Information System Security Officer

Booz Allen HamiltonMcLean, VA
$62,000 - $141,000

About The Position

We re looking for an Information System Security Officer (ISSO) responsible for assessing and requesting customer authorization for company-managed classified endpoints, servers, networks, and security appliances. This involves applying evolving U.S. Government cybersecurity policy and guidance. The ISSO ensures system, network, and security appliance auditing, virus scanning, and hardware and software configuration management requirements are executed as defined in customer-approved system assessment documentation and policy. Additionally, the ISSO monitors the activities of program system administrators to ensure all relevant security procedures are followed. The role also includes documenting clear and concise compliance criteria and test cases required to validate compliance with an evolving baseline of cybersecurity requirements and guidance from the National Institute of Standards and Technology (NIST), the Intelligence Community, and the DoD.

Requirements

  • Experience applying security systems concepts, requirements, design development, implementation, and integration to information systems
  • Knowledge of Risk Management Framework (RMF), performing system assessment and authorization through a Governance, Risk, and Compliance (GRC) tool
  • Knowledge of risk mitigation and selecting and designing security controls for implementation
  • Knowledge of incident response and data loss prevention, detection, and response
  • Knowledge of the NIST and Federal Information Security Management Act (FISMA) requirements for monitoring and reporting
  • TS/SCI clearance with a polygraph
  • HS diploma or GED
  • DoD 8570 IAM Level II Certification

Nice To Haves

  • Experience executing the analysis, design, and implementation of enterprise cybersecurity solutions
  • Experience maintaining vulnerability scanning tool compliance and patch management, including ensuring IT staff pushes patches to all systems, maintaining compliance with directives, managing changes to the system, and assessing the security impact of the changes
  • Experience engineering and implementing security-based solutions to further automate and improve the comprehensive security posture of systems and their supporting infrastructure
  • Possession of excellent written and verbal communication skills
  • DoD 8570 Certification such as CISSP, CISSP-ISSAP, or CISSP-ISSEP Certification

Responsibilities

  • Assessing and requesting customer authorization for company-managed classified endpoints, servers, networks, and security appliances
  • Applying evolving U.S. Government cybersecurity policy and guidance
  • Ensuring system, network, and security appliance auditing, virus scanning, and hardware and software configuration management requirements are executed as defined in customer-approved system assessment documentation and policy
  • Monitoring the activities of program system administrators to ensure all relevant security procedures are followed
  • Documenting clear and concise compliance criteria and test cases required to validate compliance with an evolving baseline of cybersecurity requirements and guidance from the National Institute of Standards and Technology (NIST), the Intelligence Community, and the DoD

Benefits

  • health benefits
  • life benefits
  • disability benefits
  • financial benefits
  • retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

High school or GED

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service