Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Information System Security Officer (ISSO)

Tria Federal
CompanyTria Federal
CategorySecurity
LocationWashington D.C.
RemoteOn-site (inferred)
EmploymentNot stated
LevelNot stated
SalaryNot stated by the employer
Posted31 Jul 2026
Last verified9 Aug 2026
SourceEmployer ATS (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
 Who we are: Tria Federal delivers digital services and technology solutions that support the health and safety of veterans, service members and civilians. For two decades, federal agencies have relied on Tria companies to advance their critical missions and modernize their systems, so that they can uphold their commitment to the American people. Today, we are pushing the boundaries of possibility through partnerships and investments in artificial intelligence and emerging technologies, developing solutions for the biggest challenges that government will face tomorrow. We are proud to employ and support military veterans who bring mission-first mindset, technical expertise, and leadership qualities that strengthen our work. Veterans, transitioning service members, and military spouses are strongly encouraged to apply.     Job Description:  Tria Federal (Tria) is seeking a motivated and detail-oriented Information System Security Officer (ISSO) to join our team. The ISSO research, develops, implements, tests, and reviews an organization’s information security to protect information and prevent unauthorized access. Emphasis on knowledge of infrastructure devices (i.e. firewalls, routers, switches) Requirements:   DHS Public Trust 3-5 years Cybersecurity experience   Working knowledge and  experience with  CSAM  and  the NIST  RMF   Solid k nowledge of the process to obtain a system ATO and requirements to maintain the ATO   Expe rience working with system stakeholders to assess and manage system cybersecurity risk   Ability to synthesize complex  IT system  information and communicate  system status and requirements  in written products and verbal presentations   Ability to write clear, concise and effective security control implementation statements   Familiarity with configuration settings and vulnerability management analysis of infrastructure devices   Ability to draft a complete ATO package, to include the SSP   Ability to work independently , and efficiently, with minimal direct supervision,  and within given timelines   Security+ Certification CSAM GRC Tool DHS Experience Qualifications:  BS in Computer Science, Information Technology, or related field CISSP, Security+, CGRC (formerly CAP), CISM Responsibilities:  Conduct initial Security Assessment and obtain system Authorization to Operate (ATO), in line with NIST SP 800-37 Rev. 2.   Maintain the Security Authorization or ATO of assigned system(s)   Continuously update all Security Authorization documentation to maintain assigned system’s ATO or system  go-live  dates .   Select the baseline security controls for the IT system, using  the  CSAM   Governance, Risk, and Compliance (GRC) Tool , and tailor  controls  where appropriate.   Document all relevant NIST 800-53 Security Controls for assigned IT systems  in the System Security Plan  (SSP) .   Perform and document initial and annual risk  self- assessments of all systems  assigned   Develop and document all supporting Security A&A artifacts ( i.e.,  P T A, S S P, ITCP, BIA, CMP, MOU, ISA) .   Produce Security Authorization package for Authorizing Official (AO) signature including ATO   Track the deployment of software to the environment that is not part of the base image.   Conduct security impact analyses of proposed changes , provide recommendations.   Ability to analyze configuration settings, implementation of STIGs , and conducting manual checklists.   Generate  and manage  P