Information System Security Officer
Mantech International Corporation
Stafford, VA, United States
14 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on dejobs.org
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source
Tech stack
Software System Penetration Testing
Backup Devices
Cyber Security
Information Systems
Federal Information Processing Standards (FIPS)
Information Security Management
Networking Hardware
Intrusion Detection and Prevention
Systems Architecture
Software Vulnerability Management
Information Technology
Epic ECSM
+3 more
Network Server
Plan of Action and Milestones
Vulnerability Analysis
Job description
- This position will work closely with technical teams, security stakeholders, and authorizing agencies to protect information system assets, maintain compliance requirements, identify and mitigate cybersecurity risks, and support ongoing Authorization to Operate (ATO) activities.
- Prepare, review, and maintain security documentation including System Security Plans (SSPs), Risk Assessment Reports, Security Requirements Traceability Matrices (SRTMs), and authorization packages.
- Maintain the operational security posture of assigned information systems and ensure compliance with established security policies, standards, and procedures.
- Conduct and support Security Technical Implementation Guide (STIG) compliance reviews across infrastructure components including servers, network devices, operating systems, and applications.
- Assisting the Information System Security Manager (ISSM) with managing Plan of Action and Milestones (POA&Ms), ensuring the technical vulnerabilities are tracking, remediated, or mitigated with acceptable workarounds.
- Initiating corrective and protective security measures in coordination with the ISSM when threats or active Vulnerabilities are discovered. Assisting mthe ISSM in monitoring, reporting, and enforcing Information Assurance Vulnerability Management (IAVM).
- Collaborate with engineering and operational teams to resolve security findings and maintain compliance throughout the system lifecycle.
Requirements
MANTECH seeks a motivated, career and customer-oriented Information System Security Officer to support our contract under Marine Corps Systems Command (MCSC) out of Quantico, VA. The successful candidate will support the security compliance, and ongoing authorization of United Stated Marine Corps Systems., * Bachelor’s Degree and at least 6 years of related experience (additional 2 years of experience may be substituted in lieu of degree.
- Must be compliant and certified at the DoW 8140 intermediate level, thus will need a CASP, Security+, CISSP, or CISM certification.
- Knowledge of federal requirements: NIST SP 800-53, CNSSI 1253. FIPPS199 and FIPS 200, ECSM 018, etc.
- Demonstrates understanding of cybersecurity compliance frameworks, security controls, and system authorization processes.
- Strong understanding and experience of using Enterprise Mission Assurance Support Service (eMASS). i.e. importing, exporting, maintaining system packages through all steps of RMF.
- Experience supporting security audits, vulnerability assessments, and compliance activities., * Ability to effectively collaborate with technical teams, cybersecurity professionals, and government authorizing organizations. (translating the RMF security controls into practical technical configurations and system architecture designs)
- Comprehensive knowledge of enterprise information technology, cybersecurity, and information assurance principles, including data backup and recovery, system functionality, security controls, continuous monitoring, intrusion detection, penetration testing, and defense-in-depth strategies.
- Demonstrates ability to think critically, analyze complex information, identify potential issues, and develop effective solutions with minimal oversight.
- Experience assessing, documenting, and clearly communicating cybersecurity and compliance risks to both technical and non-technical stakeholders
Security Clearance Required:
- Must have a current / active Secret clearance
Physical Requirements:
- Sedentary work
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on dejobs.org
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
CH
Chris Heilmann
almost 2 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
over 2 years ago
DC
Daniel Cranney
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
10 months ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 months ago
IK
Igor Khokhriakov
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
17 days ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago