1

Analyst Isso Jobs in Tennessee (NOW HIRING)

Marathon TS is hiring for a Local Defender (ISSO/SOC/Threat Analyst) in Kingsport, TN. The role involves ensuring compliance with security control baselines and managing RMF-related documentation ...

Analyst Isso information

What is an analyst ISSO?

Analyst ISSOs, or Information System Security Officers, are professionals responsible for ensuring the security of an organization’s information systems. They analyze, implement, and monitor cybersecurity measures to protect sensitive data and ensure compliance with governmental and industry regulations. Their duties often include conducting risk assessments, developing security policies, and responding to security incidents. Analyst ISSOs play a crucial role in maintaining the confidentiality, integrity, and availability of information systems.

What skills and qualifications are needed to be an analyst ISSO?

To thrive as an Analyst ISSO (Information System Security Officer), a strong background in cybersecurity principles, risk assessment, and compliance frameworks such as NIST or ISO is essential, typically supported by a degree in IT or cybersecurity and relevant certifications like CISSP or Security+. Familiarity with security management tools, vulnerability scanning software, and incident response systems is commonly required. Exceptional analytical thinking, attention to detail, and clear communication skills help in effectively managing security policies and collaborating with cross-functional teams. These skills and qualifications are vital to ensure information systems remain secure, compliant, and resilient against evolving cyber threats.

What challenges does an analyst ISSO face when ensuring compliance with security frameworks?

Analyst ISSOs (Information System Security Officers) often encounter challenges such as keeping up-to-date with evolving cybersecurity regulations and ensuring that all technical and administrative controls are properly documented and implemented. Coordinating with diverse teams, from IT to management, to align security practices and resolve vulnerabilities can be demanding, especially in fast-changing environments. Additionally, balancing strict compliance requirements with operational realities requires strong organizational and communication skills. Despite these challenges, the role offers valuable experience in risk management and is a solid foundation for career advancement in cybersecurity.

What is the difference between Analyst Isso vs Data Analyst?

AspectAnalyst IssoData Analyst
Required CredentialsBachelor's degree in IT, Computer Science, or related field; certifications like SQL, TableauBachelor's degree in Statistics, Mathematics, or related; certifications like Excel, SQL, Tableau
Work EnvironmentTech companies, IT departments, data-driven organizationsBusiness, finance, marketing, healthcare sectors
Employer & Industry UsagePrimarily in tech and IT industriesAcross various industries including finance, marketing, healthcare
Common Search & ComparisonYesYes

Analyst Isso and Data Analyst share similar educational backgrounds and certifications, often working in data-centric environments. However, Analyst Isso typically focuses more on IT systems and infrastructure analysis, while Data Analysts concentrate on interpreting data to inform business decisions. Both roles are essential in their respective fields and often overlap in skills and tools used.

What are popular job titles related to Analyst Isso jobs in Tennessee?

For Analyst Isso jobs in Tennessee, the most frequently searched job titles are:

Cybersecurity Lead / Information System Security Officer (ISSO)

Connexus Hub

Millington, TN • Hybrid

Full-time

This job post has expired 2 days ago. Applications are no longer accepted.


Job description

  • Location: Hybrid / Remote with travel to CNIC HQ (Millington, TN) and field installations
  • Eligibility: U.S. citizenship; ability to obtain and maintain the appropriate background investigation level
  • Status: Full-time, contingent on contract award


Position summary

The Cybersecurity Lead / ISSO is the senior security accountable for every change touching CNIC F&FR's connected environment. You will treat each network, application, or configuration change as a potential RMF event, evaluate impact against ATO boundaries before implementation, run the coordinated change package process with pre-approved POA&Ms, and ensure no installation is out of compliance for more than 24 hours. You will participate as a voting member of the weekly Joint Change Advisory Board.


What you will own

  • RMF treatment of all changes - impact analysis against ATO boundaries, security control baselines, and continuous monitoring requirements.
  • POA&M development, tracking, and closure across distributed installations.
  • Coordinated change packages for cross-domain releases (e.g., concurrent ERP patch + POS firmware refresh) with staged rollout against the F&FR maintenance calendar.
  • ATO renewal coordination with Authorizing Officials and CNIC cybersecurity stakeholders.
  • Security control testing and audit-trail integrity during patch windows.
  • Cybersecurity workforce: ISSO support, cybersecurity analysts, compliance specialists.
  • Standing voting seat on the Joint Change Advisory Board (JCAB).


Required qualifications

  • Active CISSP certification.
  • CASP+ or equivalent advanced security certification.
  • DoD 8140 / 8570 IAT Level 2 baseline certification (Security+ or equivalent) - required for privileged access per RFP C-12.2.
  • 10+ years RMF practitioner experience in DoD environments.
  • Direct experience as an ISSO on a system with an active ATO.
  • Demonstrated experience evaluating change impact against ATO boundaries on enterprise IT environments.
  • Working knowledge of NIST SP 800-53 controls, eMASS, and DoD continuous monitoring requirements.
  • U.S. citizenship; ability to obtain and maintain the appropriate background investigation level.


Preferred qualifications

  • Active or recent Secret clearance (likely required at the task order level for systems touching DoD-connected networks).
  • Prior ISSO experience on a NAF or Navy connected system.
  • CISM, CISA, or Security+ instructor-level credentials.
  • Experience with cloud security control inheritance (FedRAMP, DISA SRG IL2/IL4).