CACI International Inc Logo

CACI International Inc

Information System Security Officer (ISSO)

Posted 2 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in State Road, IL
90K-190K Annually
Senior level
In-Office or Remote
Hiring Remotely in State Road, IL
90K-190K Annually
Senior level
The ISSO leads cybersecurity compliance and RMF activities for DHS information systems, including ATOs, system security plans, POA&Ms, configuration management, risk and vulnerability assessments, continuous monitoring, incident and contingency planning, access controls, inventory management, and FISMA reporting. The role advises system owners and executives, coordinates remediation, and ensures compliance with FISMA, NIST, DHS 4300 Series, and related directives.
The summary above was generated by AI
Job Title: Information System Security Officer (ISSO)

Job Category: Information Technology

Time Type: Full time

Minimum Clearance Required to Start: None

Employee Type: Regular

Percentage of Travel Required: None

Type of Travel: None

* * *

The Opportunity:
CACI is searching for an Information System Security Officer (ISSO) to support the DHS Headquarters. As an Information System Security Officer, you will play a crucial role in ensuring the security and compliance of DHS HQ's information systems. You will work in a dynamic environment, collaborating with IT system owners, stakeholders, and cybersecurity professionals to implement and maintain robust security controls. Your efforts will directly contribute to safeguarding DHS's mission-critical systems and data. The ISSO will serve as the single point of contact on all systems security matters, leading cybersecurity engineering efforts for assigned Program Management Organizations with direct support to the Compliance Branch Lead. This includes spearheading systems' ATO efforts and maintaining a security posture in compliance with FISMA, DHS 4300 Series, NIST, and DHS and Component Directives. The ISSO will execute complete Risk Management Framework (RMF) activities for Authority to Operate (ATO) decisions and ensure all security documentation is kept up to date.
Responsibilities:
The ISSO will execute complete Risk Management Framework (RMF) activities for Authority to Operate (ATO) decisions including system categorization, security control selection and implementation, self-assessments, POA&M development, and continuous monitoring. This position requires developing and maintaining System Security Plans (SSPs) including control baselines, inheritance, Business Impact Analyses, implementation statements, technical and system descriptions, and hardware and software inventories. The ISSO will create and maintain Configuration Management Plans, conduct Security Impact Analyses, approve Change Requests, and document the security impact of configuration changes. Responsibilities include developing and testing Contingency Plans and Incident Response Plans to ensure business continuity, as well as conducting annual risk assessments, supporting security assessments, and vulnerability assessments across assigned systems. The position involves advising system owners and senior executives on all cybersecurity matters and developing remediation work plans for assessment and/or audit findings. The ISSO will maintain Hardware and Software Inventory Lists and conduct FISMA Scorecard Analysis. The ISSO will ensure proper access controls are implemented for system access, track and suggest technologies, processes, and practices designed to protect networks, devices, programs, and data from malicious attack, damage, or unauthorized access, and research and maintain proficiency in tools, techniques, countermeasures, and trends in computer and network vulnerabilities, data hiding, and network and device security and encryption.


Qualifications:
Required: 
- U.S. Citizenship required 
- DHS EOD suitability or Current DHS EOD preferred
- BS/BA + 8 years of applicable experience in information security 
- 7+ years of experience in information security 
- Demonstrated expertise in RMF, Information Security processes, audits, tools, implementation, FISMA, NIST, IT security
- Experience developing System Security Plans, POA&Ms, and Configuration Management Plans
- Knowledge of NIST SP 800-37, NIST SP 800-53, and DHS 4300 Series requirements
Desired:
- One of the following Information Assurance Technician (IAT) Level III qualifications:
  - Certified Information System Security Professional (CISSP)
  - Certified Information Security Manager (CISM)
  - CompTIA Advanced Security Practitioner (CASP+)
- Previous DHS experience
- Experience with CSAM, RegScale, eMASS, or similar GRC tools
- Experience supporting emergency operations or disaster response missions
- Knowledge of cloud security and FedRAMP authorization processes
- Experience with continuous monitoring and

-

What You Can Expect:

 A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.

Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

Since this position can be worked in more than one location, the range shown is the national average for the position.

The proposed salary range for this position is:

$90,300-$189,600

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Similar Jobs

8 Days Ago
In-Office or Remote
90K-190K Annually
Senior level
90K-190K Annually
Senior level
Information Technology • Consulting • Defense
Manages cybersecurity compliance and risk activities for DHS information systems, including RMF and ATO processes, security control implementation, SSPs, POA&Ms, configuration management, continuous monitoring, vulnerability assessments, contingency planning, and incident response. Advises system owners and executives, supports audits and assessments, maintains inventories and FISMA scorecards, and ensures compliance with FISMA, NIST, DHS 4300 Series, and related directives.
Top Skills: Configuration Management PlansCsamDhs 4300 SeriesEmassFedrampFismaNist Sp 800-37Nist Sp 800-53Poa&MsRegscaleRisk Management Framework (Rmf)System Security Plans (Ssps)
8 Days Ago
In-Office or Remote
90K-190K Annually
Senior level
90K-190K Annually
Senior level
Information Technology • Consulting • Defense
Supports DHS information-system security and compliance by executing RMF and ATO activities, developing SSPs and POA&Ms, conducting risk and vulnerability assessments, maintaining security documentation and inventories, and advising system owners on cybersecurity. The role manages continuous monitoring, configuration and access controls, contingency and incident response planning, FISMA reporting, audit remediation, and compliance with NIST and DHS requirements.
Top Skills: CsamDhs 4300 SeriesEmassFedrampFismaNist Sp 800-37Nist Sp 800-53RegscaleRisk Management Framework (Rmf)
9 Days Ago
In-Office or Remote
15 Locations
110K-231K Annually
Senior level
110K-231K Annually
Senior level
Information Technology • Legal Tech • Analytics
Leads security compliance for a FedRAMP-authorized cloud environment. Maintains the ATO, coordinates continuous monitoring, assessments, audits, penetration testing, risk reviews, POA&M remediation, security documentation, and NIST control implementation. Partners with engineering, DevOps, cloud operations, compliance, and government stakeholders to support incident response, secure system changes, cloud deployments, and audit readiness.
Top Skills: AWSAzureCloud-Native Security ServicesEndpoint Detection And Response (Edr)FedrampFismaGCPGovernance Risk And Compliance (Grc) ToolsIdentity And Access Management (Iam)Nist 800-171Nist 800-37 Risk Management FrameworkNist Sp 800-53SIEMVulnerability ScannersZero Trust Architecture

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account