Information System Security Officer (ISSO)
Description
Job Description
SAIC is looking for an Information System Security Officer (ISSO) and/or Alternate Information System Security Officer (AISSO) for one or more major federal IT information systems as a member of the customer directorate’s Security Team. Overall, they will be responsible for utilizing the NIST Risk Management Framework (RMF) and related Continuous Monitoring activities to maximize the security of their assigned system(s) and ensure compliance with Federal Information Security Management Act (FISMA) requirements and customer policies and processes.
This position is hybrid-remote requiring 2 days on-site per week in Ashburn, VA.
Responsibilities
- Participate in program planning, prepare Authority to Test (ATT) and Significant Change (SC) documentation, and push these initiatives to completion.
- Review Nessus, WebInspect, and DBProtect security scans, communicate vulnerabilities to technical stakeholders, and track them to remediation.
- Proactively report security status and concerns to management and make recommendations as appropriate.
- Assist directorate with yearly audit responses and security-related data calls to upper management and DHS OCIO.
- Develop and update standard government security documentation such as System Security Plans, Contingency Plans, Interconnection Security Agreements, Risk Acceptances/Waivers, Privacy Threshold Analyses, Privacy Impact Assessments, Interconnection Security Agreements, waiver requests, and other ad-hoc documentation as needed.
- Review and approve/deny relevant system Change Requests as needed.
- Perform system audit log reviews in accordance with established policy requirements using Security Information and Event Management (SIEM) tools such as Splunk, Kibana, etc.
Qualifications
Qualifications
- Has created, tracked, and pushed to completion Plans of Action and Milestones (POA&Ms) for resolving security control deficiencies.
- Has completed a new or renewed system Certification and Accreditation (C&A) package from start to finish.
- Is experienced in effectively communicating security vulnerabilities with technical POCs and management.
- Has significant security experience with systems primarily supported by Linux OS (on premises) or Amazon Web Services (AWS).
- Has significant experience and knowledge of how to interpret details of vulnerability scans, including Tenable Nessus.
- Has significant experience writing or updating system Security Plans.
- Ability to communicate effectively verbally and in writing.
- Prior experience supporting the federal government in an IT environment.
- Experience creating, tracking, and updating Interconnection Security Agreements (ISAs), risk acceptance memorandums, and policy waiver requests.
Education and Experience
- BS or equivalent work experience in the Information Assurance / Cybersecurity field.
- 9+ years of overall IT security experience.
- 2+ years of experience as a primary ISSO or security compliance lead for an IT system.
- Possess one of the following: CISSP, CCSP, or CEH certifications.
- Has led annual Contingency Plan Tests in either tabletop form or as actual fail-over tests.
- Experience creating, tracking, and updating security policies and/or procedures.
- Expertise in using Splunk or other SIEM tools.
- Security experience with cloud systems hosted by Amazon Web Services (AWS).
- Experience leading an IT security team.
- Experience with DoD STIG system configuration standards.
BI Requirement
- Current holder (with an ability to maintain) of a DHS Public Trust / CBP Background Investigation (BI) clearance (requiring US Citizenship).
- Note: Employment will be contingent upon having/obtaining a DHS Public Trust / CBP BI clearance prior to starting.
Recommended Jobs
Front Desk Coordinator - Hampton, VA
Job Description Job Description Are you looking for a company you can grow your career with and advance in? Are you goal oriented, self-motivated & proactive by nature? Do you have a passion …
Server
Sfoglina is inspired by the female pasta makers of Italy—today it’s cultural icons--who carried on the tradition and the art of making pasta by hand. This craft is showcased daily in our pasta rooms.…
IT Architect - Cloud Sltns
Description & Requirements As a member of the Contact Center CX - Innovation and Architecture team, the IT Architect should be able to implement strategic goals established by leadership; lead, …
Secret Cleared Software Developer
Are you looking for your next challenge? Are you ready to work with a performance-based small company? At Zantech, we are a dynamic Woman Owned Small Business focused on providing complex, mission-fo…
RMA (Registered Medication Aide) 2nd/3rd shift
Job Description Job Description Designed and purpose built for seniors, our communities incorporate resort-style amenities and social activities to provide seniors a carefree, maintenance-free li…
DCGS Systems Administrator
Pioneers. Innovators. Professionals. TechINT Solutions Group (TechINT) is recognized for its knowledge and experience in providing innovative technology exploitation, operational intelligence, counter…
Intelligence Trainer
Intelligence Trainer Why This is an Exciting Role: At Boeing Intelligence and Analytics, we are all innovators on a mission to connect, protect, explore and inspire. From the seabed to outer sp…
Hairstylist
HairTalk Beauty Salon provides a personal, one-on-one total hair care experience in a timely manner with expertise for all of your needs. Both appointments and walk-ins are welcome. HairTalk Beauty S…
Package Delivery Driver
Strategic Growth Logistics is an Amazon Delivery Service Partner (DSP) looking for enthusiastic, team players to deliver Amazon packages. DSPs are independent businesses that partner with Amazon …
Anime Club Teacher (Part Time, In-Person)
Job Description Job Description Job Title: Anime Club Teacher (Part Time) General Responsibilities: Under the supervision of the Director of Educational Development, plans and facilitates a…