Information systems security officer - security clearance required | Centreville, VA

Detailed Information

  • Location: Chantilly, VA

problem-solving skills, and the ability to work both independently and collaboratively in a team environment as required. Duties/Tasks and Responsibilities: · Perform all ISSO related duties as required by ICD 503, applicable NRO, IC, Do D policies, procedures and operating instructions related to information Technology, Information Assurance, Information Management (IT/IA/IM) · Perform Configuration and Change Management for the security relevant IS software, hardware, and firmware, Event Management, Vulnerability Management, Security Incident Management, POA&M Management, Reauthorization, and Decommissioning of IT asset environments.

· backsses threats to and vulnerabilities of the

IS. Develops approaches to mitigate IS vulnerabilities and recommend changes to system or system components as needed. · Identifies, backsses, and recommends IA or IA-enabled products used within IS; ensures products follow IC evaluation and validation requirements.

· Maintains IA architectures and designs for designs for National Security Systems with security categorizations of confidentiality, low to moderate; integrity, low to moderate; and availability, low to moderate. · Manage the day-to-day system security including physical and environmental protection, incident handling, and information system security training and awareness. · Maintain information system documents, following

IC, applicable policies, procedures, and templates. · System Security Plan · Incident Response Plan · Information System Contingency Plan · Configuration Management Plan · Maintain Information System documentation record in GRC tool SNOW · Perform continuous monitoring (Con Mon) and periodic self-inspections of information systems to ensure security compliance.

· Review Nessus security scans, communicate vulnerabilities to technical stakeholders, and perform remediation. · Perform and review Security scans according to the quarterly updates. · Support customer responses to ongoing information system audits and reviews in accordance with established schedules · Ensure change control requirements are documented and tracked according to the Configuration Management Plan · Monitor and track status of applicable patches including IA Vulnerability Alerts (IAVA), IA Vulnerability Bulletins (IAVB) and Technical Advisories (IA) for the information system.

· Conduct periodic reviews of Privileged User (PU) accounts (Developer, Admin, etc. ) · Assist in the development and creation of new policies/procedures as needed. · Maintain Approval to Operate (ATO), including the resolution of any Plans of Action & Milestones (POA&M) documents. · Maintain Information system security posture and perform vulnerability management.

· Perform DTO activities including virus scanning, classification determination, labeling and appropriately transfer data (uploading/downloading) between various information systems as required. · Responsible for Portable Electronic Device (PED) registrations and tracking. · Provide security design guidance and analysis to the project team throughout the RMF process. · Perform reviews of technical security backssments of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations, and recommended mitigation strategies.

· Develop and maintain a Data Loss Prevention process to investigate, track, and mitigate security incidents. · Responsible for implementing and maintaining security services tools within the Risk Management Framework (RMF). · Maintain effective communication with the ISO, AO or DAO, ISSE, SCA, ISSM and CPSO · Provide briefings on the security posture and compliance status of assigned system(s) to Security Management #DVS #DIVERGENT #DIVERGENTSOLUITIONS Here’s What You’ll Need: Qualifications: · Current CISSP, Comp TIA Security+ CE cert, OR CASP+ CE certification · Top Secret/SCI security clearance with a Polygraph · Experience with Service Now, and Security Center · Experience with HBSS, EVSS, AND/OR EITA bundle onboarding functions and corresponding tool suite · Experience with Splunk · Possess skills including organizing, scheduling, conducting, and coordinating work assignments to meet project milestones or established completion dates.

· Self-starter who is proactive, efficient with their time, and able to prioritize tasks on a daily basis. · Experience with computer networks, applications, processes and accesses.

· Be customer-focused and possess the ability to identify issues, analyze, and interpret data and develop solutions to a variety of moderately complex technical problems. · Demonstrate strong interpersonal skills to effectively interface with all levels of employees and be able to represent the organization as a knowledgeable resource. · Thorough working knowledge of all applicable NRO, IC, Do D policies, procedures and operating instructions related to Information Technology, Information Assurance, Information Management (IT/IA/IM). · Bachelor’s Degree and 8 years of work experience or equivalent such as Associate's and 12 yrs.

or Master’s degree and 5 yrs. experience For more details: jobs-search. org/architecture-construction_chantilly-c449888/information-systems-security-officer-security-clearance-required-chantilly_i1970363884

View Jobs by Category >>

Related Jobs