Information Systems Security Officer (Technical ISSO / RMF Assessor) Job at Peraton, Herndon, VA

U05QN25KOC92WFhlY0hlaGcwZldrWHdqUFE9PQ==
  • Peraton
  • Herndon, VA

Job Description

Program Overview

About The Role

Job Summary

We are seeking a highly skilled and technically proficient Information Systems Security Officer (ISSO) with hands-on experience developing, implementing, and validating security controls within DoD RMF environments. This role requires deep technical understanding of NIST SP 800-53 controls, STIG implementation, vulnerability analysis, and the ability to produce assessable, audit-ready security documentation.


The ideal candidate will be confident writing Security Test Procedures (STPs), building Security Controls Traceability Matrices (SCTMs), interpreting ACAS/Nessus scan results, and using Splunk to verify control effectiveness. This ISSO will work closely with system owners, engineers, and government stakeholders to support ATO efforts and continuous monitoring activities.

Duties & Responsibilities:

Core Technical Responsibilities

  • Develop, write, and maintain Security Test Procedures (STPs) for NIST SP 800-53 controls.
  • Create and update Security Controls Traceability Matrices (SCTMs) .
  • Draft, review, and refine control implementation statements for all control families.
  • Interpret and remediate STIG/SCAP findings across operating systems, applications, and infrastructure.
  • Conduct and analyze ACAS/Nessus vulnerability scan results; validate findings with engineering teams; track remediation to closure.
  • Perform Splunk log analysis to validate control operation and investigate anomalies.
  • Prepare and update core ATO documentation including SSPs, SARs, POA&Ms, Contingency Plans, Continuous Monitoring artifacts , and other related Body of Evidence (BoE) components.

RMF & Security Lifecycle

  • Lead and support RMF Steps 1–6 for assigned systems.
  • Manage, validate, and maintain control evidence in alignment with NIST SP 800-53 and DoD requirements.
  • Support continuous monitoring activities, including log review, vulnerability assessments, and control re-validation.
  • Coordinate directly with system owners and engineering teams to address security gaps.
  • Ensure system documentation is maintained accurately and entered in tools such as Xacta or eMASS .
  • Provide security guidance for system changes, risk assessments, and configuration updates.

Collaboration & Stakeholder Support

  • Communicate technical risks, findings, and required actions to system owners, government counterparts, and internal leadership.
  • Participate in security meetings, assessments, and audits.
  • Assist with incident response activities as needed, including log review and security control validation.

Qualifications

Required Qualifications

  • Active TS clearance with SCI eligibility OR TS/SCI clearance adjudication with current polygraph OR the ability to pass a polygraph.
  • Bachelor's degree in a relevant technical field with 8+ years of relevant experience, or 12+ years of experience in lieu of a degree.
  • 8+ years of hands-on experience as an ISSO, ISSE, Assessor, Security Engineer, or closely related DoD cybersecurity role.
  • Demonstrated experience writing STPs, creating SCTMs, and developing implementation statements.
  • Hands-on experience performing STIG interpretation and remediation.
  • Experience reviewing and validating ACAS/Nessus vulnerability scan results.
  • Ability to use Splunk (or similar SIEM) to validate security controls and investigate anomalies.
  • Direct experience authoring ATO documentation (SSP, SAR, POA&M, etc.).
  • Strong working knowledge of NIST SP 800-53, RMF, and DoD cybersecurity requirements.
  • Experience using Xacta or eMASS to manage RMF artifacts.
  • DoD 8570 IAM-II compliant certification (e.g., Security+, CISSP, CISM).
  • Strong written and verbal communication skills with the ability to explain technical topics clearly.

Desired Qualifications

  • Experience as a Security Control Assessor (SCA) or assessor support.
  • Familiarity with FISMA, FISCAM, and federal audit requirements.
  • Experience supporting cloud environments (AWS GovCloud preferred).
  • Experience with automation or scripting to support security tasks.
  • Strong understanding of Zero Trust principles.
  • Experience supporting SAP/SAR or other high-side environments.

Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and eligible to participate in an attractive bonus plan

SCA / Union / Intern Rate or Range

Details

Target Salary Range: $112,000 - $179,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at

Application Duration Statement: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. 

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Job Tags

Contract work, Temporary work, Internship, Shift work

Similar Jobs

BGSF

Assistant Property Manager Job at BGSF

Assistant Property Manager Industry Experience RequiredKansas City, KS 66103 | $21$22/hr (Based on Experience) | ContracttoHire | MF ScheduleStep into a leadershipsupport role where your property management experience makes an immediate impact. As an Assistant... 

Rize Logistics LLC

Class A CDL A Company Driver and Owner Operators Job Job at Rize Logistics LLC

Class A CDL A Company Driver and Owner Operators JobNew transportation company with over 70 years combined industry experience looking for owner operators and company drivers who don't mind being on the road during the week and home on the weekends. Currently looking... 

Joby Aviation

Flight Research Remote Pilot Job at Joby Aviation

 ...electric, and hydrogen-electric aircraft in both CTOL and VTOL configurations. Overview Joby Aviations Flight Research team is looking for an experienced remote pilot to operate research and development UAS platforms. Drawing on past experience operating medium to... 

Confidential

Job Offer: Junior Accountant Job at Confidential

 ...professional to join their team as a Junior Accountant. This is an entry level position offering an annual income of$57,000. Recent grads are...  ...transactions to general ledger, Performs monthly bank reconciliations, Prepares quarterly reconciliation and billing... 

SmartPhoneTrucker

Class A Class A CDL Drivers - Choose Dedicated, Local, Regional, or OTR Job Job at SmartPhoneTrucker

Class A Class A CDL Drivers - Choose Dedicated, Local, Regional, or OTR JobCompany Driver or Owner Operator - whether you want maximum miles from OTR or maximum hometime from local, dedicated, or regional, you'll find Atlanta's best truck driving jobs in less than 30...