Information System Security Officer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+2 more
Job description
Perform all ISSO related duties as required by ICD 503, applicable NRO, IC, DoD policies, procedures and operating instructions related to information Technology, Information Assurance, Information Management (IT/IA/IM)
-
Manage the day-to-day system security including physical and environmental protection, incident handling, and information system security training and awareness.
-
Maintain the system security plan (SSP), and other related documents, following NRO, IC, and DoD applicable policies, procedures, and templates.
-
Maintain and update asset record in SNOW
-
Perform continuous monitoring (ConMon) and periodic self-inspections of information systems to ensure security compliance
-
Review Nessus security scans, communicate vulnerabilities to technical stakeholders, and perform remediation
-
Support customer responses to ongoing information system audits and reviews in accordance with established schedules
-
Ensure change control requirements are documented and tracked
-
Monitor and track status of applicable patches including IA Vulnerability Alerts (IAVA), IA Vulnerability Bulletins (IAVB) and Technical Advisories (IA) for the information system.
-
Conduct periodic reviews of Privileged User (PU) accounts (Developer, Admin, etc.)
-
Assist in the creation of new policies/procedures as needed
-
Perform Configuration and Change Management for the security relevant IS software, hardware, and firmware, Event Management, Vulnerability Management, Security Incident Management, POA&M Management, Reauthorization, and Decommissioning of IT asset environments
-
Maintain Approval to Operate (ATO), including the resolution of any Plans of Action & Milestones (POA&M) documents
-
Maintain and validate account and vulnerability management
-
Control, label, virus scan, and appropriately transfer data (uploading/downloading) between various information systems as required and Portable Electronic Device (PED) registrations and tracking.
-
Provide security design guidance and analysis to the project team throughout the RMF process
-
Perform reviews of technical security assessments of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations, and recommended mitigation strategies
-
Develop and maintain a Data Loss Prevention process to investigate, track, and mitigate security incidents.
-
Responsible for implementing and maintaining security services tools within the Risk Management Framework (RMF).
-
Maintain effective communication with the ISO, AO or DAO, ISSE, SCA ISSM and CPSO
-
Provide briefings on the security posture and compliance status of assigned system(s) to Security Management
Requirements
Jacobs is looking for a Information System Security Officer to join our Sensor Processing Team. Candidates must have a strong Information Assurance/Security background and be capable of coming up to speed on all ICD 503 computing security responsibilities and IA actions. Candidates must have good communication and problem-solving skills, and the ability to work both independently and collaboratively in a team environment as required., * Current CISSP, CompTIA Security+ CE cert, OR CASP+ CE certification
-
Experience with ServiceNow, and Security Center (SC)
-
Experience with HBSS, EVSS, AND/OR EITA bundle onboarding functions and corresponding tool suite
-
Possess skills including organizing, scheduling, conducting, and coordinating work assignments to meet project milestones or established completion dates.
-
Self-starter who is proactive, efficient with their time, and able to prioritize tasks on a daily basis.
-
Experience with computer networks, applications, processes and accesses.
-
Be customer-focused and possess the ability to identify issues, analyze, and interpret data and develop solutions to a variety of moderately complex technical problems.
-
Demonstrate strong interpersonal skills to effectively interface with all levels of employees and be able to represent the organization as a knowledgeable resource.
-
Thorough working knowledge of all applicable NRO, IC, DoD policies, procedures and operating instructions related to Information Technology, Information Assurance, Information Management (IT/IA/IM).
-
Top Secret/SCI security clearance with a CI Poly
Bachelor’s Degree and 8 years of work experience or equivalent such as Associate’s and 12 years or master’s degree and 5 years’ experience.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
Is Software Engineering Over-Saturated?
Top-Paying Tech Jobs (with Salaries)