Information Systems Security Officer
Role details
Job location
Tech stack
Job description
The Information Systems Security Officer is responsible for the operational aspects of information security, including monitoring systems for vulnerabilities and responding to security incidents. This position also involves providing technical support and guidance to researchers and staff on information security best practices.
Responsibilities
Job Duty 1 -
Monitor information systems and network activities to detect and respond to security breaches and vulnerabilities.
Job Duty 2 -
Assist in the development and implementation of information security policies and procedures to safeguard research data.
Job Duty 3 -
Conduct regular security assessments and audits to evaluate the effectiveness of existing security measures.
Job Duty 4 -
Provide technical support and guidance to staff regarding information security practices and incident reporting.
Job Duty 5 -
Investigate security incidents and document findings to inform improvements to security policies and practices.
Job Duty 6 -
Train employees on information security awareness and best practices to minimize risks associated with human error.
Job Duty 7 -
Maintain logs and records of security incidents and responses to ensure accountability and facilitate future analysis.
Job Duty 8 -
Research and recommend new security tools and technologies to enhance the organization's information security posture.
Job Duty 9 -
Collaborate with the information technology team to apply security patches and updates to systems and applications.
Job Duty 10 -
Perform other job-related duties as assigned.
Requirements
Educational Requirements
Associate's Degree in related discipline or equivalent combination of education and experience.
Required Experience
Two or more years of relevant experience.
Preferred Qualifications
Preferred Educational Qualifications
Bachelor's Degree in related discipline.
Preferred Qualifications
- Knowledge of NISPOM, DAAG, CNSSI1253
- Experience applying RMF for Industrial Security
- Knowledge of CORA inspection
- Experience with security assessment tools (ACAS/Nessus, HBSS, Splunk)
- Strong technical writing skills for SSPs, POA&Ms, and security documentation
- Experience with DD254 interpretation and implementation
- Security+, CISA, CISM, CISSP or applicable DoD8140-based certifications
Knowledge, Skills, & Abilities
ABILITIES
Ability to establish and manage systems and networks throughout the system accreditation life cycle
KNOWLEDGE
This role requires expertise in system and network architecture and management; a strong understanding of CSA rules/regulations; and an understanding of contract deliverables to recommend appropriate paths to system accreditation
SKILLS
Requires strong communication skills and decision-making skills, Successful candidate must be able to pass a background check. Please visit https://usg.policystat.com/policy/19298143/latest
Benefits & conditions
Salary range is dependent on candidates experiences and skills that ranges from $78,023.00 - 113,625.00
You must be a US citizen to be considered for this role.