Information System Security Officer

Idexcel, Inc.
United States
about 1 month ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cloud Computing Cyber Security Information Technology Vulnerability Analysis

Job description

Conducts assessments of threats and vulnerabilities, determines deviations from acceptable configurations or enterprise or local policy, assesses the level of risk, and develops and/or recommends appropriate mitigation countermeasures in operational and non-operational situations., Pass a client mandated clearance process to include drug screening, criminal history check and credit check. Once candidate s resume is approved and interview passed, the agency is responsible for providing drug screening. Failure to submit the drug screening results will delay the security clearance process. If a candidate is given an interim clearance, continuation of employment is then based on the candidate receiving a sensitive clearance. Cannot have more than 6 months travel outside the United States within the last five years. Military Service excluded. (Exception does not include military family members.) All overtime must be pre-approved in writing by the client manager or his/her designated representative. Agency will not be reimbursed for overtime charges without previous written authorization. Authorized overtime will be reimbursed at straight time.

Requirements

Ability to manage responsibility for security assessments of a variety of applications or domains, to include cloud computing, and to manage several project/initiatives of large size, complexity, and risk. Demonstrated proficiency in implementing security controls, conducting risk assessments, and documenting compliance measures based on NIST RMF and ISO standards to meet organizational and regulatory requirements. Demonstrated proficiency in successfully evaluating and supporting documentation, validation, and accreditation processes necessary to assure that new and existing information technology (IT) systems meet the organization’s information assurance (IA) and security requirements. Demonstrated proficiency in ensuring appropriate treatment of risk, compliance, and assurance from internal and external perspectives. Demonstrated ability to support development of actionable security blueprints, principles, models, designs, standards, and guidelines to ensure enterprise IT architecture and support is consistent, usable, secure and adds value to the business. Experience with network and vulnerability scanning tools and technologies to interrogate systems for configuration and status. In-depth understanding of security architecture principles and best practices to design, implement, and maintain secure IT infrastructures in alignment with A&A policies. Demonstrated proficiency in utilizing Governance, Risk, and Compliance (GRC) tools for managing Assessment & Authorization (A&A) processes. Ability to serve as subject matter expert (SME) for the A&A process, including providing guidance to stakeholders, business units, and new A&A resources as necessary. Strong organizational skills and ability to build and maintain schedules and step-by-step action plans. Effective communication and collaboration skills to work with cross-functional teams, business units, stakeholders, and IT professionals, and to brief executives., A minimum of eight (8) years relevant experience. A degree from an accredited College/University in the applicable field of services is required. If the individual’s degree is not in the applicable field then four additional years of related experience is required. Typically performs all functional duties independently. Note: Special credentials (licenses and/or certifications) may be required at the Task Order level on a case-specific basis.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:27 min

Introduction to WebAssembly in a cloud computing context

Edo Edo · World Congress 2024

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

2:46 min

Missing equipment retrieval processes for departing employees

Jasmin Azemović Jasmin Azemović · World Congress 2026 Europe

2:51 min

Alibaba Cloud developer resources and cloud computing training

Cheng Zhang · LIVE

Videos

See all

Related articles

See all