Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
IronArch Technology

ISSO Security Analyst – SSA

IronArch Technology

ISSO Security Analyst supporting Department of Veterans Affairs cybersecurity initiatives. Assisting with Risk Management Framework and Authorization to Operate activities for mission-critical systems.

Posted 7/28/2026full-timeRemote • 🇺🇸 United StatesMid-LevelSenior💰 $100,000 - $114,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Risk Management Framework (RMF) processes, including the development and maintenance of security documentation such as System Security Plans (SSPs) and Security Assessment Reports (SARs). Proficient in ensuring compliance with NIST SP 800-53 security controls and FISMA requirements while managing multiple authorization packages and collaborating with stakeholders.

Highest-signal resume keywords
Risk Management Framework (RMF)Authorization to Operate (ATO)NIST SP 800-53 Security ControlsFISMA ComplianceSecurity Documentation Management

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
System Security Plans (SSPs)Security Assessment Plans (SAPs)Security Assessment Reports (SARs)Plans of Action & Milestones (POA&Ms)Security Impact Analyses (SIAs)Cybersecurity Risk AnalysisDocumentation UpdatesContinuous MonitoringRemediation SupportSecurity Control Implementation
Soft Skills
Strong Organizational SkillsCollaborationCommunication
Tools & Technologies
AI-Assisted ToolsCybersecurity Tools
Certifications & Qualifications
VA Public Trust Clearance
Industry Keywords
CybersecurityFederal Security RequirementsVA Cybersecurity PoliciesComplianceSecurity Reviews

Tech Stack

Tools & technologies
CloudCyber Security

About the role

Key responsibilities & impact
  • Support RMF Steps 0–6 activities for Authorization to Operate (ATO) packages.
  • Assist Information System Owners (ISOs), ISSOs, and system stakeholders throughout the authorization lifecycle.
  • Support compliance with VA cybersecurity policies, FISMA, NIST, and agency authorization requirements.
  • Assist with system authorizations, continuous monitoring, annual assessments, and security reviews.
  • Track authorization milestones, documentation updates, and artifact expiration dates across multiple information systems.
  • Develop, update, and maintain System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action & Milestones (POA&Ms), Security Impact Analyses (SIAs), and other RMF documentation.
  • Document NIST SP 800-53 security control implementations and assist with validating compliance.
  • Analyze authorization documentation to identify gaps and support remediation efforts.
  • Maintain complete, accurate, and audit-ready security documentation throughout the system lifecycle.
  • Assist in identifying cybersecurity risks associated with system implementations, upgrades, and operational environments.
  • Support the development of mitigation strategies in collaboration with technical and business stakeholders.
  • Provide security guidance for system installations, major changes, cloud implementations, and application development efforts.
  • Support presentations of security findings and authorization status to government stakeholders.
  • Support assigned information systems as part of the cybersecurity team.
  • Participate in customer meetings involving RMF, ATO, and security compliance activities.
  • Collaborate with engineers, developers, project managers, system owners, and cybersecurity teams to achieve authorization objectives.
  • Recommend improvements to security documentation and RMF processes.
  • Stay current with evolving VA cybersecurity guidance, NIST publications, and Federal security requirements.

Requirements

What you’ll need
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Electronics Engineering, or a related field with 5+ years of professional Information Technology experience; or 13+ years of professional Information Technology experience in lieu of a degree.
  • Experience supporting Risk Management Framework (RMF) activities and Authorization to Operate (ATO) processes.
  • Experience creating, updating, and maintaining FISMA security documentation and RMF artifacts.
  • Working knowledge of NIST SP 800-53 security controls, Risk Management Framework (RMF), FISMA, and Federal cybersecurity compliance requirements.
  • Experience supporting secure product implementations, system major changes, and development lifecycle security activities.
  • Experience analyzing authorization documentation and supporting remediation efforts.
  • Ability to lead or actively participate in client meetings involving RMF and ATO activities.
  • Strong organizational skills with the ability to manage multiple authorization packages, documentation sets, and project timelines.
  • Ability to obtain and maintain a VA Public Trust Clerance.
  • Experience using AI-assisted tools responsibly to improve cybersecurity documentation, security assessments, risk analysis, and operational efficiency.
  • Familiarity with AI-enabled cybersecurity capabilities while ensuring compliance with federal security and privacy requirements.

Benefits

Comp & perks
  • Competitive compensation and market-leading bonus opportunities
  • Medical, dental and vision benefits where a significant portion of the premium is subsidized by IronArch.
  • For qualifying high deductible health plans, IronArch also contributes towards a Health Reimbursement Account to cover eligible medical expenses
  • Company-provided healthcare concierge assistance to help explain your coverage in plain language; help you find, choose, and schedule quality care; and address billing, benefit, or claims concerns, potentially saving hours of your time
  • 401(k) retirement plan where the company contributes dollar for dollar up to 3 percent, and 50 cents on the dollar for the 4th and 5th percent with immediate entry and immediate vesting
  • 20 days of PTO accumulated per calendar year
  • 11 paid holidays
  • Bereavement, jury duty, parental (maternity/paternity/adoption), and military leaves
  • Sabbatical programs
  • Company-paid short- and long-term disability
  • Company-paid life insurance
  • Voluntary life, accidental and indemnity income replacement benefits
  • Professional development reimbursement
  • Health club reimbursement
  • Matching donation program and annual philanthropic activities
  • Pet insurance
  • And more!