Information System Security Officer

Mantech International Corporation
Stafford, VA, United States
14 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Backup Devices Cyber Security Information Systems Federal Information Processing Standards (FIPS) Information Security Management Networking Hardware Intrusion Detection and Prevention Systems Architecture Software Vulnerability Management Information Technology Epic ECSM
+3 more
Network Server Plan of Action and Milestones Vulnerability Analysis

Job description

  • This position will work closely with technical teams, security stakeholders, and authorizing agencies to protect information system assets, maintain compliance requirements, identify and mitigate cybersecurity risks, and support ongoing Authorization to Operate (ATO) activities.
  • Prepare, review, and maintain security documentation including System Security Plans (SSPs), Risk Assessment Reports, Security Requirements Traceability Matrices (SRTMs), and authorization packages.
  • Maintain the operational security posture of assigned information systems and ensure compliance with established security policies, standards, and procedures.
  • Conduct and support Security Technical Implementation Guide (STIG) compliance reviews across infrastructure components including servers, network devices, operating systems, and applications.
  • Assisting the Information System Security Manager (ISSM) with managing Plan of Action and Milestones (POA&Ms), ensuring the technical vulnerabilities are tracking, remediated, or mitigated with acceptable workarounds.
  • Initiating corrective and protective security measures in coordination with the ISSM when threats or active Vulnerabilities are discovered. Assisting mthe ISSM in monitoring, reporting, and enforcing Information Assurance Vulnerability Management (IAVM).
  • Collaborate with engineering and operational teams to resolve security findings and maintain compliance throughout the system lifecycle.

Requirements

MANTECH seeks a motivated, career and customer-oriented Information System Security Officer to support our contract under Marine Corps Systems Command (MCSC) out of Quantico, VA. The successful candidate will support the security compliance, and ongoing authorization of United Stated Marine Corps Systems., * Bachelor’s Degree and at least 6 years of related experience (additional 2 years of experience may be substituted in lieu of degree.

  • Must be compliant and certified at the DoW 8140 intermediate level, thus will need a CASP, Security+, CISSP, or CISM certification.
  • Knowledge of federal requirements: NIST SP 800-53, CNSSI 1253. FIPPS199 and FIPS 200, ECSM 018, etc.
  • Demonstrates understanding of cybersecurity compliance frameworks, security controls, and system authorization processes.
  • Strong understanding and experience of using Enterprise Mission Assurance Support Service (eMASS). i.e. importing, exporting, maintaining system packages through all steps of RMF.
  • Experience supporting security audits, vulnerability assessments, and compliance activities., * Ability to effectively collaborate with technical teams, cybersecurity professionals, and government authorizing organizations. (translating the RMF security controls into practical technical configurations and system architecture designs)
  • Comprehensive knowledge of enterprise information technology, cybersecurity, and information assurance principles, including data backup and recovery, system functionality, security controls, continuous monitoring, intrusion detection, penetration testing, and defense-in-depth strategies.
  • Demonstrates ability to think critically, analyze complex information, identify potential issues, and develop effective solutions with minimal oversight.
  • Experience assessing, documenting, and clearly communicating cybersecurity and compliance risks to both technical and non-technical stakeholders

Security Clearance Required:

  • Must have a current / active Secret clearance

Physical Requirements:

  • Sedentary work

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:11 min

Establishing secure recovery factors without password fallbacks

Clemens Hübner Clemens Hübner · World Congress 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:57 min

Securing sensitive defense infrastructure with dual-vendor cloud strategies

Boris Hecker Boris Hecker +3 · World Congress 2025

1:13 min

Structuring a comprehensive corporate security organization

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

Videos

See all

Related articles

See all