Booz Allen Hamilton-posted 8 days ago
Full-time • Mid Level
McLean, VA
1-10 employees

Information System Security Officer The Opportunity: We’re looking for an Information System Security Officer ( ISSO ) responsible for assessing and requesting client authorization for company-managed classified endpoints, servers, networks, and security appliances. This involves applying evolving U.S. Government cybersecurity policy and guidance. The ISSO ensures system, network, and security appliance auditing, vi rus scanning, and hardware and sof tware configuration management requirements are executed as defined in client-approved system assessment documentation and policy . Additionally, the ISSO monitors the activities of program system administrators to ensure all relevant security procedures are followed. The role also includes documenting clear and concise compliance criteria and test cases required to validate compliance with an evolving baseline of cybersecurity requirements and guidance from the National Institute of Standards and Technology ( NIST ) , the Intelligence Community, and the DoD. Join us. The world can’t wait.

  • assessing and requesting client authorization for company-managed classified endpoints, servers, networks, and security appliances
  • applying evolving U.S. Government cybersecurity policy and guidance
  • ensuring system, network, and security appliance auditing, vi rus scanning, and hardware and sof tware configuration management requirements are executed as defined in client-approved system assessment documentation and policy
  • monitoring the activities of program system administrators to ensure all relevant security procedures are followed
  • documenting clear and concise compliance criteria and test cases required to validate compliance with an evolving baseline of cybersecurity requirements and guidance from the National Institute of Standards and Technology ( NIST ) , the Intelligence Community, and the DoD
  • Experience applying security systems concepts, requirements, design development, implementation, and integration to information systems
  • Knowledge of Risk Management Framework ( RMF ) , performing system assessment and authorization through a Governance, Risk, and Compliance ( GRC ) tool
  • Knowledge of risk mitigation and selecting and designing appropriate security controls for implementation
  • Knowledge of incident response and data loss prevention, detection, and response
  • Knowledge of the NIST and Federal Information Security Management Act ( FISMA ) requirements for monitoring and reporting
  • TS/SCI clearance with a polygraph
  • HS diploma or GED
  • DoD 8570 IAM II Certification
  • Experience executing the analysis, design, and implementation of enterprise cybersecurity solutions
  • Experience maintaining vulnerability scanning tool compliance and patch management, including ensuring IT staff pushes patches to all systems, maintains compliance with directives, manages changes to the system, and assesses the security impact of the changes
  • Experience engineering and implementing security-based solutions to further automate and improve the comprehensive security posture of systems and their supporting infrastructure
  • Possession of excellent written and verbal communication skills
  • DoD 8570 Certification such as CISSP, CISSP-ISSAP, or CISSP-ISSEP Certification
  • health
  • life
  • disability
  • financial
  • retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service