Information Systems Security Officer 2

ItezzAnnapolis Junction, MD

About The Position

This position provides support for a program, organization, system, or enclave’s information assurance program. The role involves proposing, coordinating, implementing, and enforcing information systems security policies, standards, and methodologies. The officer will maintain the operational security posture for information systems, manage security aspects, and perform day-to-day security operations. Key tasks include evaluating security solutions, performing vulnerability/risk assessment analysis for certification and accreditation, and providing configuration management for security software, hardware, and firmware. The role also entails managing system changes, assessing their security impact, and preparing documentation such as System Security Plans (SSPs), Risk Assessment Reports, C&A packages, and SRTMs. Compliance with National Institute of Standards and Technology Risk Management Framework (NIST RMF) is essential. United States Citizenship and an appropriate security clearance (e.g., Active TS/SCI with customer appropriate polygraph) are required due to federal contract requirements.

Requirements

  • United States Citizenship
  • Position appropriate security clearance (e.g. Active TS/SCI security clearance with customer appropriate polygraph)
  • TS/SCI with Agency Appropriate Polygraph
  • Bachelor’s degree in Computer Science or related discipline from an accredited college or university (Five (5) years of additional experience as an ISSO may be substituted for a bachelor’s degree)
  • DoD 8570 compliance with Information Assurance Management (IAM) Level I
  • Ten (10) years experience as an ISSO on programs and contracts of similar scope, type, and complexity
  • Two (2) of those years must include experience in at least two (2) of the following: knowledge of current security tools, hardware/software security implementation, communication protocols, encryption techniques/tools

Responsibilities

  • Provide support for a program, organization, system, or enclave’s information assurance program
  • Provide support for proposing, coordinating, implementing, and enforcing information systems security policies, standards, and methodologies
  • Maintain operational security posture for an information system or program to ensure information systems security policies, standards, and procedures are established and followed
  • Assist with the management of security aspects of the information system and perform day-to-day security operations of the system
  • Evaluate security solutions to ensure they meet security requirements for processing classified information
  • Perform vulnerability/risk assessment analysis to support certification and accreditation
  • Provide configuration management (CM) for information system security software, hardware, and firmware
  • Manage changes to system and assesses the security impact of those changes
  • Prepare and review documentation to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements Traceability Matrices (SRTMs)
  • Support security authorization activities in compliance with National Institute of Standards and Technology Risk Management Framework (NIST RMF)
  • Provide support to senior ISSOs for implementing, and enforcing information systems security policies, standards, and methodologies
  • Maintain records on workstations, servers, routers, firewalls, intelligent hubs, network switches, etc. to include system upgrades
  • Develop and maintain documentation for C&A in accordance with ODNI and DoD policies
  • Develop system security policy and ensures compliance
  • Provide support to the Information System Security Manager (ISSM) for maintaining the appropriate operational Cybersecurity posture for a system, program, or enclave
  • Develop and update the system security plan and other Cybersecurity documentation
  • Administer the user identification and authentication mechanism of the Information System (IS)
  • Prepare and maintain documentation
  • Perform CM of information system security software, hardware, and firmware
  • Propose, coordinate, and implement, information systems security policies, standards, and methodologies and ensure they are followed
  • Obtain C&A for ISs under their purview
  • Plan and coordinate the IT security programs and policies
  • Manage and control changes to the system and assessing the security impact of those changes

Benefits

  • Company automatically contributes an additional 10% of each employee's gross compensation to the company SEP IRA plan, with no requirement for employee matching
  • All contributions are fully vested from day one
  • A Choice of CareFirst BlueChoice Medical Plans, some with Health Savings Account (HSA)
  • CareFirst Preferred Dental
  • CareFirst BlueVision
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service