Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
ISSO image - Rise Careers
Job details

ISSO

About DMI

DMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA. With a focus on end-to-end managed IT services, including managed mobility, cloud, cybersecurity, network operations, and application development, DMI supports public sector agencies and commercial enterprises around the globe. Recognized as a Top Workplace, DMI is committed to delivering secure, efficient, and cost-effective solutions that drive measurable results. Learn more at www.dminc.com

About the Opportunity

DMI, LLC is looking for an ISSO to join us. 

 

Duties and Responsibilities:

  • Serve as Designated Person(s) assigned to one or more existing FISMA Systems of Record as well as new IT Systems.
  • Led efforts to develop an Authority to Operate (ATO) and manage the system through its Continuous Monitored lifecycle.
  • Collaborate with ISSOs to engineer or re-engineer solutions to resolve FISMA audit findings.
  • Provide security-related information to the ISSO and obtain ISSO approval on Change Requests (CRs) to implement a new solution or service or make changes to an existing one.
  • Provide input and assist in the development of a System Security Plan (SSP) for systems to facilitate an Authority to Test (ATT) or ATO.
  • Ensure SSPs include security controls addressing requirements in DHS 4300A, CBP HB1400D, and applicable NIST Special Publications.
  • Document and provide information on security controls implemented in relevant systems as directed by the Government.
  • When requested, make recommendations, implement security controls, and/or re-engineer systems to address Plan of Action and Milestones (POA&M) and audit findings.
  • Implement and document security controls and applicable processes for CBP systems to ensure compliance with the CBP Risk Management Framework, FISMA regulations, NIST 800-53, DHS 4300A, CBP 1400-05D, and applicable security policies including Zero Trust.
  • Provide expert analysis and recommendations on risk (impact and likelihood) and mitigation options for security findings, gaps, and vulnerabilities.
  • Develop appropriate responses to audit report findings.
  • Work with the Director of Security, ISSM, and System Owner (SO) to develop a Deviation Waiver Request (Risk Acceptance) based on thorough analysis and industry standards when risks cannot be resolved.
  • Contribute to ensuring that when the contractor handles Sensitive PII data, the information system achieves an Authority to Operate (ATO)

Qualifications

Education and Years of Experience:  

  • BS 5-7 Years, MS 3-5, PhD 0-2

Required and Desired Skills/Certifications: 

  • Ensures the seamless transition of knowledge, processes, and institutional understanding from the incumbent contractor to the incoming team.Familiarity with network and information system security principles and best practices.
  • In-depth knowledge of the Risk Management Framework (RMF), the NIST publications, and the DHS 4300A Policy Directive.
  • Experience with implementing the NIST 800-53 Security Controls in an Assessment & Authorization (A&A) process.
  • Experience reviewing Nessus scans, managing vulnerability mitigation and information security process in an Enterprise environment.
  • Ability to work well within a team environment and build rapport with government and customer organizations.
  • Certifications such as Network+ and Security + are recommended.
  • CISSP and Security auditing certifications are recommended.
  • Understanding of Zero Trust Architecture as it pertains to Government compliance and best practices.

 

Additional Requirements: Successful completion of a Public Trust background investigation and a Public Trust clearance

 

Min Citizenship Status Required: Must be a U.S. Citizen

 

Physical Requirements: No Physical requirement needed for this position.

Location: Remote, US

Working at DMI

DMI is a diverse, prosperous, and rewarding place to work. Being part of the DMI family means we care about your wellbeing. As such, we offer a variety of perks and benefits that help meet various interests and needs, while still having the opportunity to work directly with a number of our award-winning, Fortune 1000 clients. The following categories make up your DMI wellbeing:

  • Convenience/Concierge - Virtual visits through health insurance, pet insurance, commuter benefits, discount tickets for movies, travel, and many other items to provide convenience.
  • Development – Annual performance management, continuing education, and tuition assistance, internal job opportunities along with career enrichment and advancement to help each employee with their professional and personal development.
  • Financial – Generous 401k matches both pre-tax and post-tax (ROTH) contributions along with financial wellness education, EAP, Life Insurance and Disability help provide financial stability for each DMI employee.
  • Recognition – Great achievements do not go unnoticed by DMI through Annual Awards ceremony, service anniversaries, peer-to-peer acknowledgment, employee referral bonuses.
  • Wellness – Healthcare benefits, Wellness programs, Flu Shots, Biometric screenings, and several other wellness options.

 

Employees are valued for their talents and contributions. We all take pride in helping our customers achieve their goals, which in turn contributes to the overall success of the company.

 

 

***************** No Agencies Please *****************

 

Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access to classified information. US citizenship may be required for some positions.

Average salary estimate

$85000 / YEARLY (est.)
min
max
$70000K
$100000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About ISSO, DMI

Are you passionate about cybersecurity and looking for an exciting opportunity to grow your career? DMI is on the hunt for a talented Information System Security Officer (ISSO) to join our remote team! As an ISSO at DMI, you'll play a pivotal role in ensuring the security of IT systems for both public sector agencies and commercial enterprises, driving efforts to achieve and maintain Authorities to Operate (ATOs) and contributing to the development of System Security Plans (SSPs). Your daily adventures will involve collaborating with other ISSOs to tackle FISMA audit findings, implementing security controls, and ensuring compliance with regulatory frameworks such as NIST 800-53 and the DHS 4300A Policy Directive. With a strong emphasis on continuous monitoring, you'll not only analyze risks and vulnerabilities but also recommend effective mitigation strategies. DMI values knowledge-sharing and teamwork, so you’ll be expected to forge relationships across government and customer organizations while evolving our security posture. We prefer candidates with a relevant degree and industry experience, and certifications like CISSP or Security+ would be a fantastic bonus. Join DMI today to be a part of a diverse team committed to delivering digital solutions that really matter, and enjoy the perks of working at a recognized top workplace too!

Frequently Asked Questions (FAQs) for ISSO Role at DMI
What are the primary responsibilities of the ISSO at DMI?

As an ISSO at DMI, your primary responsibilities will revolve around serving as the designated official for multiple FISMA Systems of Record, overseeing the development of Authorities to Operate (ATOs) for IT systems, and working collaboratively with fellow ISSOs to engineer solutions for FISMA audit findings. Additionally, you'll play a crucial role in drafting System Security Plans (SSPs) to align with various compliance requirements, ensuring that security controls are thoroughly documented and effective.

Join Rise to see the full answer
What qualifications are required for the ISSO position at DMI?

To qualify for the ISSO position at DMI, candidates typically require a Bachelor’s degree along with 5 to 7 years of relevant experience. Candidates with a Master’s degree may have a slight edge with reduced experience requirements. Familiarity with cybersecurity principles, the Risk Management Framework (RMF), and NIST publications is essential, alongside certifications like CISSP, Security+, or Network+. A successful completion of a Public Trust background investigation is also mandatory.

Join Rise to see the full answer
How does DMI ensure a collaborative environment for ISSOs?

At DMI, fostering a collaborative environment for ISSOs is a top priority. The ISSOs work closely with the Director of Security, ISSM, and System Owners to create and refine security strategies. The company encourages teamwork by supporting knowledge-sharing sessions, where team members can discuss challenges and successes. Building rapport across government and customer organizations is also a key aspect of the role, enabling all team members to contribute effectively to security initiatives.

Join Rise to see the full answer
What is the significance of the Authority to Operate (ATO) in the ISSO role at DMI?

The Authority to Operate (ATO) is crucial in the ISSO role at DMI, as it confirms that our systems meet security requirements and can operate without compromising sensitive information. The ISSO is responsible for developing ATOs, which involves documenting security controls through comprehensive System Security Plans (SSPs) and collaborating with teams to ensure compliance with security regulations and guidelines, such as CBP Risk Management Framework and NIST 800-53 standards.

Join Rise to see the full answer
What are the career development opportunities for an ISSO at DMI?

DMI places a strong emphasis on career development for ISSOs. Employees have access to performance management initiatives, continuous education, and tuition assistance programs to support personal and professional growth. There are also internal job opportunities for advancement, ensuring that ISSOs can progress in their careers while making significant contributions to evolving security practices at DMI.

Join Rise to see the full answer
Common Interview Questions for ISSO
What is your experience with the Risk Management Framework (RMF)?

In your response, highlight specific projects where you've utilized the RMF, detailing your approach to risk assessment and the implementation of security controls. Mention any certifications or training related to the RMF to showcase your expertise.

Join Rise to see the full answer
Can you explain the process for creating a System Security Plan (SSP)?

Provide a step-by-step outline of how you develop an SSP, emphasizing the importance of gathering security requirements, identifying risks, and documenting controls for compliance. Use examples to illustrate your experience in this area.

Join Rise to see the full answer
How do you handle FISMA audit findings?

Discuss your strategy for addressing FISMA audit findings by demonstrating your problem-solving abilities, your collaboration with team members, and your methodical approach to implementing necessary changes or controls.

Join Rise to see the full answer
What tools do you use for vulnerability management and how do you assess risks?

Mention specific tools like Nessus or other security scanning software you have experience with, and explain how you prioritize vulnerabilities based on their risk impact and likelihood, along with the processes for mitigating these risks.

Join Rise to see the full answer
Can you describe an effective Zero Trust strategy you've been involved in?

Share your understanding of Zero Trust architecture and discuss specific instances where you advocated or implemented this security model effectively, emphasizing the steps taken to enforce security controls and monitor for potential risks.

Join Rise to see the full answer
What is your approach to developing a Deviation Waiver Request?

Outline how you've developed Deviation Waiver Requests in the past, detailing your analytical process for risk acceptance and how you communicate with stakeholders to ensure understanding and compliance with industry standards.

Join Rise to see the full answer
Describe how you stay current with cybersecurity regulations and best practices.

Describe your strategies for keeping up with the latest cybersecurity trends and regulations, like attending relevant seminars, participating in webinars, and engaging with professional development courses within the field.

Join Rise to see the full answer
How do you prioritize multiple security projects with tight deadlines?

Illustrate your time management and organizational skills by recounting how you've successfully juggled multiple projects. Discuss techniques like using project management tools or frameworks to keep all initiatives on track.

Join Rise to see the full answer
What experience do you have with Continuous Monitoring strategies?

Detail your experience with implementing Continuous Monitoring strategies, emphasizing the technologies utilized, metrics tracked, and how these practices improve overall security posture.

Join Rise to see the full answer
Why do you want to work as an ISSO at DMI?

Express your enthusiasm for joining DMI, aligning your career goals with the company’s mission. Mention what specifically draws you to DMI, like its reputation or commitment to providing secure digital solutions, and how you feel you can contribute to its success.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 13 days ago

Join DMI as a Master Scheduler to lead the development of integrated schedules that optimize network project execution across the organization.

Photo of the Rise User
Posted 13 days ago

Join DMI as a Lead Project Manager and play a pivotal role in managing critical digital service projects remotely.

Photo of the Rise User
NBCUniversal Hybrid 100 Universal City Plaza, Universal City, CALIFORNIA
Posted yesterday

NBCUniversal is looking for a Network Engineer with a solid background in networking technologies to enhance their broadcast and media production capabilities.

Photo of the Rise User
ManTech Hybrid US, Bexar County, TX; Texas, San Antonio, TX
Posted 2 days ago

Join ManTech as a Systems Architect and help transform Cloud Infrastructure Services with your expertise in architecture and cloud technologies.

Posted 5 days ago

Seeking a Network Specialist to provide essential support and management for network systems at Hanscom AFB.

Photo of the Rise User

We are looking for a skilled Network Engineer to join Peraton’s mission-driven team and support critical national security operations.

Posted 13 days ago

We are looking for a skilled SAP S/4Hana Consultant to support our clients in their transition to SAP S/4Hana at DBSync.

Photo of the Rise User
Posted 8 days ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Join American Express as a Staff Technology Auditor and drive organizational improvements in third-party risk management.

Photo of the Rise User

Seeking a Manager of ERP Systems to lead technology implementations and cultivate team performance in a hospital environment.

Posted 14 days ago

Join Genuine Parts Company as the Director of Technology, leading innovative transformation through the implementation of Oracle Fusion.

Our mission is to empower our people, partners, and clients to collaborate, create, and deliver infinite value and optimal transformation at every point of our journey together.

56 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 18, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
16 people applied to SOC Analyst at Humi
Photo of the Rise User
Someone from OH, Mason just viewed Senior Business Analyst at Roots Automation
Photo of the Rise User
Someone from OH, Mason just viewed Finance Intern at First Student
Photo of the Rise User
Someone from OH, Mason just viewed Intern at First Student
Photo of the Rise User
Someone from OH, Akron just viewed TABLE GAMES DEALER at Boyd Gaming
Photo of the Rise User
Someone from OH, Cincinnati just viewed Financial Analyst I - Athletics at University of Louisville
Photo of the Rise User
Someone from OH, Cincinnati just viewed AI training and enablement at Writer
Photo of the Rise User
Someone from OH, Xenia just viewed Front Desk Clerk at Marriott International
J
Someone from OH, Columbus just viewed Account Administration at Jobmatchpros
C
Someone from OH, Canton just viewed RN Ambulatory - Outpatient Infusion Therapy at CCF
Photo of the Rise User
Someone from OH, Columbus just viewed Network Engineering Intern at Crusoe
Photo of the Rise User
Someone from OH, Youngstown just viewed Softgoods Materials Researcher at Apple
E
Someone from OH, Bowling Green just viewed Contract Game Mathematician (Hourly) at Everyrealm
Photo of the Rise User
Someone from OH, Ada just viewed Media Assistant at Fulcrum
Photo of the Rise User
Someone from OH, Akron just viewed Medical Office Receptionist at LifeStance Health