable to change and ability to set and work towards performance and development goals.

Basecamp Consulting and Solutions is committed to principles of equity and inclusion. We strive to create a workplace where everyone feels safe and empowered.

We will be prioritizing applications from individuals with diverse backgrounds, including racialized populations, Veterans, and 2SLGBTQ+.

Flexible work from home options available.

19 days ago
Related jobs
Promoted
Peraton
McLean, Virginia

Human resources information system proficiency. Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and elig...

Promoted
Steampunk
McLean, Virginia

Information System Security Officer (ISSO). Devise a plan to certify and accredit their assigned Information system or information systems. Manage system Information Security Vulnerability Management (ISVM) Compliance. Certified Information Systems Security Professional (CISSP). ...

Promoted
Applied Research Associates (ARA)
Arlington, Virginia

You will conduct recurring Cybersecurity reviews on information systems in accordance with DoD Manuals, JSIG, NIST Special Publications, customer directives, and company policies as applicable Executes the security testing and evaluation to ensure the correct implementation of security requirements....

Base One Inc
Ashburn, Virginia

The contractor shall provide a qualified individual(s) to serve as an Information Systems Security Officer (ISSO) providing cyber security oversight for several major OPR applications and general support systems as assigned by the Government Information Systems Security Manager. The contractor ISSO ...

General Dynamics Information Technology
Chantilly, Virginia

GDIT is seeking an individual that can perform as the Information System Security Officer (ISSO) with secondary duties in supporting the Endpoint Security System (ESS) analyst for the USAREUR-AF G6 MND Mission Partner Network (MPN) system. The individual will be responsible for all aspects of an org...

Parsons Corporation
Chantilly, Virginia

Information System Security Officer. Familiarity with conducting research and analysis, network and information system security principles and best practices. Perform assessments of systems and networks within the networking environment or enclave and identifies where those systems/networks deviate ...

Illuminate
Dulles, Virginia

The Information Systems Security Officer (ISSO) manages all aspects of an organization's information security system, for classified and unclassified systems, including researching, testing, training and implementing programs designed to safeguard sensitive information from any possible breaches. Th...

Parsons Corporation
Chantilly, Virginia

Familiarity with network and information system security principles and best practices. Familiarity with applicable IC and DoD policies, procedures and operating instructions related to Information Technology, Information Assurance, Information Management (IT/IA/IM). Develops, maintains, and impleme...

ASRC Federal Holding Company
Reston, Virginia

The Chief Information Security Officer leads the Information Security function and is responsible for planning, implementing, and maintaining the information security program for ASRC Federal; works closely with the ASRC Federal senior leaders regarding information security threats and collaborates ...

WarCollar Industries
Chantilly, Virginia

The Information Systems Security Engineer is vital position that informs and advises all levels of the information security process when developing and certifying systems for secure operations on the customer's network. The ISSE first must determine the client’s security requirements and then take m...