AISSO, Info Sys Security Officer


Job Details

Alpha Omega Integration LLC is an award-winning Federal IT Solutions provider. Since its inception in September 2016, we have grown from a start-up to a $100m/year business. Alpha Omega's growth stems from our mission focus: to make the US Government the best in the world. We achieve that via advanced capabilities in the areas of Design & Product Management, DevSecOps & Cloud Engineering, Intelligent Automation, and Cybersecurity.

Our consistent growth has fostered a series of accolades including Inc. 5000 and Washington Technology's Fast 50 awards for five consecutive years, Virginia Business Best Places to Work ten years in a row, and Maryland Technology Council's 2022 Government Contract of the Year over $50 Million Dollars award, to name a few.

We are seeking passionate federal IT professionals to join our team.

Come support our nation's government agencies and make a difference!

Why Us?

We have H.E.A.R.T.! Alpha Omega's Core Values - (H) harmony, (E) engagement, (A) accountability, (R) resourcefulness, and (T) tenacity- collectively are an acrostic reminder of the values that guide the work we do.

We foster a culture that recognizes and rewards hard work. Our H.E.A.R.T. program invites colleagues and managers from across the organization to recognize each other for living out our core values. Spotlighted employees enjoy a detailed nomination about their core-values-aligned actions which are then shared with their manager.

Ready to embark on a rewarding, challenging, and fulfilling career in the Federal IT Solutions space?

Come grow with us!

Job Title: AISSO
Location: In or near Portsmouth, VA, Kearneysville, WV and Elizabeth City, NC (remote/hybrid work option available)
Clearance Required: US Citizen, Secret Clearance

We are looking for focused, driven self-starter to work in a highly dynamic, cross-functional, complex IT environment. The Alternate Information System Security Officer (AISSO) will represent the ISSO as the IA liaison to assigned information systems; the candidate will interface with the ISSO, Information System stakeholders, and upstream and downstream assessment stakeholders to perform security duties.

The AISSO is responsible for helping Information Systems achieve and maintain their Authority to Operate (ATO). Information system missions include supporting national security and search and rescue missions. Information systems operate across various technology platforms and environments, including DevOps, cloud, and traditional data center. The AISSO reports directly to the Front Office Project Manager, while independently engaging in enterprise and system-level cybersecurity-related engineering tasks.

The successful candidate should have: experience performing assessment-related tasks; expert verbal and written communication skills; ability to interpret NIST and DoD guidance; and experience with industry tools, such as STIG viewer, ACAS, and eMASS.

Responsibilities:

  • Conduct focused compliance assessments for information systems according to guidance from NIST, OMB, DoD, DHS, FISMA, and internal policies.
  • Identify common and inheritable security control applicability across a variety of platforms and applications.
  • Analyze DoD Security Technical Implementation Guides (STIGs) implementation compliance and associate checklists to NIST SP 800-53 security controls
  • Conduct comprehensive manual security control testing, document examination, and staff interviews for security controls not covered by STIGs or inheritance
  • Analyze scan results from scanning tools (Nessus, SIEM, ACAS, and so forth) to identify additional information system vulnerabilities; verify scans against approved hardware/software and server lists to identify where gaps exist
  • Plan, develop, finalize, and review key deliverables at each stage of the Assessment & Authorization (A&A) project using applicable DoD and DHS tools and guidance.
  • Prepare and track POA&Ms in eMASS for items that out of compliance; identify risks and remediation recommendations.
  • Manage project expectations to ensure requirements are understood and agreed upon by stakeholders.
  • Assess proposed changes to information systems; identify risks of the proposed change and whether the proposed change affects the system ATO or FIPS categorization level.
  • Develop, review, and reconcile IA security policies, standards, guidelines, procedures, and other technical documentation.
  • Perform research to ensure knowledge proficiency remains aligned to technologies and industry best practices.
  • Identify and recommend process improvements relating to the A&A process and/or established guidelines.
  • Work closely with stakeholders to ensure information system A&A efforts are completed within stated deadlines.
  • Engage constructively within the team to identify and resolve challenges or exploit opportunities.
  • MUST possess excellent verbal and written communication skills. MUST be comfortable discussing (both verbally and in writing) status and risks/project impacts with all levels of management and project stakeholders.
  • Ability to interpret NIST and DoD guidance
  • MUST possess familiarity with FedRAMP inheritable controls and cloud-based security principles

Required Skills/Experience:

  • IAM II or IAT Level III Security Certification, in accordance with DoD 8570.01-M
  • Experience implementing or assessing DISA STIGs
  • Experience with RMF workflow tools, such as eMASS
  • Experience and familiarity with DevSecOps principles especially in terms of secure coding best practices
  • Five (5) years of related experience
  • Experience with Cloud-based (FEDRAMP) system authorization

Preferred Skills/Experience:

  • IAT Level III Security Certification, in accordance with DoD 8570.01-M, Information Assurance Workforce Improvement Program; CISSP or CASP CE certification in good standing
  • Bachelor's degree or higher in IT
  • Familiarity with overlays, including CFO, Privacy, Facility, and NSS
  • Experience with industry tools, such as STIG viewer, ACAS, and eMASS

Alpha Omega Integration, LLC (Alpha Omega) is committed to the development of a creative, diverse, and inclusive work environment. In accordance with the law and our organizational values, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, Veteran Status, or any other characteristic protected by law (referred to as "protected status)". Final hiring decisions at Alpha Omega will be based on merit, qualifications, and abilities.

Black, Indigenous, and People of Color (BIPOC), LGBTQIA, women, people over 40, and differently-abled folks are strongly encouraged to apply.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c)





 Alpha Omega Integration

 06/15/2024

 Kearneysville,WV