Information Systems Security Officer (ISSO)

at  SecuriGence LLC

Arlington, VA 22203, USA -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate10 Jul, 2024Not Specified10 Apr, 20242 year(s) or aboveNist,Cp,Azure,Microsoft Products,Powerpoint,Gap Analysis,Compliance Reporting,Scanning,Incident Response,Vulnerability Management,Drp,Security,Excel,Recovery Plans,Vulnerability,Engineering Design,SspNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

Job Title: Information Systems Security Officer (ISSO)
Location: Arlington, Virginia
Clearance Level: DoD Top Secret Clearance

SUMMARY

We deliver essential technology services to our customers in support of their missions to sustain the national security and economic interests of our nation. SecuriGence is seeking an Information Systems Security Officer to help contribute to our success. Help us solve problems with Innovation Through Intelligence.

SKILLS AND EXPERIENCE

  • Experience with NIST SP 800-37, 800-137, 800-53 rev 4/5, 800-39, 800-171 and 800-171A for self-assessments; NIST 800-100, NIST 800-18.
  • Familiar with creating Assessment and Authorization (A&A) packages in eMASS and/or Xacta and applying security categorization per the NIST FIPS 199 and NIST SP 800-60.
  • Experience in performing and assessing Security and Privacy Controls per NIST 800-53 rev 4/5 and NIST 800-53a guidelines.
  • Experience with systems engineering design and development toward a “baked-in” security design using Information Assurance best practices.
  • Understanding of the FedRAMP process, coordinating with 3PAO’s, and migrating on prem systems to an accredited cloud-based solution (e.g. AWS (GovCloud), Azure).
  • Understanding of vulnerability and scanning tools such as Assured Compliance Assessment Solution (ACAS) and well-versed in interpreting risk posture resulting from assessment reports.
  • Knowledge of vulnerability management, risk management, project management, proficient with Microsoft products - Word, Excel, PowerPoint.
  • Experience with Tenable’s Nessus and/or Security Center, or Network Mapper is a plus.
  • Risk assessment experience, especially with NIST SP 800-53 Threat identification, system security categorization, gap analysis, and compliance reporting.
  • Must be able to validate security patches as they align to NIST guidelines, client policies and procedures, and OMB Mandates.
  • Experience with creating or maintaining security artifacts as part of the ATO package including but not limited to; System Security Plan (SSP), Contingency Plans (CP), Disaster Recovery Plans (DRP), Plan of Action and Milestone (POA&M), Incident Response (IR), and other security documentation.

QUALIFICATIONS

  • Bachelor’s degree. Can be substituted for Associate’s degree with 2+ years relevant experience or 4 years relevant experience.
  • 5 years relevant experience.
  • DoD Top Secret Clearance is required.
  • IAT Level II Certification minimum.

How To Apply:

Incase you would like to apply to this job directly from the source, please click here

Responsibilities:

  • Provide oversight for assigned network(s) by working with operation’s staff to ensure compliance per STIGs and IAVM.
  • This role requires being onsite five days a week during the initial training period of approximately two months. Telework is then allowed one day per week.
  • Ensuring that Stakeholders adhere to Federal Information Assurance policies and procedures to acquire and maintain an Information System’s Authority to Operate (ATO) under The Federal Information Security Management Act (FISMA) of 2002.
  • Lead RMF A&A efforts including: activities within the A&A cycle and outside of the ISSO functions, work directly with ISSM, ISO, and AO, work with engineering and operations support staff to secure systems and ensure compliance, and provide oversight for existing and new POAMs.
  • Provided POAM support by advising CISO/AO of changes and assisting in the coordination of efforts to remediate deficiencies and vulnerabilities.
  • Responsible for performing ConMon reviews for daily, weekly, monthly and quarterly checks. (Primarily completed through Splunk. Small number of manual/administrative checks).
  • Assist with IR activities providing by verifying sanitation procedures are followed prior to submitting the CART Case to the CISO for closure.
  • Work with the Security Tools Team to identity Critical / High vulnerabilities for remediation and report network security posture at weekly CISO/AO meeting.


REQUIREMENT SUMMARY

Min:2.0Max:5.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Other

Graduate

Proficient

1

Arlington, VA 22203, USA