Summary
Zachary Piper Solutions is seeking an Information Systems Security Officer (ISSO) to support secure cloud-native software solutions. The role leads RMF activities, authorization efforts, and continuous monitoring for accredited cloud environments, while partnering with engineering teams to remediate vulnerabilities and maintain compliance artifacts.
Responsibilities
- Execute and maintain all phases of the DoD RMF lifecycle, including categorization, implementation, assessment, authorization, and continuous monitoring activities
- Build, manage, and maintain authorization packages within eMASS, ensuring documentation remains current and audit-ready
- Manage DISA PPSM registrations and maintain accurate ports, protocols, services, and data flow documentation
- Author and maintain SSPs, POA&Ms, security control narratives, and supporting accreditation artifacts
- Partner with engineering teams to remediate vulnerabilities, validate STIG compliance, support assessments, and map cloud-native technologies to NIST 800-53 security controls
Skills
- 3-5 years of experience supporting DoD cybersecurity, RMF authorizations, information assurance, or ATO package management
- Hands-on experience with eMASS, DISA PPSM, NIST 800-53, NIST 800-37, ACAS/Nessus, STIGs, and DoD cybersecurity policies
- Experience supporting cloud environments, containers, Kubernetes, CI/CD pipelines, and continuous monitoring programs
- Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, Computer Science, or a related field (or equivalent experience)
- Active Secret Security Clearance required with eligibility obtain a higher clearance
- Active DoD 8570/8140 IAM Level I or IAT Level II certification required (Security+ CE, CISSP, or equivalent), or the ability to obtain within 90 days of hire
- Active CAT Card required
Qualifications
Must Haves
- 3-5 years of experience supporting DoD cybersecurity, RMF authorizations, information assurance, or ATO package management
- Hands-on experience with eMASS, DISA PPSM, NIST 800-53, NIST 800-37, ACAS/Nessus, STIGs, and DoD cybersecurity policies
- Experience supporting cloud environments, containers, Kubernetes, CI/CD pipelines, and continuous monitoring programs
- Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, Computer Science, or a related field (or equivalent experience)
- Active Secret Security Clearance required with eligibility obtain a higher clearance
- Active DoD 8570/8140 IAM Level I or IAT Level II certification required (Security+ CE, CISSP, or equivalent), or the ability to obtain within 90 days of hire
- Active CAT Card required
Benefits
- Fully remote for candidates located in approved hiring regions including DC/MD/VA, Raleigh-Durham-Chapel Hill, NC, Denver-Colorado Springs, CO, and Dallas-Fort Worth, TX
- PTO
- Paid Holidays
- Medical
- Dental
- Vision
- 401K
- Sick Leave as required by law