SAIC-posted 9 months ago
Full-time • Mid Level
Anchorage, AK
Professional, Scientific, and Technical Services

SAIC is seeking an experienced Information System Security Officer (ISSO) to support the cybersecurity of Air Force command and control systems managed by the 611th Air Communications Squadron (611 ACOMS) at Joint Base Elmendorf-Richardson (JBER), Alaska. The Information System Security Officer (ISSO) will ensure systems comply with the RMF 6-step process IAW DoDI 8510.01 and AFI 17-101. The ISSO will determine the required levels of Confidentiality, Integrity, and Availability for the systems under development and select appropriate controls. They will develop RMF artifacts in support of obtaining ATCs, IATTs, and ATOs for 611 ACOMS systems, manage and update System Security Plan and assessment and authorizations packages, and provide any changes to the ISSM or designee. The role includes producing a list of applicable DISA Security Technical Implementation Guides (STIGs) for the system, documenting all findings and decisions for each applicable control, and managing hardware and software lists provided by the system's developer. The ISSO will deliver RMF artifacts to the 611 ACOMS for inclusion in RMF packages, assist the Government/ISSM in reviewing all cybersecurity documents as required for RMF process, and provide recommendations for DISA STIG implementation and risk mitigations. Additionally, the ISSO will assess and provide tactical and strategic management of cybersecurity for systems in the portfolio, maintain open lines of communication with development engineers, provide continuous support in monitoring affected systems after ATO is achieved, perform vulnerability and compliance scans, and coordinate with all 611 ACOMS personnel/contractors to validate that appropriate cybersecurity requirements are applied to systems.

  • Ensure systems comply with the RMF 6-step process IAW DoDI 8510.01 and AFI 17-101.
  • Determine the required levels of Confidentiality, Integrity, and Availability for the systems under development and select appropriate controls.
  • Develop RMF artifacts in support of obtaining ATCs, IATTs, and ATOs for 611 ACOMS systems.
  • Develop, manage, and update System Security Plan and assessment and authorizations packages.
  • Produce list of applicable DISA Security Technical Implementation Guides (STIGs) for the system.
  • Document all findings and decisions for each applicable control.
  • Manage hardware and software lists provided by the system's developer.
  • Deliver RMF artifacts to the 611 ACOMS for inclusion in RMF packages.
  • Assist the Government/ISSM in reviewing all cybersecurity documents as required for RMF process.
  • Provide recommendations for DISA STIG implementation and risk mitigations.
  • Assess and provide tactical and strategic management of cybersecurity for systems in the portfolio.
  • Maintain open lines of communication with development engineers and support personnel.
  • Provide continuous support in monitoring affected systems after ATO is achieved.
  • Perform vulnerability and compliance scans of systems.
  • Assess and verify that cybersecurity requirements are addressed at an acceptable level of risk in architecture specifications.
  • Support and facilitate cybersecurity Integrated Working Group meetings.
  • Coordinate with all 611 ACOMS personnel/contractors to validate that appropriate cybersecurity requirements are applied to systems.
  • DoD 8570.01-M IAM Level II certification (CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO).
  • Experience in applying information systems security principles, concepts, and methods for RMF and project management across IT disciplines and DoD information systems.
  • Experience in applying security principles to all states of system development from requirements development through operational acceptance.
  • Experience in conducting information systems security assessments, evaluating IA and Cybersecurity controls, and conducting and supporting RMF activities.
  • Experience with Operational Air Force systems.
  • Bachelor's degree and nine (9) years experience, Master's and seven (7) or relevant years of experience in lieu of degree.
  • US Citizen and active Secret Clearance.
  • B.S or higher in either Electrical Engineering, Network Engineering, Software Engineering or Computer Sciences earned within the last 20 years.
  • Experience using DoD approved tools (ACAS, SCAP-compliant scanners, eMASS, etc.).
  • 3+ years as an Information System Security Engineer, Officer, or Manager.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service