4535 ISSO
Procession Systems
Fort Meade, MD, United States
7 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source
Tech stack
Configuration Management
Cyber Security
Information Systems
Firmware
Information Security Management
Software Requirements Analysis
Software Vulnerability Management
Network Routers
Firewalls (Computer Science)
Network Server
User Identification
Job description
- Support senior ISSOs and the ISSM in implementing, enforcing, and maintaining information systems security policies, standards, procedures, and methodologies.
- Plan, coordinate, and support IT security programs and policies, including development and maintenance of system security policies that support compliance with customer, IC, DoW, and NIST RMF requirements.
- Maintain and update required security documentation, including System Security Plans (SSPs), Risk Assessment Reports, Assessment and Authorization (A&A) packages, System Requirements
- Traceability Matrices (SRTMs), and other information assurance documentation.
- Support security authorization and A&A activities in accordance with applicable IC, DoW, customer, and NIST RMF policies, including preparation and coordination of authorization artifacts.
- Perform vulnerability, compliance, and risk-assessment analysis to support certification, accreditation, continuous monitoring, and remediation activities.
- Evaluate security solutions, system changes, and configuration updates to determine security impact and suitability for systems processing classified information.
- Provide security-relevant Configuration Management (CM) support for information system software, hardware, firmware, and system components, including maintaining records for workstations, servers, routers, firewalls, hubs, switches, upgrades, and related assets.
- Support day-to-day security operations, including user identification and authentication processes, security control monitoring, incident coordination, compliance tracking, and transition activities associated with ConMon activities.
Requirements
- Bachelor’s degree in a technical, cybersecurity, information assurance, or related discipline from an accredited college or university is required. Five (5) years of additional information assurance, cybersecurity, or security engineering experience may be substituted for a bachelor’s degree.
- Experience supporting ISSO, information assurance, cybersecurity compliance, security authorization, or RMF activities on programs and contracts of similar scope, type, and complexity is required.
- Must meet applicable DoW 8140/8570 requirements for the position. Preferred certifications may include Security+, CySA+, CASP+, CISSP, CAP, or equivalent cybersecurity, information assurance, or RMF-related credentials., * Experience with SSPs, A&A packages, SRTMs, vulnerability management, continuous monitoring, classified information systems, DoW/IC security policies, and NIST RMF processes is preferred.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
CH
Chris Heilmann
about 2 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
8 months ago
IK
Igor Khokhriakov
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
about 2 months ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
over 2 years ago
DC
Daniel Cranney
What Makes WeAreDevelopers World Congress Different From Every Other Tech Event?
7 months ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago