Information System Security Officer (ISSO)

General Dynamics Information Technology
Indianapolis, IN, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$125,800.0 - $170,200.0
Working hours
Regular working hours
Job source

Tech stack

Xacta Systems Engineering Microsoft Azure Configuration Management Cyber Security Information Systems Information Security Management Software Vulnerability Management Privacy Controls Vulnerability Analysis

Job description

The Information Systems Security Officer (ISSO) is responsible for ensuring the continuous monitoring of security and privacy controls for one or more information systems managed by or on behalf our Federal civilian agency customer. The ISSO works closely with the Information System Owner, Information System Security Manager, system administrators, and other IT and privacy professionals supporting the system(s). The position shall have the detailed knowledge and expertise required to manage the security aspects of an information system and is assigned responsibility for the day-to-day security monitoring of the system(s), including but not limited to threat analysis, vulnerability assessments and remediation, compliance monitoring and reporting, POAM and Corrective Action Plan management, Interconnection Security Agreements, Security Impact Assessments within the change management process, risk assessments, and SLAs. Security controls and standards are aligned with NIST SP 800-53 rev 5 and the NIST RMF.

Requires in-depth knowledge of FISMA, FedRAMP, NIST Special, Risk Management Framework, POAM management, incident response, audit, accreditation processes, and configuration management compliance.

Additional activities include:

  • Develop and/or maintain physical or logical topologies for monitored system(s) in concert with systems engineers
  • Assist the contract’s security manager in meeting their duties and responsibilities, as well as extensive collaboration with customer security personnel
  • Prepare, review, and update authorization packages and associated artifacts; familiarity with an authorization management system such as JCAM, eMASS, CSAM, Xacta, etc.
  • Ensure the contract’s operations procedures and process documents are properly managed and reviewed/updated at least annually.
  • Conduct periodic reviews of information systems to ensure compliance with the security authorization package.
  • Coordinate annual incident management and COOP/DR tabletop exercises; monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly.
  • Familiarity with Azure tools, particularly Defender and Sentinel are highly desirable.
  • Ensure audit records are collected, reviewed, and documented (to include any anomalies), in addition to internal and external audit support

Requirements

Do you have experience in Vulnerability management?, Do you have a Bachelor’s degree?, * Prior performance in roles such as System Administrator or Network Administrator, with preferential experience in specific ISSO duties.

Certifications: CISSP or Security+ any revelant IT or security certification

Education:

  • Bachelor’s degree OR industry recognized certifications and 8 years of relevant experience

Work Requirements Years of Experience 8 + years of related experience

  • may vary based on technical training, certification(s), or degree

Benefits & conditions

(part of General Dynamics) 3.73.7 out of 5 stars Indiana $125,800 - $170,200 a year, The likely salary range for this position is $125,800 - $170,200. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

About the company

We are GDIT. A global technology and professional services company that delivers technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber and application development. Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology. Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · WWC 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

5:01 min

Container hosting options available on Microsoft Azure

Federico Fregosi · WWC 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all