Information System Security Officer (ISSO)

Baltimore, MDPosted Aug 6, 2026

ASSYST's Information Assurance and Cybersecurity Practice is seeking an experienced Information Systems Security Officer (ISSO) to support a Federal customer. ASSYST delivers comprehensive cybersecurity solutions to Federal, State, and Local government agencies, helping organizations strengthen their security posture and achieve regulatory compliance.

The Information Systems Security Officer (ISSO) will be responsible for ensuring the confidentiality, integrity, and availability of Federal information systems while supporting compliance with FISMA, FedRAMP, and NIST security requirements. The ISSO will work closely with system owners, security teams, and government stakeholders to support the Risk Management Framework (RMF), system authorization activities, continuous monitoring, and cybersecurity risk management.

Primary Job Responsibilities:

  • Respond to cybersecurity incidents and security events to mitigate risks and protect information systems.
  • Support system authorization activities and ensure compliance with the NIST Risk Management Framework (RMF), FISMA, and FedRAMP requirements.
  • Review and maintain security documentation, including SSPs, SAPs, SARs, Contingency Plans, POA&Ms, and other authorization artifacts.
  • Assess security risks, analyze security assessment reports, and recommend appropriate mitigation strategies.
  • Support continuous monitoring, ongoing risk assessments, and compliance activities.
  • Provide cybersecurity guidance to system owners and leadership based on NIST, FIPS, and Federal security standards.
  • Monitor changes to Federal cybersecurity policies, regulations, and directives.
  • Support the protection of Personally Identifiable Information (PII) and Privacy Impact Assessments (PIAs).
  • Evaluate the security impact of new technologies and cloud environments.

Requirements:

  • Bachelor's degree or equivalent experience.
  • 5+ years of experience supporting Federal information security or cybersecurity programs.
  • Active CISSP or CISM certification.
  • Strong knowledge of FISMA, FedRAMP, NIST RMF, NIST SP 800 Series, FIPS, and OMB Circular A-130.
  • Experience developing and reviewing RMF authorization documentation.
  • Knowledge of IT contingency planning, continuous monitoring, and risk management.
  • Familiarity with AWS, Microsoft Azure, or Google Cloud Platform.
  • Excellent analytical, communication, and documentation skills.
  • Ability to obtain and maintain a Public Trust clearance.

ASSYST Benefits:

We are proud to offer a robust benefits package including medical, dental, vision, 401(k) retirement plan, disability insurance, flexible spending accounts and more in order for our employees to maintain a secure work/life balance.

ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law

Want jobs like this matched to you?

SimpleCareer scores fresh postings against your résumé so you only see the matches that matter.

Get started free