INFORMATION SYSTEM SECURITY OFFICER

Mantech International Corporation
Chantilly, VA, United States
1 day ago
Apply on www.careerboard.com
Prepare application

Role details

Contract type
Internship / Graduate position
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Cyber Security Databases Information Security Management Systems Development Life Cycle SAP (Applications) Security Content Automation Protocol Information Technology Nessus National Industrial Security Program Operating Manual (NISPOM)

Job description

  • Ensures network nodes are operated, maintained, and disposed of in accordance with security policies and practices.
  • Perform Information System Security Officer (ISSO) duties in support of in-house and external customers. Also, perform duties as the alternate Information Systems Security Manager (ISSM).
  • Cyber security paperwork (compliance) and Information Assurance (IA) controls.
  • Develop supporting documentation and apply standards, directives, guidance, policies, and security control to classified computing environments in support of Intelligence Community Directive (ICD) 503
  • Utilizing one or more Risk Management Framework implementation methods to include but not limited to; JSIG, CNSSI 1253, NIST SP 800-53, NIST SP 800-171, DoDM-5220-22 (NISPOM)
  • Assist in preparation and review documentation to include System Security Plans (SSPs), Risk Assessment Reports (RAR), Security Controls Traceability Matrix (SCTM), and other Assessment & Authorization (A&A) artifacts
  • Learn and conduct independent scans of the application, network, and database with tools such as Nessus, DISA STIGS compliance check and SCAP (SCC)

Requirements

  • Bachelor’s Degree and at least 5 years of experience in Cybersecurity, Information Technology, Computer Science, or other relevant technical field; Experience can be any combination professional experience, internships, lab work or coursework. An additional 2 years of experience may be substituted in lieu of degree.
  • At least three years’ experience with Risk Management Framework, JSIG, or similar security frameworks.
  • Department of Defense (DoD) 8570/8140 Compliant, IAT Level III within 6 months of hire date
  • Strong Analytical and Critical Thinking Skills, Interpersonal and People Skills, Leadership Skills, Listening Skills, Multi-Tasking Ability, Communication Skills, Organizational Skills, Presentation Skills, * A bility to obtain and maintain customer system accreditations through the System Development Life Cycle (SDLC)
  • Experience providing continuous monitoring, security reviews, and technical inspections to enforce security policies, controls and procedures and mitigate identified vulnerability and weaknesses
  • Ability to work well in a team environment and work well under pressure.

Security Clearance Requirements:

  • Must have a current/active Top-Secret/SCI clearance with the ability to obtain and maintain a polygraph
  • Eligibility for access to Special Access Program information (SAP)

Physical Requirements:

  • Must be able to remain in a stationary position up to 75% of the time
  • Must be able to move about inside the office to access file cabinets, office machinery
  • Must be able to position self to maintain office supplies on variable height shelving.
  • The person in this position frequently communicates with co-workers, management and customers, which may involve delivering presentations.
  • Must be able to exchange accurate information in these situations

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerboard.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:01 min

Managing application isolation via pluggable database models

Wei Hu Wei Hu · World Congress 2022

1:13 min

Structuring a comprehensive corporate security organization

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

Videos

See all

Related articles

See all