Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Information Systems Security Officer (ISSO) (R-00047) image - Rise Careers
Job details

Information Systems Security Officer (ISSO) (R-00047)

True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its outcomes. True Zero recognizes that said outcomes begin and end with our people, and that is what we have built, a community of like-minded, driven, and passionate individuals and innovators who are aligned in a common goal of delivering top tier services to our customers. In 2023, True Zero was recognized as a “Best Places to Work” in two categories ("Prosperous and Thriving" ($5MM – $50MM in gross revenue) and "Mid-Atlantic Region" (DC, DE, MD, NC, VA, WV)) and in 2022, was recognized as one of Inc. Magazine’s Top 5000 Fastest Growing Companies.


The Information System Security Officer (ISSO) serves as the principal advisor to the Information System Owner (ISO), Business Process Owner, and the Chief Information Security Officer (CISO) / Information System Security Manager (ISSM) on all matters, technical and otherwise, involving the security of their assigned information system(s).


Job Responsibilities
  • Maintaining the overarching operational security posture and managing the day-to-day security operations of your assigned Information System (IS);
  • Developing, reviewing, and maintaining security and authorization documentation to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements Traceability Matrices (SRTMs);
  • Performing vulnerability/risk assessment analyses to support assessment and authorization (A&A);
  • Ensuring the implementation and maintenance of security controls in accordance with the SSP and the organization's security policies, standards, and procedures;
  • Supporting security authorization activities in compliance with National Institute of Standards and Technology Risk Management Framework (NIST RMF).
  • Providing configuration management (CM) for IS security software, hardware, and firmware, and leading Change Control Board (CCB) meetings; and,
  • Providing guidance and security expertise to program leadership.


Qualification Requirements
  • Experience with and knowledge of Federal DevSecOps frameworks and processes
  • Experience with IS accreditors, policies, and procedures to support Authoriy to Operate (ATO)/Authority to Connect (ATC) decision making and operational practices.
  • Experience with RMF, NIST SP 800-53, Security Technical Implementation Guides (STIGs), and/or Security Content Automation Protocol (SCAP) Compliance Checker
  • Knowledge of and experience leading the A&A process
  • Knowledge of IT security principles and methods (e.g., firewalls, demilitarized zones, encryption).
  • Experience in preparing detailed SSPs to achieve ATO objectives.
  • Knowledge of new and emerging IT and cybersecurity technologies.


Position Requirements
  • BA or BS degree in Computer Science or related discipline from an accredited college or university, and/or at least 4 years of experience in related field
  • Excellent communication skills, verbal and written, with ability to influence and collaborate with leadership, peers, and team members
  • Approved to work in the United States
  • Active clearance, or ability and willingness to submit for a clearance/BI process


We’re actively searching for talented security and technology practitioners who are ready to experience the True Zero difference. As a True Zero team member, you'll enjoy:


- Competitive salary, paid twice per month

- Best in class medical coverage

- 100% of medical premiums covered by True Zero

- Company wide new business incentive programs

- Contribution Incentives (i.e. white papers, blog posts, internal webinars, etc.)

- 3 weeks of PTO starting + 11 Paid Holidays Annually

- 401k Program with 100% company match on the first 4%

- Monthly reimbursement of Cell Phone and Home Internet costs

- Paternity/Maternity Leave

- Investment in training and certifications to broaden and deepen your technical skills

True Zero Technologies Glassdoor Company Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
True Zero Technologies DE&I Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of True Zero Technologies
True Zero Technologies CEO photo
Unknown name
Approve of CEO

Average salary estimate

$80000 / YEARLY (est.)
min
max
$70000K
$90000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Information Systems Security Officer (ISSO) (R-00047), True Zero Technologies

True Zero Technologies is on the lookout for an Information Systems Security Officer (ISSO) to join our dynamic team in Washington DC. As a veteran-owned small business, we pride ourselves on our commitment to fostering a community of innovators who are passionate about delivering outstanding services to our clients. In this pivotal role, you will act as the principal advisor on all security matters related to your assigned information systems, collaborating closely with our Information System Owner (ISO) and Chief Information Security Officer (CISO). Your day-to-day responsibilities will include maintaining the security posture of your information systems, developing security documentation such as System Security Plans and Risk Assessment Reports, and implementing robust security controls in accordance with industry standards. You will also conduct vulnerability assessments and facilitate compliance with the National Institute of Standards and Technology’s Risk Management Framework. We’re looking for someone with a strong foundation in IT security principles, experience with Federal DevSecOps practices, and a collaborative spirit to guide our leadership with your expertise. At True Zero, you will find an environment that values your contributions—offering competitive salaries, comprehensive medical coverage, generous PTO, and opportunities for training and development. If you're looking to make a significant impact in the world of cybersecurity and thrive in a supportive workplace, we want to hear from you!

Frequently Asked Questions (FAQs) for Information Systems Security Officer (ISSO) (R-00047) Role at True Zero Technologies
What are the key responsibilities of the Information Systems Security Officer (ISSO) at True Zero Technologies?

The Information Systems Security Officer (ISSO) at True Zero Technologies is responsible for maintaining the overall security posture of assigned information systems. This includes managing day-to-day security operations, developing and reviewing security documentation, performing vulnerability and risk assessments, and ensuring compliance with security policies and industry standards such as the National Institute of Standards and Technology Risk Management Framework.

Join Rise to see the full answer
What qualifications are required for the ISSO position at True Zero Technologies?

To be considered for the Information Systems Security Officer position at True Zero Technologies, candidates should have a BA or BS degree in Computer Science or a related field, or at least four years of relevant experience. Additionally, candidates should possess strong communication skills, experience with Federal DevSecOps frameworks, and knowledge of IT security principles such as firewalls and encryption.

Join Rise to see the full answer
How does True Zero Technologies support its ISSO employees' professional development?

True Zero Technologies supports its ISSO employees by investing in training and certifications that help broaden and deepen their technical skills. This commitment to professional growth, combined with competitive salary packages and a supportive workplace culture, makes True Zero an exceptional place to advance your career in cybersecurity.

Join Rise to see the full answer
What security frameworks should an ISSO at True Zero Technologies be familiar with?

An ISSO at True Zero Technologies should be familiar with various security frameworks, especially the National Institute of Standards and Technology Risk Management Framework (NIST RMF), NIST SP 800-53, and Security Technical Implementation Guides (STIGs). Knowledge of the security assessment process and the preparation of System Security Plans (SSPs) to achieve Authority to Operate (ATO) objectives is also crucial.

Join Rise to see the full answer
What benefits can ISSO employees expect at True Zero Technologies?

ISSO employees at True Zero Technologies can expect a range of benefits, including competitive salaries, comprehensive medical coverage (with 100% of premiums covered), generous PTO and paid holidays, a 401k program with 100% company match, and reimbursement for cell phone and home internet costs. Additionally, the company fosters a nurturing environment for work-life balance and family support.

Join Rise to see the full answer
Common Interview Questions for Information Systems Security Officer (ISSO) (R-00047)
What experience do you have with the Risk Management Framework?

When discussing your experience with the Risk Management Framework, be specific about the projects you've worked on that involve RMF. Explain how you contributed to various stages of the RMF process, such as categorization, selection of security controls, implementation, assessment, authorization, and continuous monitoring.

Join Rise to see the full answer
Can you describe your process for conducting a vulnerability assessment?

In your answer, outline a clear step-by-step process for conducting vulnerability assessments. Discuss how you identify assets, use automated tools, interpret results, prioritize vulnerabilities, and communicate findings to stakeholders, ensuring a thorough approach to security management.

Join Rise to see the full answer
How do you ensure compliance with security policies and standards?

Discuss your strategy for ensuring compliance, which may include regular audits, documentation reviews, employee training, and collaboration with other teams. Mention tools or methodologies you’ve used to maintain adherence to security standards.

Join Rise to see the full answer
What security controls do you consider essential for information systems?

Highlight key security controls such as access controls, encryption, firewalls, and intrusion detection systems. Explain why these controls are critical for protecting information systems and how you have implemented them in past roles.

Join Rise to see the full answer
How would you approach a security incident?

Describe a systematic incident response process. Discuss detection, containment, eradication, recovery, and lessons learned, emphasizing the importance of a coordinated team response and effective communication during security incidents.

Join Rise to see the full answer
What challenges have you faced as an ISSO and how did you overcome them?

Provide examples of real challenges you've encountered, such as budget constraints, evolving threats, or compliance requirements. Discuss the strategies you implemented to successfully navigate these challenges and the outcomes achieved.

Join Rise to see the full answer
How do you stay updated on the latest cybersecurity trends and threats?

Explain your methods for staying informed, such as attending conferences, participating in webinars, following industry news outlets, or engaging with professional organizations. Discuss how this knowledge influences your work.

Join Rise to see the full answer
Describe your experience with cybersecurity tools and technologies.

Be specific about the cybersecurity tools you’ve worked with, such as SIEM, endpoint protection platforms, or vulnerability assessment scanners. Share how you leveraged these tools to enhance security and achieve compliance.

Join Rise to see the full answer
How do you handle communication with non-technical stakeholders about security issues?

Discuss your approach to simplifying complex security concepts for non-technical audiences by using clear language and relatable examples. Include your techniques for addressing concerns, fostering collaboration, and obtaining buy-in for security initiatives.

Join Rise to see the full answer
What do you believe is the biggest risk facing organizations today?

Share your insight on current risks, such as phishing attacks, insider threats, or supply chain vulnerabilities. Explain how these risks impact organizations and how you have mitigated similar risks in your previous roles.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Swiftly Remote Argentina (Remote)
Posted 13 days ago
Photo of the Rise User
Fearless Remote Baltimore - Fearless HQ
Posted 4 days ago
Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
Posted 8 days ago
Photo of the Rise User
Posted 20 hours ago
Dental Insurance
Disability Insurance
Vision Insurance
Equity
Paid Time-Off
Medical Insurance
Mental Health Resources
Paid Holidays
Company Retreats
Photo of the Rise User
Continental Remote Strada Avram Imbroane, Timișoara, Romania
Posted 2 days ago
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 17, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Pickerington just viewed Layout Artist at Powerhouse Animation Studios
Photo of the Rise User
Someone from OH, Cortland just viewed Exploring Post-Grad Rotational Programs at Evonik at Evonik
B
Someone from OH, Powell just viewed Salesforce Admin (Part Time) at Bullpen Talent
Photo of the Rise User
18 people applied to IT Intern at USAA
P
Someone from OH, Mentor just viewed Ecommerce Specialist at ProjectGrowth
Photo of the Rise User
Someone from OH, Lakewood just viewed Regional Broker Contractor - Ohio, US (Remote) at Real
Photo of the Rise User
Someone from OH, Cleveland just viewed Data Partnerships Analyst at Experian
Photo of the Rise User
Someone from OH, Dublin just viewed Junior PMO Analyst at Rentokil Initial Group
Photo of the Rise User
Someone from OH, Columbus just viewed Executive Assistant II at Progress
Photo of the Rise User
Someone from OH, Cleveland just viewed Infection Prevention Data Abstractor: Full-Time at Q-Centrix
Photo of the Rise User
Someone from OH, Orwell just viewed Amazon Expediting Fleet Specialist at MSX International
E
Someone from OH, Cleveland just viewed Junior Support Engineer (m/f/d) at EoT Labs GmbH
Photo of the Rise User
Someone from OH, Reynoldsburg just viewed Graphic Designer at Hyve Group
Photo of the Rise User
Someone from OH, Reynoldsburg just viewed Production Artist Phoenix at R.R. Donnelley
A
Someone from OH, Avon Lake just viewed Entry Level Marketing Assistant at Alphabe Insight Inc
Photo of the Rise User
Someone from OH, North Royalton just viewed Researcher-NBC Sports at NBCUniversal
Photo of the Rise User
Someone from OH, Cleveland just viewed UI Product Designer at Insight Global
Photo of the Rise User
Someone from OH, Cleveland just viewed Getinge is hiring: UI/UX Developer in Streetsboro at Getinge
Photo of the Rise User
Someone from OH, Kent just viewed Graphic Designer, Direct Response at Visa
Photo of the Rise User
Someone from OH, Columbus just viewed General Application - I want to work at Kiddom! at Kiddom