Information System Security Officer (ISSO)
Fort Belvoir, VA - USA
Job Summary
About the Role
US Army INSCOM is seeking an Information Systems Security Officer II (ISSO II) to support G6 at Fort Belvoir VA. The successful candidate will have experience working as an ISSO on large Department of Defense contracts and leading a team of other cyber security professionals in support of project and client goals and objectives.
Key Responsibilities
Perform the duties of an Information System Security Officer (ISSO) as defined in AR 25-2 DAand the NIST SP 800-53 security controls when theorganizationally-definedpersonnelincludesthe ISSO
Actively manages the organizationseMASSrecords whichincludesbutisnot limited to:
Validates security controls including associated artifacts
Assesses security scan results and STIGs asrequired
Performs POA&M updates tracking and resolution
Leads the continuous monitoring activities of the organization
Manages the day-to-day activities and the professional development of the Cybersecurity Analysts
Collaborates with the O-ISSM on all assessment and authorization activities to ensure the information systemsmaintainan authority tooperate(ATO) on all applicable DoD/IC networks
Maintain up-to-date status on all assigned systems and communicate status to the Government leads
Maintain complete records ofcommunicationssubmitwritten status reports asrequired perform peer-review as directed and attend weekly meetings
Correspond with the Government customer and system administrators to communicate any unacceptable risksidentifiedand correct deficient POA&M items to meet DoD and IC standards
Coordinate with the Security Control Assessor (SCA) to perform analysis of the overall risk level the system poses to enterprise networks and to mission data
Create andmaintaincybersecurity policies and standards
Ensure that cybersecurity plans controls processes standards policies and procedures are aligned with cybersecurity standards
Ensures security scans and STIG checklists are updated according to DA G2 policy
Produces actionable risk-based reports on security assessment results
Assistswith vulnerability remediation when necessary
Develops andmaintainssecurity plans and security testing plans
Periodically updates and improves risk models; metrics; reports; processes; and activities to stay compliant with evolving DoD and IC standards
Ensures the user community understands and adheres to necessary procedures tomaintainsecurity posture of the information systems
Provides guidance in the creation and maintenance of Standard Operating Procedures (SOPs); Tactics Techniques and Procedures (TTPs); and other similar documentation
Required Experience/Clearance
PhD in an area of Science Technology Engineering or Mathematics with at least:
15 years experience as a cybersecurity professional
OR
a Masters degree in an area of Science Technology Engineering or Mathematics with at least 18 years experience as a cybersecurity professional
OR
a Bachelors degree in an area of Science Technology Engineering or Mathematics with at least 20 years experience as a cybersecurity professional
Active TS security clearance and eligible for SCI and NATOread-onprior to starting work
Meet the DoD requirements for a privileged user on a TS/SCI information system prior to starting work - DoD 8140 / 8570.01-m requirements
15 years experience with the assessment and accreditation activities of national security systems (NSSs)
10 years experience validating system security controls
10 years experience with vulnerability management
10 years experience with DISA Security Technical Implementation Guides (STIGs) DISA Security Requirements Guide (SRG) and vendor-specific security guides
8 years experience with RMF and eMASS
5 years experience with POA&M tracking and resolution
3 years experience performing the continuous monitoring of system security controls
Desired Experience
10 years experience as an ISSO on Army Intel programs
2 years experience with AC2SP tenant assessment and accreditation activities
Required Experience:
Unclear Seniority
About Company
We’ve all been on your side of the table at some point in our careers, in uniform or government. That experience helps us understand your challenges in a…