ISSO 2 102-188

Ic-cap Llc
Montgomery, AL, United States
4 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Configuration Management Cyber Security Information Systems Firmware Identity and Access Management SAP ERP SAP (Applications) Information Technology

Job description

Information System Security Officer 2 is responsible for ensuring the appropriate operational security posture is maintained for an information system and as such, works in close collaboration with the ISSM and ISO. The position shall have the detailed knowledge and expertise required to manage the security aspects of an information system and, in many organizations, is assigned responsibility for the day-to-day security operations of a system. This also will include physical and environmental protection, personnel security, incident handling, and security training and awareness. It will be required to work in close coordination with the ISSM and ISO in monitoring the information system(s) and its environment of operation to include developing and updating the authorization documentation, implementing configuration management across authorization boundaries. This will include assessing the security impact of those changes and making recommendation to the ISSM. The primary function is working within Special Access Programs (SAPs) supporting Department of Defense agencies, such as HQ Air Force, Office of the Secretary of Defense and Military Compartments efforts. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information and SAP activities.

Duties may include:

  • Assist the ISSM in meeting their duties and responsibilities
  • Prepare, review, and update authorization packages
  • Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media
  • Notify ISSM when changes occur that might affect the authorization determination of the information system(s)
  • Conduct periodic reviews of information systems to ensure compliance with the security authorization package
  • Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
  • Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
  • Ensure all IS security-related documentation is current and accessible to properly authorized individuals
  • Ensure audit records are collected, reviewed, and documented (to include any anomalies)
  • Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties
  • Execute the cyber security portion of the self-inspection, to include provide security coordination and review of all system assessment plans
  • Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them
  • Prepare reports on the status of security safeguards applied to computer systems
  • Perform ISSO duties in support of in-house and external customers
  • Conduct security impact analysis activities and provide to the ISSM on all configuration management changes to the authorization boundaries

Requirements

  • Bachelor’s degree -or- 4 years of additional, relevant experience, in lieu of degree
  • 2-5 years related experience, especially in developing RMF packages or bodies of evidence
  • Prior performance in roles such as System/Network Administrator or ISSO
  • SAP experience

Training:

  • DoD 8570.01-M IAM Level II (in lieu of IAT Level II)

Security Clearance:

  • Active TS/SCI and the willingness to sit for a polygraph, if needed

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:13 min

Structuring a comprehensive corporate security organization

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:19 min

Orchestrating over-the-air firmware updates for vehicle modules

Denis Grahovac · World Congress 2021

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:20 min

Utilizing custom firmware for variable torque manipulation

Daniel Meilak Daniel Meilak +1 · World Congress 2026 Europe

Videos

See all

Related articles

See all