Sandy Mac Evolution LLC (SME) logo

55-019 – Information Systems Security Officer (ISSO) III

Sandy Mac Evolution LLC (SME)
13 hours ago
Full-time
On-site
Hanscom Afb, United States
$131,285 USD yearly

JobsCloseBy Editorial Insights

SME is seeking an Information Systems Security Officer III to support DoD Special Access Programs at Hanscom AFB, maintaining the security posture of Collateral, SCI and SAP systems and collaborating with the ISSM and IT teams to manage RMF packages, continuous monitoring and A&A activities. The ideal candidate has 5–7 years of cybersecurity experience, hands on RMF or BOE work, prior ISSO or similar roles, and at least 2 years in SAP environments, plus DoD 8570.01-M IAM Level II, a bachelor’s degree, and current Top Secret with SCI eligibility and SAP access, plus willingness to complete a CI polygraph and work onsite. Tips: tailor your resume to RMF, quantify monitoring results, highlight collaboration and security documentation, showcase polygraph readiness and SAP/SCI experience, and confirm ability to lift 50 pounds and work onsite.


55-019 – Information Systems Security Officer (ISSO) III

Location: Hanscom AFB, MA
Salary: $131,284.71
Position Type: Full-Time
Security Clearance: Active Top Secret Clearance Required | SCI Eligibility Required | SAP Access Eligibility Required | Must be willing to undergo a CI Polygraph

Position Overview

Sandy Mac Evolution LLC is seeking an Information Systems Security Officer III to support Department of Defense Special Access Program environments at Hanscom Air Force Base, Massachusetts.

The ISSO III is responsible for maintaining the appropriate operational security posture of assigned information systems and supporting day-to-day cybersecurity activities across Collateral, Sensitive Compartmented Information (SCI), and Special Access Program (SAP) environments.

The selected candidate will work closely with the Information Systems Security Manager and other cybersecurity and information technology personnel to maintain authorization documentation, monitor system security, implement configuration-management requirements, assess security impacts associated with system changes, conduct continuous monitoring, and support assessment and authorization activities.

Key Responsibilities

  • Assist the ISSM in meeting assigned cybersecurity duties and responsibilities.
  • Prepare, review, and update information-system authorization packages.
  • Ensure approved procedures are established for clearing, sanitizing, and destroying hardware and media.
  • Notify the ISSM of system changes that may affect authorization status.
  • Conduct periodic reviews of information systems to verify compliance with approved security authorization packages.
  • Coordinate hardware, software, and firmware changes with the ISSM and applicable Authorizing Official or Designated Authorizing Official before implementation.
  • Monitor system-recovery processes to ensure security features and procedures are properly restored.
  • Ensure information-system security documentation remains current and accessible to authorized personnel.
  • Ensure audit records are collected, reviewed, analyzed, and documented, including identified anomalies.
  • Participate in required technical and cybersecurity training.
  • Execute cybersecurity portions of self-inspections.
  • Review and coordinate system assessment plans and related security documentation.
  • Identify cybersecurity vulnerabilities and assist with implementation of appropriate countermeasures.
  • Prepare reports regarding the status of security safeguards applied to information systems.
  • Perform ISSO duties supporting internal and external customers.
  • Conduct continuous monitoring activities for assigned authorization boundaries.
  • Assist DoD, national agency, and contractor organizations with Assessment and Authorization activities.
  • Support physical and environmental protection, personnel security, incident handling, and security awareness requirements associated with assigned systems.

Required Qualifications

  • 5–7 years of related cybersecurity/information assurance experience.
  • Demonstrated experience developing RMF authorization packages or Bodies of Evidence .
  • Prior experience performing as a System Administrator, Network Administrator, ISSO, or similar cybersecurity role .
  • Minimum 2 years of Special Access Program experience.
  • Knowledge of information-system security requirements within classified environments.
  • Experience with continuous monitoring, vulnerability management, configuration management, and authorization activities.
  • Ability to work onsite at Hanscom AFB, Massachusetts.

Certification Requirement

  • DoD 8570.01-M IAM Level II qualification is required in lieu of IAT Level II , in accordance with the current vacancy requirement.

Education

Bachelor’s degree in a related field or equivalent qualifying experience.

Security Requirements

  • Current Top Secret eligibility with SCI eligibility.
  • Current/in-scope background investigation, enrollment in Continuous Evaluation, or qualifying open periodic reinvestigation.
  • Eligibility for access to Special Access Program information.
  • Willingness to submit to a Counterintelligence polygraph.
  • Must maintain required security eligibility throughout employment.

Additional Requirements

  • Must be able to regularly lift up to 50 pounds.
  • Must be able to perform duties onsite within classified Collateral, SCI, and SAP environments.