Information Systems Security Officer 2
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+6 more
Job description
Provide support for a program, organization, system, or enclave’s Information Assurance (IA) program. Maintain the operational security posture for information systems and support security authorization activities in compliance with the NIST Risk Management Framework (RMF) and ODNI/DoD policies.
- Propose, coordinate, implement, and enforce information systems security policies, standards, and methodologies.
- Maintain records and operational security posture for workstations, servers, routers, firewalls, intelligent hubs, and network switches.
- Prepare, review, and update documentation including System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements Traceability Matrices (SRTMs).
- Perform vulnerability/risk assessment analysis and evaluate security solutions to ensure compliance with classified processing requirements.
- Manage configuration management (CM) for security-relevant hardware, software, and firmware, and assess the security impact of system changes.
- Administer user identification and authentication mechanisms and support the Information System Security Manager (ISSM).
Requirements
- NIST RMF, NISCAP, ODNI, and DoD security policies
- SSP, C&A, and SRTM documentation creation and maintenance
- System security evaluation and risk/vulnerability assessment
- Configuration Management for security software/hardware/firmware
- User identification & authentication administration
- Experience in at least two (2) of the following: current security tools, hardware/software security implementation, communication protocols, or encryption techniques/tools
- DoD 8570 compliance with IAM Level I or higher
ISSO2 Qualifications:
Experience: Ten (10) years of experience as an ISSO on programs and contracts of similar scope, type, and complexity.
Education: Bachelor’s degree in Computer Science or a related discipline from an accredited college or university.
Four (4) years of additional ISSO experience may be substituted for a Bachelor’s degree.
Must include experience in at least two (2) of the following: current security tools, hardware/software security implementation, communication protocols, or encryption techniques/tools.
Certifications: DoD 8570 compliance with IAM Level I or higher required.
Benefits & conditions
Salary Range: $174k-$213k (Annually)
The range displayed above is a likely salary range for this position. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possible contractual requirements and could fall outside of this range.
Akina is a Woman Owned, Service Disabled, Veteran Owned, Small Business, looking for talented and ambitious individuals to join our team. We offer a generous compensation package that includes 24 days PTO accrued annually and 11 federal holidays. Our 401k is 100% vested on your start date and the company makes a direct contribution worth 10% of your salary. Akina covers 100% of healthcare costs for employees and 50% toward dependents. We offer educational assistance towards college classes and will cover costs associated with job related training and certifications.
Akina is committed to excellence and creating innovative and flexible solutions for our clients. We are a small company with an open ear to our employees’ needs in order to attract and retain quality talent that enables our customer’s mission.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Understanding and Mitigating Common Web Vulnerabilities
The Overflow: Security and Privacy