drjobs Isso 2

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Cambridge - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Overview:

Draper is an independent nonprofit research and development company headquartered in Cambridge MA. The 2000 employees of Draper tackle important national challenges with a promise of delivering successful and usable solutions. From military defense and space exploration to biomedical engineering lives often depend on the solutions we provide. Our multidisciplinary teams of engineers and scientists work in a collaborative environment that inspires the crossfertilization of ideas necessary for true innovation. For more information about Draper visit .

Job Description Summary:

The Information System Security Officer 2 (ISSO) supports the continuous monitoring and authorization efforts of multiple classified information systems under the direction of the Information System Security Manager (ISSM). Performing a variety of technical and nontechnical Cyber Security functions. Responsibilities also include physical and environmental protection personnel security incident handling and security training and awareness. In close coordination with the ISSM and ISO the ISSO plays an active role in monitoring a system and its environment of operation to include developing and updating the SSP managing and controlling changes to the system and assessing the security impact of those changes.

Job Description:

Duties/Responsibilities
Assist the ISSM in meeting their duties and responsibilities. The ISSO shall assume ISSM responsibilities in the absence of the ISSM.
Ensure systems are operated maintained and disposed of in accordance with security policies and procedures as outlined in the security authorization package.
Attend required technical and security training (e.g. operating system networking security management) relative to assigned duties.
Ensure all users have the requisite security clearances authorization needtoknow and are aware of their security responsibilities before granting access to the IS.
Conduct periodic reviews of information systems to ensure compliance with the security authorization package.
Coordinate any changes or modifications to hardware software or firmware of a system with the ISSM and AO/DAO prior to the change.
Formally notify the ISSM and AO/DAO when changes occur that might affect system authorization.
Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly.
Ensure all IS securityrelated documentation is current and accessible to properly authorized individuals.
Conduct Audits and Continuous Monitoring (ConMon) activities using available technical and nontechnical processes reports Audit and ConMon findings Execute incident response and attends and contributes to status meetings.
Manage configuration baselines of both hardware and software
Identify system architecture flaws using industry standard tools (e.g. STIG SCAP Nessus) that will be flowed to the ISSM for review.
Mentors and coaches ISSO 1.
Performs other duties as assigned.

Skills/Abilities
Fundamental understanding of common auditing techniques
Understanding of RMF (NIST SP 80053 JSIG DAAPM ICD 503) IR Vulnerability Management SCAP STIG and SecurityRelevant Tools.
Understands Information Technology basics.
Awareness of network type designations (e.g. WAN LAN) and associated infrastructure (e.g. Servers switches firewalls).

Education
Requires a bachelors degree in Information Technology or a related field.
Equivalent industry experience may be substituted.
Possesses an IAM I/IAT II Certification or greater.

Experience:
35 years year relevant industry experience is required
Preferred experience with auditing systems using native language (PS/BASH) with tools and basic scripts / queries and experience working with ISSMs to create and manage POA&Ms.

Additional Job Description:

Applicants selected for this position will be required to obtain and maintain a government security clearance.

Current in scope Top Secret security clearance is required.

Connect With Draper for Future Opportunities! If you dont find the right posting in our Career Opportunities you may submit your resume for future consideration.

Job Location City:

Cambridge

Job Location State:

Massachusetts

Job Location Postal Code:

0

Our work is very important to us but so is our life outside of work. Draper supports many programs to improve worklife balance including workplace flexibility employee clubs ranging from photography to yoga health and finance workshops off site social events and discounts to local museums and cultural activities. If this specific job opportunity and the chance to work at a nationally renowned R&D innovation company appeals to you apply now is committed to creating an inclusive environment. We understand the value of inclusivity and its impact on a highperformance culture. All qualified applicants will receive consideration for employment without regard to race color religion sex disability age sexual orientation national origin veteran status or genetic information. Draper is committed to providing access equal opportunity and reasonable accommodation for individuals with disabilities in employment its services programs and activities. To request reasonable accommodation please contact .

Employment Type

Full-Time

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.