Information System Security Officer (ISSO)
Job Description
Information System Security Officer (ISSO): At B&A, we foster and embrace a distinct set of values that we live by and instill in all aspects of our organization: dedication, commitment, partnership, trust, and recognition. We have incorporated these values into successful delivery for our customers since 1988. B&A believes in ensuring its employees feel deeply connected to B&A, recognizing successes and hard work, and providing continuous opportunities to learn and grow. Our people are entrepreneurial thinkers that combine mindset, vision, and experience to drive value – not only to us as an organization, but to the clients we support. We promote a collaborative culture with our clients, and with each other, as one team working towards a common vision. We’d love for you to join our team! Job Summary B&A is looking for an Information System Security Officer to join a contract with a federal government client in support of an important mission. The Information Systems Security Officer (ISSO) plays a critical role in securing the organization’s information systems. The ISSO is responsible for implementing, managing, and enforcing security policies and procedures to ensure compliance with federal and industry regulations. This role includes ensuring the confidentiality, integrity, and availability of the organization's information systems through proactive measures, risk management, and security operations. Responsibilities
Serves as the principal advisor to the Information System Owner (SO), Business Process Owner, and the Chief Information Security Officer (CISO) / Information System Security Manager (ISSM) on all matters, technical and otherwise, involving the security of an information system. ISSOs are responsible for ensuring the implementation and maintenance of security controls. Directs and implements the necessary controls and procedures to cost-effectively protect information systems assets from intentional or inadvertent modification, disclosure, or destruction. Provides guidance and direction for the physical protection of information systems assets to other functional units. Provides reports to superiors regarding effectiveness of data security and makes recommendations for the adoption of new procedures. Assists with reviewing, developing, and navigating the system, team, and customer through the Authority to Operate (ATO) accreditation/certification documentation process. Performs network self-inspections. Creates new and edits existing documentation that forms the Authority to Operate (ATO) package to include the System Security Plan and IS contingency plan. Develops Plan of Action and Milestone (POAMS) from vulnerability data and enters into the system of record.
Education and Experience
Bachelor’s degree in information technology, Cybersecurity, Computer Science, or a related field. Minimum 5 years of experience in information security or a related role.
Required Skills
Strong knowledge of federal security regulations and frameworks (e.g., NIST, FISMA, ISO 27001, or similar). Proficiency with security technologies, including firewalls, IDS/IPS, SIEM tools, and encryption protocols. Experience in risk management, vulnerability management, and incident response. Ability to work independently and communicate security needs across technical and non-technical audiences. Strong problem-solving, analytical, and critical thinking skills.
Desired Skills
Master’s degree in Cybersecurity or a related field. Experience with cloud security platforms (AWS, Azure, Google Cloud). Experience with penetration testing and vulnerability assessment tools (e.g., Metasploit, Nessus, OpenVAS). Experience in managing security for government systems or organizations subject to strict regulatory compliance.
Security Clearance
Eligible to obtain a CBP Public trust clearance. #J-18808-Ljbffr