Cloud Information System Security Officer (ISSO) - Mid Level (TS required, eligible for SCI) -

RedTrace Technologies Inc
Huntsville, AL

SECURITY CLEARANCE REQUIREMENT: TS, WITH SCI ELIGIBILITY

***POSITION REQUIRES US CITIZENSHIP***

Program Description:

The program provides support in the areas of Cybersecurity and Management to improve the Information Assurance (IA) posture of a federal customer. The contract’s support functions are: IA Management, Federal Information Security Management Act (FISMA) coordination and reporting, Risk Management Framework (RMF) application, IA compliance measurements and metrics, Assessment and Authorization (A&A), Vulnerability Management, and Cyber Defense support.


Position Description:

We are seeking a Cloud ISSO to carry out the following duties and responsibilities:

  • Services to support IS Security performed by the Cloud Information System Security Officer (ISSO) at a minimum, shall consist of to the following activities:
  • Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for each IS
  • Provide liaison support between the system owner and other IS security personnel
  • Ensure that selected security controls are implemented and operating as intended during all phases of the IS lifecycle
  • Ensure that system security documentation is developed, maintained, reviewed, and updated on a continuous basis
  • Conduct required IS vulnerability scans according to risk assessment parameters.
  • Develop Plan of Action and Milestones (POAMs) in response to reported security vulnerabilities
  • Manage the risks to ISs and other agency assets by coordinating appropriate correction or mitigation actions, and oversee and track the timely completion of (POAMs)
  • Coordinate system owner concurrence for correction or mitigation actions
  • Monitor security controls for agency ISs to maintain security Authorized To Operate (ATO)
  • Upload all security control evidence to the Governance, Risk, and Compliance (GRC) application to support security control implementation during the monitoring phase
  • Ensure that changes to an agency IS, its environment, and/or operational needs that may affect the authorization status are reported to the system owner and IS Security Manager (ISSM)
  • Ensure the removal and retirement of ISs being decommissioned in coordination with the system owner, ISSM, and ISSR
  • Provide baseline security controls to the system owner, contingent upon the IS’s security categorization, type of information processed and entity type
  • Provide a recommendation to the Authorizing Official, in consultation with the system owner, regarding systems’ impact levels and ISs’ authorization boundary
  • Ensure that new entities are created in the GRC application with the security categorization of agency ISs
  • Initiate, coordinate, and recommend to the agency Authorizing Official all Interconnection Security Agreement (ISAs), Memorandum of Understanding (MOUs), and Memorandum of Agreement (MOAs) that permit the interconnection of an agency IS with any non-agency or joint-use IS
  • Perform an independent review of the System Security Plan (SSP) and make approval decisions
  • Request and negotiate the level of testing required for an IS with the Enterprise Information Security Section and the agency Authorizing Official
  • Schedule security control assessments in coordination with the system owner.
  • Coordinate IS security inspections, tests, and reviews with the Security and system owner. Submit the final SAA package to the agency Authorizing Official for a security ATO decision
  • Ensure that the Security ATO Electronic Communication (EC) is serialized into Sentinel under the applicable case file number
  • Advise the agency Authorizing Official of IS vulnerabilities and residual risks.
  • Ensure that all POA&M actions are completed and tested
  • Coordinate initiation of an event-driven reauthorization with the agency Authorizing Official
  • Ensure the removal and retirement of agency ISs being decommissioned, in coordination with the SO, ISSM, ISSE, and ISSR


Qualifications:

  • Required to hold at least one of the following certifications: Certified Information Systems Security Professional (CISSP), Global Information Security Professional (GISP), or the CompTIA SecurityX or other certifications exemplifying skill sets such as those described in DoD Instruction 8570.1 Information Assurance Management (IAM) Level II proficiency
  • Additional requirement to hold at least one Security certification from AWS, Azure, or GCP:

    • AWS Certified Security – Specialty

    • (ISC)2 Certified Cloud Security Professional (CCSP)

    • AWS Certified Solutions Architect – Associate

    • AZ-500: Microsoft Certified: Azure Security Engineer Associate

    • Google - Professional Cloud Security Engineer

  • At least 5 years serving as an Information Systems Security Officer (ISSO) at a cleared facility

  • Minimum of 7 years of work experience in a computer science or Cybersecurity related field

  • Familiarity with the use and operation of security tools including Tenable Nessus and/or Security Center, IBM Guardium, HP WebInspect, Network Mapper (NMAP), and/or similar applications

  • Bachelor’s and/or advanced degree in computer science, business management, or IT related discipline is preferred.


Employee Benefits:

  • Competitive salary for well qualified applicants
  • 401(k) plan
  • Annual performance bonus
  • Certification and advanced degree attainment bonuses
  • Student Loan / Tuition reimbursement
  • Health Care Insurance (medical, dental, vision)
  • Up to four weeks of paid vacation
  • 11 Federal Holidays, and 3 Floating Holidays
  • Team bonding events


RedTrace Technologies is an EOE employer.

Posted 2026-05-08

Recommended Jobs

Talent Acquisition Partner

Satellites Unlimited
Birmingham, AL

Talent Acquisition Partner Build Teams. Influence People. Drive Growth. (100% Onsite role) About Satellites Unlimited Satellites Unlimited (SUI) is one of the nation's leading service providers su…

View Details
Posted 2026-06-03

Millwright Mechanic

Axis, AL

Job Title: Millwright Mechanic Job Description We are seeking a skilled Millwright Mechanic to join our team. This role involves disassembling and cleaning parts for rebuild, reassembling new o…

View Details
Posted 2026-05-13

RN MS/TELE Trauma 7S

Talented Medical Solutions
Tuscaloosa, AL

Job Description Job Description Job Summary RN MS/TELE Trauma 7S Talented Medical Solutions Contract In-Office | Tuscaloosa, AL, United States Travel: RN MS/Tele Trauma 7S Mus…

View Details
Posted 2026-05-22

Mechanical Engineer

DeSHAZO LLC
Huntsville, AL

Job Description Job Description Description: OVERVIEW: The Mechanical Engineer will design and test all aspects of mechanical equipment and machinery. ESSENTIAL FUNCTIONS: Designs p…

View Details
Posted 2026-05-09

Exercise Science/Kinesiology Graduate - FH

Stretch Lab
Fairhope, AL

Job Description Job Description We are seeking highly motivated and dynamic Exercise Science/Kinesiology graduates to join our FAIRHOPE team! The ideal candidate will have a love for boutique…

View Details
Posted 2026-03-26

IT Help Desk Specialist

Workway, Inc.
Birmingham, AL

Job Description Job Description We are a professional staffing firm, working with organizations across the country to place exceptional candidates. Currently, we have an  IT Help Desk Specialist …

View Details
Posted 2026-06-11

Workers' Comp RN Case Manager - Mercedes Benz Plant Site

DCH Health System
Tuscaloosa, AL

Overview: POSITION SUMMARY: Functions as the primary Workers’ Compensation Case Manager within an onsite employer‑based clinic, coordinating the full continuum of care for employees with …

View Details
Posted 2026-04-29

Structural Engineer

Genesis Technical Staffing, Inc
Birmingham, AL

Job Title:Structural Engineer Location:Birmingham, AL Duration:Long-term, contract-direct Sponsorship: Not available at this time  Overview We are looking for a highly qualified Engineer with 10-…

View Details
Posted 2026-06-11

Assistant Manager - Rainbow City

Wingstop Rainbow City
Rainbow City, AL

Job Description Job Description Job Descriptions Wingstop's mission is to serve the world flavor. Wingstop is the destination when you crave fresh never faked wings, hand-cut seasoned fries, a…

View Details
Posted 2026-04-07

REGISTERED NURSE - FITZ-GERALD CLINIC, FT (8:00AM-5:00PM)

Whitfield Regional Hospital
Demopolis, AL

Job Description Job Description Salary: Whitfield Regional Hospital, member of the UAB Health System, has openings for a RN to work FT 8:00AM-4:30PM. CPR certifications required. RN license…

View Details
Posted 2026-06-10