Information System Security Officer (ISSO)

Kratos Defense & Security Solutions, Inc.
White Sands, NM, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Software Applications Cyber Security Information Systems Identity and Access Management Information Security Management Data Processing SC Clearance Nessus Plan of Action and Milestones

Job description

5-D Systems, Inc. a KRATOS company, is seeking a highly motivated candidate to fill an ISSO position at WSMR. The WSMR ISSO will support an Army Project Office providing ISSO support to an Army Test Team. The ISSO will be a key member of a team performing Hardware and Software Cybersecurity analysis along with key functions supporting the Risk Management Framework (RMF) Assessment and Authorization (A&A) process for data processing, test, and tactical systems.

Duties include, but are not limited to:

  • Provide accurate technical evaluations of the equipment, software applications, full systems, or network and documenting the security posture, capabilities, and vulnerabilities against applicable NIST controls.
  • Selecting and assessing security controls, timely completion of accreditation packages, formulating and implementing mitigations and maintaining the security posture of systems.
  • Must have experience with eMASS and initiating, updating, and maintaining RMF packages.
  • Identify, assess, make risk mitigation recommendations, and document system security threats/risks throughout a system’s lifecycle; validate system security requirements; formulate and maintain documentation and system certification and accreditation activities (planning, testing, assessing and coordinating).
  • Ability to work with system developer to update, maintain, and track RMF and POA&M documentation.
  • Documenting preliminary or residual security risks for system operation and manage and approve Authorization Packages.
  • Monitoring and evaluating a system’s compliance with Department of Defense (DoD) security, resilience, and dependability requirements including performing validation steps, comparing actual results with expected results, and analyzing the differences to identify impacts and risks at the software application, system, and network levels.
  • Work with teams to provide solutions and to ensure continued functionality of systems within DoD RMF Framework.

Requirements

  • Bachelor’s Degree (engineering or another technical discipline) with 3+ years of experience in Cybersecurity Domain or Non-Degree with 8+ years of experience in Cybersecurity Domain
  • Experience with implementing and evaluating DoD STIG requirements, NIST RMF, IAVMs and Cybersecurity assessment tools (ACAS, Nessus, SCC, STIG Viewer)
  • Knowledge of the Risk Management Framework (RMF) process and NIST security controls
  • Knowledge of information system architecture and standards as they apply to cyber security
  • Knowledge of NIST SP 800-160, Systems Security Engineering
  • Minimum 8570 IAM I Certification (i.e. CAP, GSLC, Sec+ CE, etc.)
  • US Citizen
  • Active Secret Clearance or eligibility to obtain (and maintain) a Secret Clearance, * Ability to travel occasionally for work duties

Benefits & conditions

  • Candidate must be a resident of White Sands, New Mexico or be willing to relocate to the White Sands, New Mexico area

  • Medical, Dental & Vision Insurance Coverage
  • Life/ADD & Short/Long Term Disability Insurance
  • 401(k) Savings Plan
  • Employee Stock Purchase Plan (ESPP)
  • Paid Time-Off (PTO)
  • Holidays
  • Education Reimbursement

  • Medical, Dental & Vision Insurance Coverage
  • Life/ADD & Short/Long Term Disability Insurance
  • 401(k) Savings Plan
  • Employee Stock Purchase Plan (ESPP)
  • Paid Time-Off (PTO)
  • Holidays
  • Education Reimbursement

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

Videos

See all

Related articles

See all