Skip to Main Content
Information Systems Security Officer (ISSO)
SecuriGence LLC Arlington, VA

Information Systems Security Officer (ISSO)

SecuriGence LLC
Arlington, VA
Expired: April 11, 2024 Applications are no longer accepted.
  • Full-Time

Job Title: Information Systems Security Officer (ISSO)

Location: Arlington, Virginia

Clearance Level: DoD Top Secret Clearance

Summary

We deliver essential technology services to our customers in support of their missions to sustain the national security and economic interests of our nation. SecuriGence is seeking an Information Systems Security Officer to help contribute to our success. Help us solve problems with Innovation Through Intelligence.

Responsibilities

  • Provide oversight for assigned network(s) by working with operation's staff to ensure compliance per STIGs and IAVM.
  • This role requires being onsite five days a week during the initial training period of approximately two months. Telework is then allowed one day per week.
  • Ensuring that Stakeholders adhere to Federal Information Assurance policies and procedures to acquire and maintain an Information System's Authority to Operate (ATO) under The Federal Information Security Management Act (FISMA) of 2002.
  • Lead RMF A&A efforts including: activities within the A&A cycle and outside of the ISSO functions, work directly with ISSM, ISO, and AO, work with engineering and operations support staff to secure systems and ensure compliance, and provide oversight for existing and new POAMs.
  • Provided POAM support by advising CISO/AO of changes and assisting in the coordination of efforts to remediate deficiencies and vulnerabilities.
  • Responsible for performing ConMon reviews for daily, weekly, monthly and quarterly checks. (Primarily completed through Splunk. Small number of manual/administrative checks).
  • Assist with IR activities providing by verifying sanitation procedures are followed prior to submitting the CART Case to the CISO for closure.
  • Work with the Security Tools Team to identity Critical / High vulnerabilities for remediation and report network security posture at weekly CISO/AO meeting.

Skills and Experience

  • Experience with NIST SP 800-37, 800-137, 800-53 rev 4/5, 800-39, 800-171 and 800-171A for self-assessments; NIST 800-100, NIST 800-18.
  • Familiar with creating Assessment and Authorization (A&A) packages in eMASS and/or Xacta and applying security categorization per the NIST FIPS 199 and NIST SP 800-60.
  • Experience in performing and assessing Security and Privacy Controls per NIST 800-53 rev 4/5 and NIST 800-53a guidelines.
  • Experience with systems engineering design and development toward a "baked-in" security design using Information Assurance best practices.
  • Understanding of the FedRAMP process, coordinating with 3PAO's, and migrating on prem systems to an accredited cloud-based solution (e.g. AWS (GovCloud), Azure).
  • Understanding of vulnerability and scanning tools such as Assured Compliance Assessment Solution (ACAS) and well-versed in interpreting risk posture resulting from assessment reports.
  • Knowledge of vulnerability management, risk management, project management, proficient with Microsoft products - Word, Excel, PowerPoint.
  • Experience with Tenable's Nessus and/or Security Center, or Network Mapper is a plus.
  • Risk assessment experience, especially with NIST SP 800-53 Threat identification, system security categorization, gap analysis, and compliance reporting.
  • Must be able to validate security patches as they align to NIST guidelines, client policies and procedures, and OMB Mandates.
  • Experience with creating or maintaining security artifacts as part of the ATO package including but not limited to; System Security Plan (SSP), Contingency Plans (CP), Disaster Recovery Plans (DRP), Plan of Action and Milestone (POA&M), Incident Response (IR), and other security documentation.

Qualifications

  • Bachelor's degree. Can be substituted for Associate's degree with 2+ years relevant experience or 4 years relevant experience.
  • 5 years relevant experience.
  • DoD Top Secret Clearance is required.
  • IAT Level II Certification minimum.

About

SecuriGence LLC (SG) is an agile, Veteran-owned small business headquartered in the Washington, DC metropolitan region. Established in April 2010 we have been supporting the Department of Defense and other United States Civil agencies in Systems Engineering, Software Engineering, Software Development, Cyber Security, and Cloud/Virtualization Management.

SecuriGence provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

Address

SecuriGence LLC

Arlington, VA
22203 USA

Industry

Technology

Get fresh Information Systems Security Officer (ISSO) jobs daily straight to your inbox!

¹You may also apply directly on the company website.
By clicking “Continue” above,I agree to the ZipRecruiter Terms of Use and acknowledge I have read the Privacy Policy, and agree to receive email job alerts.