Mid Information System Security Officer (ISSO)
Job Description
Job Description
Mid Information System Security Officer (ISSO)
We are seeking an energetic, self-starter to join our growing team to support our information security efforts.
The Information System Security Officer (ISSO) serves as the principal advisor on all matters related to system security. The ISSO is responsible for ensuring the implementation and maintenance of security controls in accordance with the security plan and relevant security policies.
Job Type: Full-time, 40 hours per week
Hours: Monday through Friday, (will need to be available all day from 8am-5pm)
Salary Range: up to 125,000 per year
Work location: Government Site (Rockville, MD | Washington DC | or an ESS LoB customer site)
Required skills/knowledge for Information System Security Specialist:
- Demonstrate 8-10 years of IT security experience in the IT security Federal arena as an ISSO or related position
- Must have an active Public Trust clearance and be able to maintain at least a Public Trust clearance for the duration of the contract.
- Proficient written and oral communications skills.
- Possess applicable certifications and credentials such as Certified Information Systems Security Professional (CISSP) or equivalent by a recognized and reputable organization.
- In-depth knowledge of laws, directives, orders, etc., pertaining to IT security and directing Federal government agencies.
- Understanding of security requirements in a various environment to include secured and non-secured.
- Familiarity with general IT security products (hardware, software, and services), technologies, protocols, and best practices as related to SA&A. This would include Cloud Service Providers (CSPs), scanning tools, account administration tools and the like.
- Prior experience writing documentation to satisfy NIST (National Institute of Standards and Technology) guidance, FISMA (Federal Information Security Management Act), FISCAM (Federal Information System Controls Audit Manual), White House Memorandums and other federal regulations.
- Work with System Security personnel to include Engineers and System Administrators to properly document data flows, system architecture, and other necessary diagrams/charts.
- Knowledge and experience with the NIST 800-53 Rev5 or the applicable version released, as well as ability to properly document security control implementation statements.
Job details:
- Advise senior management to include but not limited to Business Owners (BOs), System Owners (SOs) and applicable security experts)) on risk levels and security posture.
- Provide strategic risk guidance for information system security tasks, including the evaluation and recommendation related to implementing applicable controls or mitigating solutions.
- Oversee or provide recommendations on new technology solutions for a particular system or program.
- Provide input on technical reports, studies or white papers.
- Ensure audit trails, system logs and other monitoring data sources are reviewed periodically and comply with policies and audit requirements.
- Review and provide security input/feedback on I.T. service procurement packages related to a particular information system or program
A background check is required in order to obtain a security clearance.
Job Posted by ApplicantPro