About this Information Systems Security Officer (ISSO) role at Anavationllc
Description of Task to be Performed:
AnaVation is seeking a highly motivated Information Systems Security Officer (ISSO) who will be responsible for implementing cybersecurity, Risk Management Framework (RMF), and continuous monitoring activities supporting Department of Defense software factories and enterprise cloud environments. The ISSO will serve as an embedded cybersecurity professional supporting one or more mission agile teams, working directly with Government leadership, Information Systems Security Managers (ISSMs), Information Systems Security Engineers (ISSEs), Cyber Operations Teams (COT), Cyber Penetration Teams (CPT), Product Owners, software developers, and DevSecOps engineers to maintain secure cloud-native capabilities while enabling rapid software delivery through Continuous Authority to Operate (cATO). This position is full-time support within classified environments in San Antonio, Texas.
Position Responsibilities: The Information Systems Security Engineer (ISSO) provides support to enterprise cybersecurity operations across multiple mission value streams and classified environments by executing RMF activities, maintaining cybersecurity documentation, supporting continuous monitoring, and ensuring compliance with Department of Defense cybersecurity policies and mission security standards.
Responsibilities include:
- Execute Risk Management Framework (RMF) activities supporting system authorization, continuous monitoring, and Continuous Authority to Operate (cATO).
- Maintain RMF documentation including SSPs, POA&Ms, SARs, hardware/software inventories, and security artifacts.
- Support cybersecurity assessments conducted by Security Control Assessors, penetration testing teams, and Authorizing Officials.
- Monitor system cybersecurity posture and coordinate remediation of vulnerabilities and assessment findings.
- Perform vulnerability management, STIG implementation, configuration compliance validation, and security control assessments.
- Support implementation of Zero Trust security principles, cloud security controls, Kubernetes/OpenShift security, container hardening, and DevSecOps security practices.
- Collaborate with Government leadership, ISSMs, ISSEs, software developers, cloud engineers, Cyber Operations Teams (COT), and Cyber Penetration Teams (CPT) to integrate cybersecurity into Agile software development.
- Maintain continuous monitoring documentation, audit evidence, and cybersecurity reporting.
- Evaluate cybersecurity findings and recommend corrective actions to improve system security posture.
- Assist with annual cybersecurity inspections, assessments, audits, and operational readiness activities.
- Prepare technical documentation, executive reports, and cybersecurity metrics supporting Government decision-making.
- Support cybersecurity operations across Unclassified, Secret, and SCI environments.
Required Qualifications:
Preferred Qualifications:
- Generous cost sharing for medical insurance for the employee and dependents
- 100% company paid dental insurance for employees and dependents
- 100% company paid long-term and short-term disability insurance
- 100% company paid vision insurance for employees and dependents
- 401k plan with generous match and 100% immediate vesting
- Competitive Pay
- Generous paid leave and holiday package
- Tuition and training reimbursement
- Life and AD&D Insurance