Information Systems Security Officer (ISSO) (Engineer Info Assur
Role details
Job location
Tech stack
Job description
HII - Mission Technologies is seeking an Information Systems Security Officer (ISSO) to support the 325th Weapons Squadron, located at Whiteman Air Force Base, Missouri., * Draft, review, and update Risk Management Framework (RMF) artifacts required for achieving an Authority to Operate (ATO) for emerging systems.
- Develop and maintain the System Control Traceability Matrix (SCTM) and System Security Plan (SSP), manage system changes, support Assessment & Authorization (A&A) documentation, and assess the security impact of modifications.
- Write System Security Plans (SSP), Plan of Actions & Milestones (POA&M), Continuous Monitoring Plan, Risk Assessments, Privacy Impact Analyses (PIA), and supporting documentation for systems subject to NIST SP 800-53
- Lead Security Assessment and Authorization processes and procedures
- Report all cybersecurity incidents to the program Information Systems Security Managers (ISSM) through reports and briefings
- Provide support for implementing and enforcing information systems security policies, standards, and methodologies.
- Assist in the evaluation of security solutions to ensure they meet security requirements for processing classified information.
- Maintain records on workstations, servers, routers, firewalls, intelligent hubs, network switches, etc. to include system upgrades.
- Evaluate security solutions to ensure they meet security requirements for processing classified information.
- Provide support to the Information System Security Manager (ISSM) for maintaining the appropriate operational IA posture for a system, program, or enclave.
Requirements
- 5 years relevant experience with Bachelors in related field; 3 years relevant experience with Masters in related field; 0 years experience with PhD or Juris Doctorate in related field; or High School Diploma or equivalent and 9 years relevant experience
- Active TS/SCI DoD clearance.
- Strong understanding and experience with the Risk Management Framework, JSIG, RMF Bodies of Evidence
- Excellent oral and written communication skills, collaboration skills, and experience in presenting cybersecurity issues to all levels of management, as well as non-technical staff
- Strong work ethic, demonstrated self-starter with the ability to work in a fast paced, team-oriented environment
Preferred Experience:
- Bachelor's Degree in either Computer Science, Information Systems Management, Information Technology, and five (5) years of relevant experience, as described below. In absence of a degree, nine (9) relevant experience as described below.
- Strong understanding and experience with the Risk Management Framework, JSIG, RMF Bodies of Evidence
- Five (5) years of experience with any combination of the following: cybersecurity, network security architecture, system hardening, auditing/compliance methods, Information Technology, and/or systems security engineering concepts such as topology, protocols, components, and/or principles (e.g., application of defense-in-depth).
- Experience supporting cybersecurity compliance as stipulated by NISPOM/DAAPM, JSIG, ICD 503, STIGs and associated NIST publications
- Excellent oral and written communication skills, collaboration skills, and experience in presenting cybersecurity issues to all levels of management, as well as non-technical staff
- Strong work ethic, demonstrated self-starter with the ability to work in a fast paced, team-oriented environment
Benefits & conditions
HII is more than a job - it's an opportunity to build a new future. We offer competitive benefits such as best-in-class medical, dental and vision plan choices; wellness resources; employee assistance programs; Savings Plan Options (401(k)); financial planning tools, life insurance; employee discounts; paid holidays and paid time off; tuition reimbursement; as well as early childhood and post-secondary education scholarships. Bonus/other non-recurrent compensation is occasionally offered for qualified positions, and if applicable to this role will be addressed by the recruiter at the screening phase of application.