Information Systems Security Officer
Mantech International Corporation
Chantilly, United States of America
5 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
EnglishJob location
Chantilly, United States of America
Tech stack
Configuration Management
Complex Networks
Computer Security
Information Systems Security Architecture Professional
Network Security
Network Diagrams
Data Streaming
Information Technology
Cyber Warfare
Vulnerability Analysis
Job description
- Creating, updating, maintaining, and interpreting required Body of Evidence (BOE) documentation
- Working with management, internal teams, and Sponsor's authorities to successfully navigate the Sponsor's accreditation process for all systems
- Documenting responses to required controls and updating as necessary while maintaining a robust library of documentation, to include network diagrams for cyber defense capabilities and sensors, and making documentation available to all personnel with appropriate need-to-know
- Maintaining, updating, and conducting routine vulnerability scanning across all Sponsor networks
- Maintaining system baselines and configuration management items, including security event monitoring policies
- Working with all stakeholders to ensure complete and functioning systems that meet all requirements
- Recommending, and when approved, implementing process and policy improvements
Requirements
- High School Diploma/GED with 15+ years of progressively responsible experience in Information Systems Security
- Significant experience navigating the Sponsor's accreditation process and ICD 503 requirements, especially as it relates to creating A&A Body of Evidence (BOE) documentation
- Significant experience meeting security requirements in the Sponsor's environment or similar environments
- Experience working across a large team to drive a security agenda and working with complex, intertwined systems and data flows
- Experience inventorying complex networks, and with network documentation (security compliance, configuration management, patching, centralized authentication, removable media, etc.)
- Experience creating, maintaining, and communicating complex information technology documentation, particularly network and security documentation
Preferred Qualifications:
- Certified Information Systems Security Professional (CISSP certification)
- Experience with the Sponsor's primary cyber risk and compliance automation tools
- Self-starter with excellent people skills - able to work across teams, organize meetings/boards, and drive change throughout an organization
Clearance Requirements:
- An active/current TS/SCI with Polygraph is required for this position.
Physical Requirements:
- Must be able to remain in a stationary position 50%
- Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
- Frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations