Information System Security Officer (Cybersecurity Technical Staff 2/3)
Role details
Job location
Tech stack
Job description
We are seeking an Information System Security Officer (ISSO) to support both a highly technical Windows/Linux accredited environment and services within Amazon Web Services (AWS) on the Commercial Cloud Enterprise (C2E) platform. The ISSO will contribute to a portfolio of exciting and high-impact national security scientific research.
In this role, you will collaborate with interdisciplinary teams to design secure, high-performance computing solutions that drive world-class scientific outcomes for our stakeholders. The Special Security IT and Cyber Operations group (SSO-3) is an integral part of the Sensitive and Special Operations (SSO) Division at Los Alamos National Laboratory (LANL), focusing on implementation of IT and network technologies for high security environments.
The SSO Division is responsible for the operation of special security facilities at LANL and remote sites, enabling cutting-edge work in Emerging Threats, Energy Security, and Nuclear Threats and Deterrence. Our dedicated teams architect and implement secure computing environments used to tackle the nation's toughest challenges in global and nuclear security.
Cybersecurity Technical Staff 2 $96,000 - $158,000
As a member of the Special Security Cyber Operations Team, your responsibilities will include:
- Assisting the ISSM in development, implementation, and evaluation of the cybersecurity program for classified computing systems within the LANL Field Intelligence Element (FIE).
- Participating in or leading projects that address significant and/or complex cyber issues, working with multi-disciplinary teams to analyze and interpret national cybersecurity requirements in support of scientific research.
- Identifying, developing, and implementing solutions to address cyber threats and vulnerabilities.
- Evaluating and recommending new tools to strengthen the FIE's cybersecurity posture.
- Contributing to security reviews, assessments, security plan development, and related documentation for classified systems.
Cybersecurity Technical Staff 3 $1 $117,200 - 195-400
In addition to what was outlined at the lower level, at this level, candidates will have proven success performing highly technical work in accredited environments or leading cybersecurity related teams to success in accredited environments as outlined in the Minimum Job Requirements for a CTS-3.
- Serving as primary or alternate ISSO for the Department of Energy's Office of Intelligence and Counterintelligence (DOE-IN) for Strategic Partner information systems.
- Implementing the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF), in accordance with Intelligence Community Directive (ICD) 503, the Committee for National Security Systems publications, and NIST Special Publications (SP) 800 series.
- Performing continuous monitoring activities in support of ongoing authorizations and maintaining effective monitoring of security controls. This includes risk assessments, self-assessments, account management, configuration management, vulnerability management, and auditing of information systems.
- Developing and maintaining authorization packages, including System Security Plans (SSPs), Plans of Actions and Milestones (POA&Ms), and Security Assessment Reports (SARs).
- Supporting secure system deployment and operations in AWS Classified Regions (Secret and Top Secret).
Requirements
Do you have experience in Technical writing within technology?, Do you have a Master's degree?, * Proficiency in the implementation of the NIST RMF for national security systems in accordance with all applicable NIST publications, DOE orders, DOE-IN policies, ICDs, and other government agency governing requirements.
- Hands-on experience with AWS Commercial Cloud Enterprise (C2E) environments and AWS security services such as IAM, GuardDuty, CloudTrail, and KMS. Candidates must have prior cyber-related work experience within AWS environments.
- Understanding of distributed systems, architectures, and network protocols.
- Experience developing and maintaining comprehensive authorization packages.
- Strong technical writing abilities and effective stakeholder communication skills., * Secure Systems Integration: Knowledge of cross-domain solutions (CDS), multi-cloud integration, and data flow protections for classified workloads.
- Cybersecurity Governance: Proven experience with DOE, DoD, and/or Intelligence Community (IC) cybersecurity directives and governance processes.
- Leadership and Mentorship: Proven experience mentoring technical staff, leading teams, and managing cybersecurity projects in mission-critical environments.
- Technical Innovation: Demonstrated ability to identify, evaluate, and deploy emerging cybersecurity tools and technologies.
Education/Experience at lower level: Position requires a Bachelor's degree in a technical field and a minimum of 5 years' related experience, or an equivalent combination of education and experience. At this level post graduate work may be expected.
Education/Experience at higher level: Position requires a Bachelor's Degree in a technical field and a minimum of 8 years related experience; or, an equivalent combination of education and experience directly related to the occupation. At this level post graduate work may be expected.
Desired Qualifications:
- Master's Degree in cybersecurity, information assurance, or related technical field.
- Active Q or Top-Secret clearance.
- Active Sensitive Compartmented Information (SCI) access (or ability to obtain).
- DoDD 8570 IAM Level 1, or equivalent certification. Cloud+ preferred.
- Experience in SCI or Special Access Program (SAP) environments.
- Knowledge of DOE/DoD cybersecurity policies., * Eligibility requirements: To obtain a clearance, an individual must be at least 18 years of age; U.S. citizenship is required except in very limited circumstances. See DOE Order 472.2 for additional information.
Benefits & conditions
Pulled from the full job description
- Tuition reimbursement
- Parental leave
- Health insurance
- 401(k) matching
- Paid time off
- Vision insurance
- Dental insurance, Located in beautiful northern New Mexico, Los Alamos National Laboratory (LANL) is a multidisciplinary research institution engaged in strategic science on behalf of national security. Our generous benefits package includes:
- PPO or High Deductible medical insurance with the same large nationwide network
- Dental and vision insurance
- Free basic life and disability insurance
- Paid childbirth and parental leave
- Award-winning 401(k) (6% matching plus 3.5% annually)
- Learning opportunities and tuition assistance
- Flexible schedules and time off (PTO and holidays)
- Onsite gyms and wellness programs
- Extensive relocation packages (outside a 50 mile radius)
Additional Details
Directive 206.2 - Employment with Triad requires a favorable decision by NNSA indicating employee is suitable under NNSA Supplemental Directive 206.2. Please note that this requirement applies only to citizens of the United States. Foreign nationals are subject to a similar requirement under DOE Order 142.3A.