Information Systems Security Officer at Leidos
Huntsville, AL 35806, USA -
Full Time


Start Date

Immediate

Expiry Date

19 Oct, 25

Salary

189175.0

Posted On

20 Jul, 25

Experience

6 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

It, Solarwinds, Operating Systems, Program Management, Incident Response, Nist, Network Hardware, Senior Administration, Linux, Physical Security, Rmf, Risk Management Framework, Electronics, Containment, Mitigation, Security Tools, Hardening, Collaboration, Databases

Industry

Information Technology/IT

Description

Description
Leidos Chief Information Security Office within the Digital Modernization sector is seeking a talented Information System Security Officer (ISSO) to join a diverse team to create unique solutions for complex problems. With offices across the United States engaging in the defense, space, cyber and commercial fields, Leidos provides responsive, cost-effective engineering, scientific and IT solutions.
In this role, you will be responsible for supporting our Classified Information System Cybersecurity/Information Assurance Program. You will report to the Information System Security Manager (ISSM) on all aspects of classified information system security compliance. Your work will be conducted on site at our Huntsville, AL location.

BASIC QUALIFICATIONS:

  • Bachelor’s Degree and 8 or more years’ related experience in a computer related discipline; Associate and 10 years, Master’s and 6 years or equivalent work experience may be considered in lieu of a degree.
  • Must hold current Security+ or equivalent certification to be considered; must be able to maintain.
  • Relevant Experience Considered:
  • Cybersecurity, systems security or hardening, Information Technology.
  • Compliance-based auditing using the Risk Management Framework (RMF), DCSA Assessment and Authorization Process Manual (DAAPM), National Industrial Security Program Operating Manual (NISPOM) or Joint Special Access Program (SAP) Implementation Guide (JSIG).
  • Experience working with and/or supporting computer technologies (such as: databases, operating systems, computer network hardware, software programs, hardware troubleshooting or electronics).
  • Physical security, project or program management, office management, senior administration, or account management.
  • Experience with security configurations across multiple operating systems in various environments, to include Windows, Linux, UNIX, utilizing Active Directory/Group Policy, Centrify, etc. is required.
  • Highly organized and self-motivated with excellent documentation skills and the ability to work with minimal supervision.

PREFERRED QUALIFICATIONS:

  • Experience performing IT work with Windows or Linux systems is preferred.
  • Experience working in DoD classified operating and/or laboratory environments.
  • Experience with various information system security tools that address vulnerability analysis and mitigation. These may include SolarWinds, Tenable, SCAP.
  • Familiarity with implementation of Government directives and policies derived from NIST, STIG, DoD, or other Government Regulatory compliance standards within a professional industry.
  • Experience in the execution of the Assessment & Authorization processes, as defined within the Risk Managed Framework (RMF).
  • Experience providing technical security consultation for complex, cross-domain, diverse classified networked environments in collaboration with internal/external Customers, Information Technology (IT).
  • Familiarity with the execution and management of cyber incident response; preservation, containment, and eradication.
Responsibilities
  • Assessing and monitoring system compliance, auditing, security plan development and delivering information systems security education and awareness
  • Investigating information system security violations and help prepare reports specifying corrective and preventative actions
  • Conducting technical and administrative assessments
  • Integrating new cybersecurity processes, procedures, and tools
  • Support the creation, review and update of cybersecurity documentation and other technical writing
  • The ISSO’s primary duties will consist of managing the day-to-day compliance of our classified information systems by:
  • Auditing information systems to ensure compliance with security policies and procedures while reporting any discrepancies to the ISSM, ISO or FSO.
  • Assisting in the Risk Management Framework (RMF) authorization process by developing and maintaining artifacts for the IS Body of Evidence (BoE).
  • Reviewing and approving (within authority) Configuration Management (CM) requests of all associated hardware, software, and security relevant functions is maintained and documented as part of CCB approval process.
  • Assisting with sanitization and release of hardware in accordance with security policies or Authorizing Official (AO) guidance.
  • Testing/evaluation and application of required technical security controls and periodic inspections of information systems.
Loading...