nInformation System Security Officer
Role details
Job location
Tech stack
Job description
The Information System Security Officer (ISSO) will be responsible for supporting our Classified Information System Cybersecurity/information Assurance Program. You will report to the Information System Security Manager (ISSM) on all aspects of classified information system security compliance.\n, * Assisting in the Risk Management Framework (RMF) authorization process by developing and maintaining artifacts for the IS Body of Evidence (BoE).\n
- Reviewing and approving Configuration Management (CM) requests, within delegated authority, for all related hardware, software, and security-relevant functions, ensuring proper documentation and maintenance throughout the CCB approval process\n
- Assisting with sanitization and release of hardware in accordance with security policies or Authorizing Official (AO) guidance.\n
- Testing/evaluation and application of required technical security controls and periodic inspections of information systems\n
- Assessing and monitoring system compliance, auditing, security plan development and delivering information systems security education and awareness\n
- Investigating information system security violations and help prepare reports specifying corrective and preventative actions\n
- Conducting technical and administrative assessments\n
- Integrating new cybersecurity processes, procedures, and tools\n
- Support the creation, review and update of cybersecurity documentation and other technical writing\n, * Working with and/or supporting computer technologies (such as: databases, operating systems, computer network hardware, software programs, hardware troubleshooting or electronics)\n
- Physical security, Project or program management, office management, senior administration, or account management\n
- Security configurations across multiple operating systems in various environments, to include Windows, Linux, utilizing Active Directory/Group Policy, Delinea, etc. is required.\n
- Organization and self-motivation with excellent documentation skills and the ability to work with minimal supervision.\n
Requirements
- Bachelor's degree coupled with a minimum of four years' applicable, related experience; Associate with six years' or Master's and two years. Equivalent relevant experience and/or certifications may be considered in lieu of degree.\n
- Must possess CompTIA Security+ CE certification\n
- Currently hold active DoD Secret clearance with ability to obtain Top Secret.\n, * Experience with IT (Windows, Linux) and/or security related certifications (CISSP, CISM, CISA, etc.) is preferred.\n
- Experience working in DoD classified operating and/or laboratory environments\n
- Experience with various information system security tools that address vulnerability analysis and mitigation. These may include SPLUNK, Trellix, SolarWinds, Tenable, SCAP, STIG Viewer.\n
- Familiarity with implementation of Government directives and policies derived from NIST, STIG, DoD, or other Government Regulatory compliance standards within a professional industry\n
- Experience in the execution of the Assessment & Authorization processes, as defined within the Risk Managed Framework (RMF), eMASS\n
- Experience providing technical security consultation for complex, cross-domain, heterogeneous classified networked environments in collaboration with internal/external Customers, Information Technology (IT)\n
- Familiarity with the execution and management of cyber incident response; preservation, containment, and eradication\n
Benefits & conditions
n \nLocation: All work will be performed on-site in our Huntsville, AL office\n \n Clearance:\n \n \nPrimary Responsibilities\n \n The ISSO's primary duties will consist of managing the day-to-day compliance of our classified information systems by:\n \n \n