Information Systems Security Officer - 201816

DNI Delaware Nation Industries
Oklahoma City, OK, United States
2 months ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Configuration Management Cyber Security Information Systems Document Management Systems Systems Analysis Systems Development Life Cycle Information Security Management System Multi-Cloud Information Technology Plan of Action and Milestones

Job description

Delaware Nation Industries/Unami works with the Oklahoma City Air Logistics Complex (OC-ALC) located at Tinker AFB, OK to provide on-site cybersecurity support services to maintain an Authority to Operate (ATO) for all OC-ALC systems, applications, and networks using the NIST Risk Management Framework (RMF) per DoDI 8510.01, Risk Management Framework (RMF) for DoD Information and AFI 17-101, Risk Management Framework (RMF) for Air Force Information Technology.

An active security clearance is REQUIRED.

A Security+ Certification is REQUIRED.

This position is 100% onsite.

  • Document and maintain controls, appendices, and document attachments under NIST SP 800-53 Rev. 4 & 5 for all DSS and IDM systems and sub-systems

  • Document and maintain inheritable common controls catalog for to document controls offered to applications or systems hosted on multi-cloud platform

  • Ensure common controls are available for all hosted systems to inherit and maintain

  • Assist in the development and maintenance of System Security Plans (SSP) and security controls assessments, and organizational policy

  • Update the SSP and server documentation and provide the ISSO to update security artifacts and the baseline documents

  • Update POA&Ms throughout the POA&M lifecycle till closure for all system controls.

  • Provides high-level functional systems analysis, design, integration, documentation, and implementation advice on moderately complex cybersecurity problems that require an appropriate level of knowledge of the subject matter for effective implementation

  • Serves as the IT security POC for assigned systems to ensure information systems comply with applicable policies

  • Ensures security activities are implemented throughout the entire SDLC, including during system changes and modifications

  • Provides audit support by developing the appropriate responses to audit questionnaires and remediation recommendations of audit report findings.

  • Coordinates with appropriate stakeholders and system owners to ensure all NIST 800-53 controls are properly implemented and assessed during the steps of the ATO lifecycle

  • Ability to conduct an analysis of the NIST SP 800-53 rev. 5 controls and identify controls that can be automated

  • Ensures all systems are operated, maintained, and disposed of IAW documented security policies and procedures, including but not limited to Assessment & Authorization (A&A).

  • Supports the development and maintenance of all security documentation such as the System Security Plan, Privacy Impact Assessment, Configuration Management Plan, Contingency Plan, Contingency Plan Testing, POA&Ms, and incident reports.

Requirements

  • At least 2+ years of related experience
  • Detailed knowledge of NIST SP 800-53 Rev. 4 & 5, Security Policies, NIST Risk Management Framework, Security Planning and Architecture, Incident Analysis, and General Security Best Practices
  • Knowledge of NIST regulatory compliance requirements
  • Deep knowledge of the information security principles
  • Experience developing Information Security policies and procedures
  • Experience performing A&As and supporting the Risk Management Framework lifecycle
  • Ability to communicate, both written and orally, to both technical and non-technical stakeholders
  • Strong written and oral communication skills to interact with senior managers, junior staff, and business unit (non-technical) customer

Benefits & conditions

  • Covers 100% of employee benefit premiums, including Medical (PPO or HDHP Option), Vision, Dental
  • Matching 401K
  • Short- and Long-Term Disability
  • Pet Insurance
  • Professional Development/Education Reimbursement
  • Parking and Transit Benefits for NY, NJ, ATL, and DC Metro areas

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:22 min

Overcoming developer challenges in multi-cloud environments

Sandeep Pal Sandeep Pal · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:06 min

System thinking and the necessity of architectural synthesis

Mourjo Sen Mourjo Sen · World Congress 2026 Europe

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

1:20 min

Introduction to multi-cloud development infrastructure

Sandeep Pal Sandeep Pal · Coffee With Developers

Videos

See all

Related articles

See all