Full-Time

Information Systems Security Officer

Updated on 8/3/2026

RedTrace Technologies Inc

RedTrace Technologies Inc

No salary listed

No H1B Sponsorship

Washington, DC, USA

In Person

US Citizenship, US Top Secret Clearance Required

Category
IT & Security (1)
Required Skills
Cybersecurity
Vulnerability Analysis
Requirements
  • Current U.S. Government Top Secret Clearance with Sensitive Compartmented Information and Counterintelligence Polygraph eligibility.
  • U.S. citizenship.
  • At least 5 years of experience serving as an Information Systems Security Officer at a cleared facility.
  • At least 5 years of work experience in a computer science or cybersecurity-related field.
  • Familiarity with security tools including Tenable Nessus and/or Security Center, IBM Guardium, HP WebInspect, Network Mapper, and/or similar applications.
  • At least one of the following certifications: Certified Information Systems Security Professional, Global Information Security Professional, CompTIA Advanced Security Practitioner, or another certification exemplifying Information Assurance Management Level I proficiency under Department of Defense Instruction 8570.1.
Responsibilities
  • Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of security configurations, practices, and procedures for each information system.
  • Provide liaison support between the system owner and other information-system security personnel.
  • Ensure selected security controls are implemented and operating as intended during all phases of the information-system lifecycle.
  • Ensure information-system security documentation is developed, maintained, reviewed, and continuously updated.
  • Conduct required information-system vulnerability scans according to risk-assessment parameters.
  • Develop Plans of Action and Milestones in response to reported security vulnerabilities.
  • Manage risks to information systems and agency assets by coordinating correction or mitigation actions and overseeing and tracking timely completion of Plans of Action and Milestones.
  • Coordinate system-owner concurrence for correction or mitigation actions.
  • Monitor security controls for agency information systems to maintain security Authorization to Operate.
  • Upload security-control evidence to the Governance, Risk, and Compliance application to support security-control implementation during the monitoring phase.
  • Report changes to an agency information system, its environment, or operational needs that may affect authorization status to the system owner and Information System Security Manager.
  • Coordinate the removal and retirement of decommissioned information systems with the system owner, Information System Security Manager, and Information System Security Representative.
  • Provide baseline security controls to the system owner based on the information system's security categorization, type of information processed, and entity type.
  • Recommend to the Authorizing Official, in consultation with the system owner, systems' impact levels and information-system authorization boundaries.
  • Create new entities in the Governance, Risk, and Compliance application with the security categorization of agency information systems.
  • Initiate, coordinate, and recommend to the agency Authorizing Official Interconnection Security Agreements, Memoranda of Understanding, and Memoranda of Agreement permitting interconnection of an agency information system with non-agency or joint-use information systems.
  • Perform an independent review of the System Security Plan and make approval decisions.
  • Request and negotiate the level of testing required for an information system with the Enterprise Information Security Section and the agency Authorizing Official.
  • Schedule security-control assessments in coordination with the system owner.
  • Coordinate information-system security inspections, tests, and reviews with security personnel and the system owner, and submit the final Security Assessment and Authorization package to the agency Authorizing Official for a security Authorization to Operate decision.
  • Ensure the Security Authorization to Operate Electronic Communication is serialized into Sentinel under the applicable case-file number.
  • Advise the agency Authorizing Official of information-system vulnerabilities and residual risks.
  • Ensure all Plan of Action and Milestones actions are completed and tested.
  • Coordinate initiation of an event-driven reauthorization with the agency Authorizing Official.
  • Coordinate removal and retirement of decommissioned agency information systems with the system owner, Information System Security Officer, and Information System Security Representative.
Desired Qualifications
  • A bachelor's and/or advanced degree in computer science, business management, or an information technology-related discipline.
RedTrace Technologies Inc

RedTrace Technologies Inc

View

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A