ISSO
Boost your chances before you apply.
Koniag Government Services, LLC
Fort Belvoir, VA, US
Summary
The ISSO is responsible for developing and managing security policies, ensuring compliance with regulatory frameworks like NIST and FISMA, and performing risk assessments. They also coordinate incident responses, maintain system security plans, and provide security training to staff.
Job Description
This position may be filled prior to the posted deadline. Interested candidates are encouraged to apply as soon as possible.
Kadiak, LLC, a Koniag Government Services company, is seeking an experienced Information System Security Officer (ISSO) to support Kadiak and our government customer. This position is Remote.
Benefits include medical, dental, and vision insurance, 401(k) retirement plan, paid time off, paid parental leave, life and disability insurance, flexible spending accounts, commuter benefits and tuition reimbursement.
The ISSO will be responsible for:
- Information Security Management:
- Develop, implement, and manage the organization’s security policies, procedures, and systems to safeguard information.
- Ensure compliance with relevant regulatory requirements (e.g., NIST, FISMA, RMF) and best practices for information security.
- Perform security assessments, vulnerability analysis, and risk management processes to identify and address security gaps.
- Manage security authorization and accreditation of information systems, ensuring they meet all required security controls.
- Risk Management & Compliance:
- Assess risks related to information systems and provide recommendations to mitigate identified risks.
- Maintain and update System Security Plans (SSPs), ensuring they are in line with current operational and security requirements.
- Prepare and review security documentation, including policies, procedures, and training materials for staff.
- Act as a liaison between the organization and external auditors, regulatory bodies, and stakeholders on matters related to security compliance.
- Incident Management:
- Coordinate responses to security incidents, including identifying, investigating, and resolving potential threats to systems and data.
- Lead the development and implementation of incident response plans and disaster recovery procedures.
- Security Monitoring & Continuous Improvement:
- Implement and maintain security monitoring tools and practices to detect and respond to security events.
- Continuously evaluate emerging threats and recommend improvements to the organization's security posture.
- Training & Awareness:
- Provide training and guidance on security best practices to staff and users across the organization.
- Promote a culture of security awareness and ensure that employees follow all security protocol
- Qualifications:
- Education:
- Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field. (Equivalent work experience will be considered in lieu of a degree).
- Certifications:
- Certified Information Systems Security Professional (CISSP)
- Experience:
- 3-5 years of experience in information security, with at least 2 years in an ISSM/ISSO role.
- Proven experience in managing security compliance and implementing security programs in a large organization.
- In-depth knowledge of security frameworks such as NIST 800-53, RMF, FISMA, and others.
- Skills & Abilities:
- Strong knowledge of information security technologies and practices, including encryption, firewalls, intrusion detection systems, and endpoint protection.
- Familiarity with common security tools (e.g., SIEM, vulnerability scanners).
- Excellent analytical and problem-solving skills, with the ability to assess complex security risks.
- Ability to communicate effectively, both verbally and in writing, to technical and non-technical stakeholders.
- Strong organizational and time management skills.
- C5ISR Training Requirements (Required for the Contract but can be obtained after start date).
PRIVILEGED (ADMIN) ACCESS:
• ACAS Required Training:
o 5.14 or higher
o Older training certificates must be accompanied by Best Practice Guide Knowledge Exam report
• ESS Required Trainings:
o DISA ESS 201
o DISA ESS 301
- Good to Have - But Not Required:
- Additional certifications in risk management, security architecture, or cloud security (e.g., AWS Certified Security Specialty) are a plus.
- Experience with security certifications for cloud environments (e.g., AWS, Azure).
- Knowledge of advanced persistent threats (APTs) and threat intelligence.
- Familiarity with security management software and automation tools.
- Other responsibilities:
- Perform other duties as assigned by leadership team
Our Equal Employment Opportunity Policy:
The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.
The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or to apply to a position on our website, please contact Heaven Wood via e-mail at [email protected] or by calling 703-488-9377 to request accommodations.
Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com.
Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352
Koniag Government Services (KGS) is an Alaska Native Corporation comprised of multiple wholly owned subsidiary companies that deliver Enterprise Solutions, Professional Services, and Operations Management to Federal Government agencies. With an agile employee and corporate culture, KGS applies its proven technical, professional, and operational expertise to enable successful mission outcomes for Defense and Civilian agencies through forward-leaning, solution-oriented business partnerships and a commitment to exceptional service delivery.
Our commitment to quality delivery is demonstrated by our independently accredited CMMI/Dev Level3, CMMI/Svc Level3, ISO 9001:2015 Quality Management System, and ISO 20001:2011 Service Management System. KGS is headquartered in Chantilly, VA with offices all over the country.
KGS is seeking qualified candidates for our open positions, but we will only extend an offer of employment after a candidate applies through the link in our job posting. If you receive a job offer via email only and have not been interviewed by the KGS hiring manager, feel free to contact [email protected] to verify its validity.
Founded
1975
Company size
1,001-5,000 employees
Industry
IT Services and IT Consulting
Org type
Privately Held
Headquarters
Chantilly, Virginia
Koniag Government Services (KGS) is an Alaska Native Corporation comprised of multiple wholly owned subsidiary companies that deliver Enterprise Solutions, Professional Services, and Operations Management to Federal Government agencies. With an agile employee and corporate culture, KGS applies its proven technical, professional, and operational expertise to enable successful mission outcomes for Defense and Civilian agencies through forward-leaning, solution-oriented business partnerships and a commitment to exceptional service delivery.
Our commitment to quality delivery is demonstrated by our independently accredited CMMI/Dev Level3, CMMI/Svc Level3, ISO 9001:2015 Quality Management System, and ISO 20001:2011 Service Management System. KGS is headquartered in Chantilly, VA with offices all over the country.
KGS is seeking qualified candidates for our open positions, but we will only extend an offer of employment after a candidate applies through the link in our job posting. If you receive a job offer via email only and have not been interviewed by the KGS hiring manager, feel free to contact [email protected] to verify its validity.
Founded
1975
Company size
1,001-5,000 employees
Industry
IT Services and IT Consulting
Org type
Privately Held
Headquarters
Chantilly, Virginia