Information System SecurityOfficer (ISSO)
Information System SecurityOfficer (ISSO) Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country's most critical role - protecting our national security. Why Join Us?
- Innovative Projects: KBR's work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.
- Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.
- Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.
- Security Management:
- Develop, implement, and maintain security policies, procedures, and standards to safeguard organizational information systems.
- Conduct regular security assessments, vulnerability scans, and penetration testing to identify and mitigate potential threats.
- Monitor security alerts and logs to respond to incidents in a timely manner, ensuring compliance with DoD regulations.
- Manage Privileged Access Management (PAM) solutions to ensure secure access control for sensitive systems and data.
- Filter and generate reports from Security Information and Event Management (SIEM) tools to provide insights into security incidents and trends.
- Respond to JFHQ-DODIN issued orders, such as Cyber Task Orders (CTO).
- Participate in DoD mandated Zero Trust efforts (initiatives, planning, testing and implementation).
- Systems Administration
- Administer Windows and Linux servers, ensuring optimal performance, security and uptime.
- Manage Active Directory for user account provisioning, authentication, and access control, ensuring compliance with organizational security policies.
- Implement and maintain STIGs to harden system configurations and reduce vulnerabilities across all server environments.
- Virtualization and Cloud Management
- Oversee the virtualization of servers using VMware, Hyper-V, or similar technologies, ensuring secure and efficient resource allocation.
- Manage cloud-based services and applications, ensuring they adhere to security policies and best practices.
- Risk Management Framework (RMF) Compliance
- Apply RMF principles to assess and manage risk associated with information systems, including categorization, selection of security controls, implementation, assessment, authorization, and continuous monitoring.
- Collaborate with stakeholders to ensure all systems are RMF-compliant and maintain relevant documentation.
- Training and Awareness
- Develop and conduct security training programs for staff to enhance awareness of information security best practices and organizational policies.
- Function as a security advisor to other departments, providing guidance on secure system design and implementation.
- Documentation and Reporting
- Maintain comprehensive documentation of security processes, incidents, and remediation efforts.
- Prepare and present reports on security posture, vulnerabilities, and incident response efforts to senior management and other stakeholders.
- Additional Tools and Technologies
- Experience with McAfee ePolicy Orchestrator (ePO) for centralized security management.
- Familiarity with Assured Compliance Assessment Solution (ACAS) for vulnerability scanning and compliance monitoring.
- Location: Remote
- Travel Requirements: [Minimal 0-20%
- Working Hours: Standard
- Education: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field
- Certifications: CISSP, CISM, CASP, Security+
- Security Clearance: Active TS/SCI
- Experience: Minimum 10 years of system administration or cybersecurity-related experience, specifically within DoD environment.
- Technical Skills:
- Proficient in Windows server and Linux server management, including installation, security policies, configuration, and troubleshooting.
- Education: Master's degree in computer science, Information Technology, Cybersecurity, or a related field. Advanced degrees or certifications (CISSP, CISM, CASP, Security+)
- Virtual Desktop Infrastructure: Horizon, UAG, Provision and Maintain VM pools
- Client Support: Solid understanding and experience supporting zero/thin clients
- Risk Management System Support: Experience supporting systems within a DoD Risk Management Framework (RMF) accredited environment.
- SIEM Solutions: Splunk, SolarWinds, etc.
- Skills: Coordination, Communication and Presentation skills
- Functionality: Layer 2/3 Networking experience
- Firewall experience
- DoD 8570 certifications: Security+, CISSP, Computing Environment
- DoD Network experience: Experience working with DoD Wide Area Networks and familiarity with various network architectures and common protocols to include:
- Experience working with Defense Research and Engineering Network (DREN)
- Experience working with the Secret Defense Research and Engineering Network (SDREN)
- EPO (Trelix) experience - policy, agent updates, compliance dashboards, ACAS experience - scanning, reporting, compliance dashboards
Recommended Jobs
Telecommunications All Source Analyst (Top Secret/SCI Clearance)
Job Description Job Description Salary: What company will I be working for?You will be working for a national security services firm, providing cutting-edge services across DoD and other agenc…
Government and Public Sector - HSPD and Enrollment Specialist
At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and…
Cardiothoracic Physician Assistant
Palm Health Resources is hiring an experienced Cardiothoracic Physician Assistant for a high profile Cardiothoracic Surgery Group in Roanoke, VA! The Majority of the role is at least 70-75% OR Time…
Associate Attorney Maryland-based (remote)
Full job description Glasser and Glasser, P.L.C., a well-respected law firm based in Norfolk, Virginia, is seeking to add an Associate Attorney to join the firm’s Creditors’ Rights practice. Must …
Church Secretary
Position Overview The Calvary Baptist Church Secretary is a dedicated and organized individual whose role is crucial to the ongoing administrative operations of our church. This person provi…
Sales Manager
Job Summary/Company : Sparks Group has partnered with a leading nationwide enterprise sustainable solutions integrator seeking a sales manager. If you have 5+ years of B@B Experience and want to be …
Cyber Project Manager
Cyber Project Manager Location: Arlington, VA (Hybrid Work) Must have an active Top Secret Security Clearance Node.Digital is supporting a U.S. Government customer to provide support for onsi…
Sales Specialist
Sales Specialist — Trivinci Systems (Leesburg, VA + Remote, U.S.) Sell a product drivers actually want . Scale it nationwide. Trivinci Systems builds industry-leading video + data systems for m…
Risk Manager, Card Data Management
Overview Risk Manager, Card Data Management Do you like working in the spotlight? Are you ready to work on the front line of a top 10 Bank? Can you build relationships as well as develop and i…