Information System Security Officer (ISSO)
Noblis
- Agency: Noblis
- Location: Huntsville, AL
- Salary: $149K - $149K
- Type: full-time
- Work arrangement: onsite
- Posted: 2026-09-10
Job Description
Responsibilities
Noblis is hiring an ISSO in Huntsville, AL to supporting the Threat Management Office (TSMO). The mission of the Threat Systems Management Office (TSMO) is to manage the Army Threat System Programs to include the total life cycle of threat systems for testing and training in the live, virtual, and constructive environments. TSMO designs, builds and tests representations of operational and emerging hostile systems with virtually identical performance capabilities that match the identified threat. TSMO ensures all threat systems are continually developed, upgraded, and/or modified and tested to reflect the current threat weapons systems platforms with state-of-the-art technology to support new and emerging DOD weapon systems. Additionally, TSMO conducts threat assessment and analysis in conjunction with the Army, Navy and other joint services operations.
TSMO utilizes a combination of simulators and simulation models, foreign material acquisition, commercial-off-the-shelf (COTs), and new development efforts to achieve its goal of providing threat relevant Electronic Warfare (EW), Information Operations (IO), integrated air defense (IADs), and command and control (C2) capabilities to support Operational Test and Evaluation (OT&E) events. These OT&Es include Network Integration Evaluations (NIEs), Combatant Commander events, as well as other testing and training events. TSMO requires a range of activities associated with conceptualizing, developing, and supporting the execution of testing events. Support is required to allow for more realistic threat representation testing for both hardware and/or software, and to upgrade threat systems and sub-systems with modern techniques that will offer superior threat representation testing against foreign threats. The TSMO requires the design of threat representations in order to reproduce live, virtual, and constructive threat simulations that satisfy the U.S. Army Test and Evaluation Command (ATEC) to support future test and training events.
In this role, the Information Systems Security Officer (ISSO) leads the Risk Management Framework process for systems assigned, and will support the full lifecycle of the Department of Defense (DoD) RMF process, from system categorization and control implementation through assessment, authorization, and continuous monitoring. The ISSO must possess a strong knowledge of the process for developing Risk Management Framework (RMF) packages from beginning to award of Authority to Operate (ATO) and must also have a thorough understanding of the Enterprise Mission Assurance Support Service (eMASS) system to include inputting data, maintaining records, and navigating the system.
The ISSO will support the identification of system vulnerabilities and determine appropriate security controls to mitigate or eliminate risk from the uncovered vulnerabilities. The ISSO will be responsible for preparing artifacts and documents to support government Authorization to Operate (ATO) activities. Additionally, the ISSO will conduct and/or support vulnerability and security compliance assessments using applicable tools, including ACAS/Nessus, SCAP Compliance Checker (SCC), STIG Viewer, and Evaluate-STIG. The Contractor shall analyze assessment results, document security deficiencies, support remediation activities, and maintain evidence necessary to demonstrate compliance with applicable NIST, DoD, DISA, and Army cybersecurity requirements.
Specific duties and responsibilities include:
Serves as an Information Systems Security Officer and will develop and advise on RMF packages, strategies, and technical components to ensure compliance with NIST 800-53 security controls. Assist in the implementation of the required government policy (i.e., NISPOM, NIST, DoD), and documenting process activities.
Develop security artifacts to support the Information Assurance program to include System Security Plans (SSP), Plan of Action and Milestones (POA&M), System Diagrams, System User Guides, Privileged User Guides, and other documentation as needed.
Perform self-assessments of systems and networks within the environment, using passive evaluation audit tools such as: STIG Viewer, SCAP Compliance Checker (SCC), and active evaluations through ACAS/NESSUS.
Track enterprise reporting and efficiencies through automatic generation of required security compliance reports, integration of security tools, system documentation, and other artifacts utilizing the Enterprise Mission Assurance Support Service.
Track security updates for Windows and Linux-based operating systems, VMWare based products, and associated software applications to ensure compliance.
Periodically conduct a review of system audits, monitor corrective actions until all actions are closed, and identify deficiencies during RMF assessment activities.
Required Qualifications
Bachelor's degree in a related field or 7+ years direct experience.
Minimum 5 years of experience in cybersecurity/Information Assurance, with demonstrated RMF/ISSO experience.
Demonstrated experience with DoD RMF and obtaining and maintaining ATOs.
Demonstrated hands-on experience with eMASS.
Experience conducting vulnerability and STIG/compliance scans using ACAS/Nessus, SCC, STIG Viewer, Evaluate-STIG, or equivalent tools.
Working knowledge of NIST SP 800-53 and DoD cybersecurity policies.
DoD 8570/8140-compliant IAT Level II certification (Security+ CE or higher).
Active DoD Secret clearance with the ability to obtain a Top Secret clearance
Superior attention to detail and organizational skills.
Excellent communications skills.
US Citizenship
Strong analytical and problem-solving skills
Desired Qualifications
Prior official assignment as an ISSO or ISSM
Prior experience serving as an ISSO supporting DoD or Army systems.
Top Secret/SCI security clearance.
Experience supporting classified and/or multi-level security environments.
Experience with Windows, Linux, VMware, and system security/hardening.
Desired Certifications: CISSP, SecurityX / CASP+, CySA+, or other applicable cybersecurity certifications.
Overview
Overview
Noblis and our wholly owned subsidiaries, Noblis ESI and Noblis MSD, take on some of the nation's toughest challenges, delivering advanced solutions to our customers' most critical missions. We bring together leading scientific, engineering, and management expertise in a culture grounded in objectivity and collaboration, ensuring our work creates lasting impact across federal missions.
We work with a broad range of government agencies in the defense, intelligence, and federal civilian sectors. Learn more and find opportunities at
careers.noblis.org
Why Work at Noblis
At Noblis, we share a passion for excellence and innovation, and we create an environment where people can do meaningful work while maintaining the balance that keeps them energized and fulfilled. We seek out individuals with a natural curiosity and desire to collaborate and learn. We believe our people are our greatest strength, and we consistently seek exceptionally skilled, mission‑driven professionals who care deeply about doing work that enriches lives and makes our nation safer.
Noblis has earned numerous
workplace awards
for our culture, our commitment to employee well‑being, and our dedication to meaningful, impactful work. We also maintain a drug‑free workplace.
Remote/hybrid status is subject to change based on Noblis and/or government requirements.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to race, color, ethnicity, sex, age, national origin, religion, physical or mental disability, pregnancy/childbirth and related medical conditions, veteran or military status, or any other characteristics protected by applicable federal, state, or local law.
If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please
contact us
.
EEO is the Law
|
E-Verify
|
Right to Work
Total Rewards
At Noblis we recognize and reward your contributions, provide you with growth opportunities, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, and work-life programs. Our award programs acknowledge employees for exceptional performance and superior demonstration of our service standards. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in our benefit programs. Other offerings may be provided for employees not within this category. We encourage you to learn more about our total benefits by visiting the
Benefits
page on our
Careers
site.
Compensation at Noblis is determined by various factors, including but not limited to, the combination of education, certifications, knowledge, skills, competencies, and experience, internal and external equity, location, clearance level, as well as contract-specific affordability, organizational requirements and applicable employment laws. The projected compensation range for this position is based on full time status. For part time or on-call staff, compensation is proportionately adjusted based on hours worked. While monetary compensation is important, it's just one component of Noblis' total compensation package.
Posted Salary Range
USD $95,500.00 - USD $149,200.00 /Yr.
Noblis is hiring an ISSO in Huntsville, AL to supporting the Threat Management Office (TSMO). The mission of the Threat Systems Management Office (TSMO) is to manage the Army Threat System Programs to include the total life cycle of threat systems for testing and training in the live, virtual, and constructive environments. TSMO designs, builds and tests representations of operational and emerging hostile systems with virtually identical p
Requirements
Bachelor's degree in a related field or 7+ years direct experience.
Minimum 5 years of experience in cybersecurity/Information Assurance, with demonstrated RMF/ISSO experience.
Demonstrated experience with DoD RMF and obtaining and maintaining ATOs.
Demonstrated hands-on experience with eMASS.
Experience conducting vulnerability and STIG/compliance scans using ACAS/Nessus, SCC, STIG Viewer, Evaluate-STIG, or equivalent tools.
Working knowledge of NIST SP 800-53 and DoD cybersecurity policies.
DoD 8570/8140-compliant IAT Level II certification (Security+ CE or higher).
Active DoD Secret clearance with the ability to obtain a Top Secret clearance
Superior attention to detail and organizational skills.
Excellent communications skills.
US Citizenship
Strong analytical and problem-solving skills
Newest government jobs in Alabama
- Senior Program Manager (Active Top Secret Clearance with SCI eligibility) — NANA Regional Corporation (Akima family)
- Cybersecurity Analyst — Radiance Technologies
- Administrative Operations Intern — Radiance Technologies
- Channel Sales Executive (AL) — Motorola Solutions
- Cook (7964) — The Salvation Army - USA Southern Territory
- Resident Monitor — The Salvation Army - USA Southern Territory
- Project SHARE Coordinator — The Salvation Army - USA Southern Territory
- Store Clerk & Sorting Room Worker — The Salvation Army - USA Southern Territory