Information Security Systems Officer

TechSur is seeking an Information System Security Officer to support DOL OCIO/ETA SWARAS security compliance, authorization, continuous monitoring, vulnerability management, POA&M remediation, risk register maintenance, and security documentation. This role serves as the security compliance lead for a FISMA Moderate application ecosystem and coordinates with DOL OCIO cybersecurity stakeholders, application teams, database teams, and program leadership.

Key Responsibilities

  • Lead SWARAS FISMA Moderate compliance support, including NIST 800-53 controls, NIST 800-171 alignment, FIPS, HSPD-12/PIV, TIC, and DOL security policy compliance.
  • Maintain CSAM artifacts, system security documentation, security/privacy plans, risk registers, POA&Ms, audit responses, and ATO support documentation.
  • Analyze vulnerability scan results, audit findings, penetration testing results, and security control assessments, then coordinate remediation with DevSecOps, DBA, and system owner stakeholders.
  • Track POA&M milestones, remediation timelines, evidence packages, and closure documentation within Government-defined timelines.
  • Support secure SDLC controls, code review evidence, static/dynamic testing evidence, third-party/open-source component tracking, and security release gates.
  • Support incident response requirements, including rapid escalation for PII-related incidents and coordination with DOL OCIO security stakeholders.
  • Provide security input for CPIC reporting, portfolio data calls, continuous monitoring, and governance reviews.

Required Qualifications

  • 5+ years of federal cybersecurity, ISSO, RMF, ATO, or security compliance experience.
  • Hands-on experience with FISMA Moderate, NIST 800-53, RMF, POA&M management, vulnerability management, security documentation, and ATO support.
  • Experience Supporting Department of Labor IT programs is REQUIRED.
  • Experience coordinating remediation across application, database, infrastructure, and DevSecOps teams.
  • Strong understanding of federal security documentation, security control assessment findings, remediation planning, and continuous monitoring.
  • U.S. Citizenship and ability to obtain and maintain DOL Public Trust suitability.
  • Prior DOL OCIO, ETA, CSAM, ATO, or federal civilian ISSO experience.
  • Security+, CISSP, CISM, CAP, CGRC, CEH, or equivalent security certification.
  • Experience with Splunk, ServiceNow, Jira, Confluence, SolarWinds, SAST/DAST, and vulnerability scanning tools.

All your information will be kept confidential according to EEO guidelines.

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available