eWAN Information System Security Officer (ISSO) (Onsite)

RTX
Tewksbury, MA, United States
29 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$86,800.0 - $165,200.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Configuration Management Cyber Security File Transfer Identity and Access Management Information Security Management Network Security Linux System Administration Scaled Agile Framework Security Content Automation Protocol Security Information and Event Management Software Configuration Management
+5 more
Information Security Management System National Industrial Security Program Operating Manual (NISPOM) Splunk Plan of Action and Milestones Vulnerability Analysis

Job description

The ISSO assists the Information System Security Manager (ISSM) to provide oversight for the information systems security control methods, mitigations, and tools throughout a systems’ lifecycle in compliance with U.S. Department of Defense (DoD) security laws, regulations and guidelines. The ISSO will participate in projects, guide and counsel internal customers, assist in developing and maintaining program/dataset specific processes and standards, and provide training and guidance on tools and methods to other members of the cybersecurity team.

What You Will Do:

  • Responsible for assessing and monitoring system compliance, auditing, security plan development, and delivering information systems security education and awareness.
  • Assists in investigating information system security violations and preparing reports specifying corrective and preventative actions.
  • Responsible for reviewing and approving configuration management requests within delegated authority, conducting technical and administrative security assessments, and performing security sustainment activities including hardware and software change management, account management, media protection, and file transfer reviews.
  • Support the integration of new cybersecurity processes, procedures, and tools, assists with the creation and maintenance of cybersecurity documentation, and ensures audit records are collected and analyzed in accordance with approved security plans.
  • Develop, update, and/or review Risk Management Framework (RMF) documentation to include the System Security Plan (SSP), Security Control Traceability Matrix (SCTM), Plan of Action and Milestone (POA&M), Risk Assessment Report (RAR), as assigned by the ISSM.
  • Collaborate with CDS and peer BU ISSMs/ISSOs for alignment and sharing of best practices., Whether you’re just starting out on your career journey or are an experienced professional, we offer a robust total rewards package with compensation; healthcare, wellness, retirement and work/life benefits; career development and recognition programs. Some of the benefits we offer include parental (including paternal) leave, flexible work schedules, achievement awards, educational assistance and child/adult backup care.

Requirements

  • Typically requires a University Degree or equivalent experience and minimum 5 years prior relevant experience, or an Advanced Degree in a related field and minimum 3 years experience.
  • Experience managing and implementing security program requirements in a classified environment.
  • Compliance-based auditing using the RMF, Defense Counterintelligence and Security Agency (DCSA) Assessment and Authorization Process Manual (DAAPM), National Industrial Security Program Operating Manual (NISPOM).
  • Certifications equivalent to or exceeding DoD 8570.01-M IAM Level I (Security+ or other).
  • Knowledge and/or experience with STIGs, SCAP, Splunk, Tenable or other system hardening and compliance, vulnerability assessment, network security and/or SIEM tools.
  • Active and transferable secret U.S. government issued security clearance is required prior to start date., * Experience working in DoD classified operating environments and/or in the execution of the Assessment & Authorization processes, as defined within the Risk Managed Framework (RMF), NIST 800-53- Rev 4.
  • Experience with Scaled Agile Framework (SAFe) work practices.
  • Experience with large multi-facility networks of complex components, including Windows and Linux environments.
  • Excellent oral and written communication skills with attention to detail and ability to multitask.
  • Ability to adapt to rapidly changing environment and work under pressure to meet project deadlines.

Benefits & conditions

50 Apple Hill Drive, Tewksbury, MA 01876 $86,800 - $165,200 a year - Full-time, Pulled from the full job description Tuition reimbursement Parental leave Health insurance 401(k) matching Paid time off Vision insurance Dental insurance, The salary range for this role is 86,800 USD - 165,200 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate’s work experience, location, education/training, and key skills.

Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.

Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company’s performance.

This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.

RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.

RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans’ Readjustment Assistance Act.

About the company

At RTX, the world’s largest aerospace and defense company, 185,000 great minds are united by purpose and inspired to make a difference solving the world’s most complex problems. With our three market leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunity no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world. Join us and help shape the future of aerospace and defense.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

6:03 min

Using PycURL for multiprotocol file transfer operations

Shweta Palande · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

1:38 min

Evolution from manual deployments to continuous integration

Kevin Dubois Kevin Dubois · World Congress 2025

Videos

See all

Related articles

See all