Information System Security Officer

Idaho National LaboratoryIdaho Falls, ID
$79,344 - $195,288Onsite

About The Position

Ensure the appropriate operational security posture for INL National Security Systems (NSS) is maintained to include ensuring implementation of DOE and INL Site cybersecurity policies, practices, and procedures. Work with NSS owners and the NSS Information System Security Manager (ISSM) and serve as advisor on all matters, technical and otherwise, involving security of the NSS.

Requirements

  • Level 3: Bachelor of Science degree in technical field including Computer Science, Information Technology, Cybersecurity or related field and 5 years of relevant experience; or a Master’s in a technical field and 2 years of relevant experience; or 11 years of relevant experience in lieu of a degree.
  • Level 4: Bachelor of Science degree in technical field including Computer Science, Information Technology, Cybersecurity or related field and 9 years of relevant experience; or a Master’s in a technical field and 6 years of relevant experience; or 15 years of relevant experience in lieu of a degree.
  • Relevant experience commensurate with level.
  • Must be a US Citizen and hold an active DOE “Q” clearance (or DOD/DOJ equivalent)
  • Strong analytical and problem-solving skills.
  • This position includes information security and privacy responsibilities as defined by NIST SP 800 53, OMB Circular A 130, and DOE Order 206.1A.
  • Position must complete initial and annual role-specific training as required.
  • The incumbent must sign and comply with all required access agreements prior to being granted access to organizational systems or data.
  • Comply with all applicable information security and privacy policies and procedures by following established protocols, with an understanding that non-compliance may result in sanctions.

Nice To Haves

  • Relevant certifications: Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Security+
  • Direct experience working in a classified environment

Responsibilities

  • Conduct audits of INL NSS to ensure compliance with, NIST SP 800-53, CNSSI 1253, DISA Security Technical Implementation Guides (STIG), and NNSA Cybersecurity Service Provider (CSSP) subscriber site requirements.
  • Lead and direct the development of NSS accreditation packages (i.e., system security plan, security control assessment, risk assessment, etc.) in accordance with federal directives and the Risk Management Framework (RMF).
  • Identify accreditation boundaries and type of accreditation.
  • Integrate applicable NSS requirements, controls, and processes into design specifications in accordance with DOE established standards, policies, procedures, guidelines, directives, and regulations and laws (statutes).
  • Understand the policies, procedures, and controls required to protect network and telecommunication services and assess technical, operational, and administrative security controls as mandated by RMF standards.
  • Lead others in maintaining change control, ensuring configuration management of the NSS to protect the system and data in accordance with technical, operational, and administrative security control requirements.
  • Perform a variety of data collection, analysis, reporting and briefing activities associated with security operations and maintenance to ensure that the organizational security policies are implemented and maintained on the NSS.
  • Verify cybersecurity awareness training and requirements are current for NSS users based on identified needs and organizational policies and within organizational time frames. Develop NSS training material as needed to support end-user training requirements.
  • Coordinate with the appropriate management and security offices to ensure NSS users have the required security clearances and need-to-know authorizations before accessing information systems. Collect and track required documentation for NSS user accounts.
  • Provide PKI and Trusted Agent (TA) support. Function as PKI advisory and assistance service support to NSS users. Coordinate with Registration Authorities (RA) and other Trusted Agents to accomplish tasks. Submit and respond to tickets for PKI and TA request.
  • Identify, categorize, investigate, isolate, assess, and report NSS cybersecurity incidents in coordination with other organizations. Coordinate with the appropriate security offices to ensure that physical controls are implemented as required.
  • Participate in the creation, review, and assessment of policies and procedures supporting the secure use and operation of INL information systems that includes, but is not limited to, system security plans, vulnerability management, risk management, configuration management, change management, and others.
  • Recommend and implement improvements in cybersecurity controls.
  • Work in collaboration with system owners, Information System Security Engineers (ISSE), and Information System Security Managers (ISSM). Serve as an advisor on all matters, technical and otherwise, involving security of assigned information systems.
  • Establish and maintain communication channels with stakeholders.
  • Review existing and proposed policies with stakeholders.
  • Promote awareness of cyber policy and strategy as appropriate among management and ensure sound principles are reflected in the organization's mission, vision, and goals.
  • Interpret and apply applicable laws, statutes, and regulatory documents and integrate into policy.
  • Support the ISSM in the formulation of classified cyber-related policies.
  • Other duties as assigned.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service