Verified current Job

Information System Security Officer (ISSO)

Be Challenged and Make a Difference 

Job Full source details
Anavationllc Washington, DC Source published Sep 20, 2026 Verified 20 hours ago
✓ 100% verification score · Source: Anavationllc (lever) · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
EmploymentFull Time

Overview

Be Challenged and Make a Difference 

Full job description

Be Challenged and Make a Difference

In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture.

Description of Task to be Performed: AnaVation is seeking a Sr. Security Specialist (ISSO) for our mission critical customer in Washington, DC. You will work as part of a fantastic team providing security expertise on high priority projects. Daily duties include, but are not limited to: Integral team member for agency’s risk assessment program that will be performing internal audits and building streamlined assessment processes. Having in-depth security knowledge, is highly technical, and experienced in managing the security of a system's accreditation boundary. Focusing on the enterprise governance and risk of exposure across a multi-cloud and on-premise environment that will include multiple vendors, customers and XaaS products. Evaluating agency’s current system infrastructure and recommending changes to improve its security posture. Providing customer support for security compliance and audit liaison activities. Focus is on improving the security posture of the agency’s Forensic and Investigative Labs. Developing, maintaining, and assessing Security Assessment & Authorization (SA&A) packages resulting in an Authority to Operate (ATO) for IT systems. Creating and maintaining SSPs and supporting documentation in accordance with agency guidelines and directives. This includes writing implementation statements, creating supporting documentation (e.g., Contingency Plans, Incident Response Plans, Account Management Plans, etc.), performing self-assessments, and/or assessing your peer’s assessment, while working with system stakeholders. Develop, coordinate, test, and train personnel on Incident Response Plans and Contingency Plans. Ensuring that information systems are accredited, maintain their ATO, and are being continuously monitored. Performing risk assessments for agency systems/applications, to include cloud-based systems. Performing security control assessments to include collecting supporting artifacts/evidence and interviewing system owner/owner representatives. Maintaining and tracking system POA&Ms. Reviewing and analyzing vulnerability scan data and providing recommendations on remediation. Taking ownership on various projects. Improving processes and procedures and making recommendations to improve the security posture of the agency's IT systems and applications. This position is on-site in Washington, DC.

6+ years’ experience with NIST, FISMA, and Security Assessment & Authorization.

FedRAMP and Cloud experience (e.g., Azure, AWS, Oracle (OCI))

Knowledgeable on various security-related NIST publications (e.g., SP 800-53r5, SP 800-53A, SP 800-18r1, etc.)

An in-depth knowledge of the Risk Management Framework (RMF).

Ability to obtain and maintain a customer Public Trust clearance required. Qualified candidates can be sponsored for this clearance.

Certifications: CISSP required

Familiarity with the security control families from the NIST guidance covered by the documents that they are responsible for evaluating.

Ability to provide subject matter expert-level knowledge to the project team to ensure compliance with applicable requirements.

Demonstrated knowledge of IT Security policy implementation statements, the regulatory structure of policy, the role of the Department of Homeland Security (DHS), the Office of Management and Budget (OMB), and the National Institute of Standards and Technology (NIST).

Hands-on experience using a Governance, Risk, and Compliance tool, such as JCAM (CSAM) or eMASS.

Ability to conduct gap analysis on non-federated vendor audit results, such as SOC Type 2, HIPAA comparison review and analyze against NIST SP 800-53 Revision 5 security controls.

Hands-on experience providing C-Level presentation and reporting.

Excellent written communication skills and understand the purpose and use of the System Security Plan (SSP).

Possess an understanding of control inheritance as applied to the RMF implementation in the JCAM tool.

Ability to accurately manage complex workstreams, comprehend the application of the RMF, and understand the application of security controls across the interface, application, operating system, network, and database layers of modern information systems. Understand the applicable artifacts used as evidence to assess compliance.

Experience with multiple tools providing security functions such as vulnerability management (e.g., Nessus), configuration management (e.g., BigFix, SCCM, ePO), endpoint protection (e.g., antivirus, ATP), data loss prevention, and intrusion detection software and hardware.

Ability to evaluate data flows, network diagrams, and logical security boundaries.

Excellent oral and written communication skills

Familiarity with the use of data analysis tools, including the use of Microsoft Excel or PowerBI to combine data from multiple sources.

Tips for this job

Practical Job and Scholarship guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

laptop-ats-crawler v2

Original authoritative source

Job and Scholarship is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

Anavationllc (lever) ↗

Browse current Job and Scholarship listings from Anavationllc (lever) →

Related opportunities

Other current verified records you may want to review.

Job

Кондуктор автобуса

Товарищество с ограниченной ответственностью Батыс Тех Инвест · KZ

Обеспечение соблюдения техники безопасности, охраны труда, Продажа билетов (пассажирский автомобильный транспорт) Без опыта техническое и професс...

Job

Бас бухгалтер

Товарищество с ограниченной ответственностью A-CОNSTRUCTION · KZ

Есеп, жоспарлау және есептілікті жүргізу, Қызметкерлердің қызметін жоспарлау және ұйымдастыру, Қызмет түрлері бойынша жоспарлау және бақылау, Кәс...

Job

Кассир

Товарищество с ограниченной ответственностью Кокше-Трейд · KZ

Бақылау-касса техникасын (БКТ) пайдалану, сатып алушылармен есеп айырысуды орындау, Кассалық операцияларды жүргізу, Ақша қаражатын есепке алу Тәж...

Job

Автобус кондукторы

Товарищество с ограниченной ответственностью Батыс Тех Инвест · KZ

Қауіпсіздік техникасының, еңбекті қорғаудың сақталуын қамтамасыз ету, Билет сату (жолаушылар тасымалы көліктері) Тәжірибесі жоқ техникалық және к...

Job

State Boards

Publicjobs Tal Net Opportunities

State Boards is the process through which we select and recommend for appointment, Chairpersons and Members (Non-Executive Directors), to the boa...

Job

Medical Consultants

Publicjobs Tal Net Opportunities

Consultant Psychiatrist Of Learning Disability (Adult) - Mental Health Service Wexford Vacancy type: publicjobs Department/Organisation: HSE Dubl...

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books