E&M Technologies Inc Logo

E&M Technologies Inc

Information Systems Security Officer

Posted 4 Days Ago
Be an Early Applicant
In-Office
Colorado Springs, CO, USA
105K-120K
Senior level
In-Office
Colorado Springs, CO, USA
105K-120K
Senior level
Maintain cybersecurity compliance for mission-critical defense systems by applying DoD RMF and NIST controls, supporting Assessment and Authorization activities, and maintaining Authorization to Operate documentation. Conduct threat, vulnerability, and security-control assessments for Secret systems; manage eMASS records, vulnerabilities, POA&Ms, and compliance reporting. Collaborate with government, suppliers, and internal stakeholders to implement risk mitigations and secure system environments.
The summary above was generated by AI

Description


POSITION: Information Systems Security Officer 

WORK LOCATION: Colorado Springs, CO 

JOB CATEGORY: Information Technology 

JOB TYPE: Full Time 

REQUISITION ID: EM09-199 

CITIZENSHIP: United States Citizen 

CLEARANCE TYPE: Secret  

TRAVEL REQUIREMENTS: Up to 10% 

E&M Technologies, Inc. is dedicated to recruiting and developing diverse, high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers’ mission and quest for professional growth. E&M provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our culture is an unwavering focus on values, dedication to our communities, and commitment to excellence in everything we do. 

E&M Technologies, Inc. is currently seeking an Information Systems Security Officer to join our team in Colorado Springs, CO in support of the North American Aerospace Defense Command. NORAD is a United States and Canada bi-national organization charged with the missions of aerospace warning, aerospace control and maritime warning for North America. Aerospace warning includes the detection, validation, and warning of attack against North America whether by aircraft, missiles, or space vehicles, through mutual support arrangements with other commands.  

Job Description: 

  • Play a key role in ensuring the cybersecurity posture of mission-critical systems within the NISSC II portfolio.  
  • Have responsibility for maintaining compliance with Risk Management Framework (RMF) requirements and supporting Assessment and Authorization (A&A) efforts to ensure systems maintain an active Authorization to Operate (ATO).  
  • Perform security analyses of threats, vulnerabilities, and system environments while collaborating with government, supplier, and internal stakeholders to implement security measures that safeguard mission systems. 

Requirements


Minimum Qualifications:  

  • Must have 5 or more years of general work experience 
  • Must have 5 years or more of directly related experience  
  • Experience applying Risk Management Framework (RMF) processes and principles in compliance with National Institute of Standards and Technology (NIST) Special Publication (SP) 800 series. 
  • Experience in developing and/or contributing to the RMF Body of Evidence, including creation and maintenance of applicable artifacts and documentation for security control implementation and assessment. 
  • Experience performing NIST SP 800-53 control assessments for Secret systems, including assessment of technical, operational, and management security controls. 
  • Experience utilizing Department of Defense RMF tools eMASS to document assessment results, track vulnerabilities, manage POA&Ms, and report compliance status. 
  • Must meet the requirements outlined in DoDM 8140 in the Information System Security Manager role (722)  
  • Must be a U.S. Citizen 
  • Must have and be capable of maintaining a U.S. Department of Defense (DOD) security clearance at the required level 

Preferred Qualifications:  

  • Ability to perform continuous assessments of systems and network security measures to identify potential risks, vulnerabilities, and threats. 
  • Expertise in developing effective risk prevention strategies and mitigation plans to protect organizational assets. 
  • In-depth experience with the implementation of RMF processes in compliance with applicable DoD and industry cybersecurity policies and standards. 
  • Ability to interpret and apply cybersecurity policies to operational systems and provide informed recommendations. 
  • Proficient in utilizing security-relevant tools such as Assured Compliance Assessment Solution (ACAS) and Endpoint Security Solution (ESS) to identify vulnerabilities, assess risks, and recommend actionable mitigations. 
  • Practical experience using Security Content Automation Protocol (SCAP) tools to analyze system configurations and check compliance with DoD Security Technical Implementation Guides (STIGs). 
  • Familiarity with best practices for secure system architectures, vulnerability management, and incident response. 
  • Ability to foster and promote a proactive cybersecurity culture within the organization through awareness and adherence to security principles. 
  • Strong interpersonal and communication skills, with the ability to collaborate effectively with cross-functional teams, customers, and third-party vendors. 
  • Ability to present complex cybersecurity concepts and issues in a clear, concise manner to both technical and non-technical audiences. 

To Apply for this Position: 

You must have the Minimum Qualifications in your resume to be selected as a candidate.    

The salary range provided is a good faith estimate representative of all experience levels. E&M considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate’s work experience, location, education/training, and key skills.    

Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.    

This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.?   

E&M anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require E&M to shorten or extend the application window.?   

E&M is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. E&M provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans’ Readjustment Assistance Act. 

As part of the federal government’s transition to the Trusted Workforce 2.0 Continuous Vetting framework, the Defense Counterintelligence and Security Agency (DCSA) is expanding enrollment in the FBI Rap Back program for cleared industry personnel beginning April 1, 2026. 

Rap Back (Record of Arrest and Prosecution Back) is a service provided by the FBI that allows authorized agencies to receive notifications if there are updates to an individual’s criminal history record while they hold a security clearance. This supports continuous vetting of cleared personnel. 

Per DCSA guidance, we are required to provide the following FBI privacy advisements to all cleared employees: 

FBI Privacy Act Notice 

https://www.fbi.gov/how-we-can-help-you/more-fbi-services-and-information/compact-council/privacy-act-statement  

Noncriminal Justice Applicant’s Privacy Rights 

https://www.fbi.gov/how-we-can-help-you/more-fbi-services-and-information/compact-council/guiding-principles-noncriminal-justice-applicants-privacy-rights 

HQ

E&M Technologies Inc Colorado Springs, Colorado, USA Office

Colorado Springs, CO, United States

Similar Jobs

10 Days Ago
In-Office
Denver, CO, USA
115K-160K Annually
Senior level
115K-160K Annually
Senior level
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense • Manufacturing
Oversee the security posture of classified information systems and develop RMF authorization documentation, including SSPs, POA&Ms, control traceability matrices, inventories, and network diagrams. Implement security policies aligned with government standards, guide program personnel, coordinate secure configurations and patching, support change control, conduct vulnerability and risk assessments, and assist with continuous monitoring and certification activities. The role is fully onsite in Denver and requires U.S. citizenship plus TS/SCI eligibility.
Top Skills: Change Control Board (Ccb)DaapmIcd-503ItarJsigNispomNist 800-53Plan Of Actions And Milestones (Poa&M)Risk Management Framework (Rmf)Security Control Traceability Matrix (Sctm)Security Technical Implementation Guidelines (Stigs)Systems Security Plan (Ssp)
Yesterday
In-Office
80914, Colorado Springs, CO, USA
110K-132K Annually
Mid level
110K-132K Annually
Mid level
Aerospace
Maintains the operational security posture of DoD information systems supporting Collateral, SCI, and SAP environments. Responsibilities include managing authorization packages, reviewing system changes, monitoring security controls and audit records, conducting vulnerability and self-inspection activities, coordinating incident recovery, maintaining security documentation, and supporting ISSM and customer requirements. The role requires current Top Secret clearance with SCI eligibility, SAP eligibility, and willingness to undergo a counterintelligence polygraph.
Top Skills: Audit LoggingComputer NetworkingConfiguration ManagementFirmwareOperating Systems
Yesterday
In-Office
Aurora, CO, USA
75K-158K Annually
Mid level
75K-158K Annually
Mid level
Information Technology • Consulting • Defense
Supports the ISSM in managing cybersecurity authorization boundaries, RMF and ATO packages, security controls, continuous monitoring, vulnerability assessments, and risk mitigation. Reviews technical changes and provides security oversight for AWS and Azure cloud environments. Maintains SSPs, POA&Ms, inventories, diagrams, compliance documentation, and assessment evidence while collaborating with developers, systems engineers, and government stakeholders. Briefs technical risks and monitors cybersecurity posture, patch effectiveness, and system health.
Top Skills: Amazon CloudwatchAmazon GuarddutyAmazon InspectorAnchoreAuthority To Operate (Ato)AWSAws BackupAws CloudtrailAws ConfigAws Security HubAws Systems ManagerAzureCcna SecurityNessusNist Sp 800-171Nist Sp 800-53Risk Management Framework (Rmf)Security+ServicenowSplunkSscpXacta

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account