Information Systems Security Officer

3 days ago


Fort Meade, United States Amentum Full time
The Intel and Cyber Division is assembling a team of network engineers, systems engineers, Unified Communications Engineers, and Integration Engineers, change management specialists, information assurance professionals, and procurement personnel knowledgeable in SCRM processes to support a program that provides critical network capabilities. We are committed to recruiting and retaining this team for prototype development, test, and demonstration, as well as making this team available longer term for integration, deployment and sustainment as needed.

Candidates interested in joining the team must be critical thinkers, have a strong work ethic, and be able to work independently or as a member of a team in a dynamic environment that supports a critical and rewarding mission. We value candidates who are detail-oriented while also being able to think and react quickly to emerging and unique problem sets. To be successful, you must be able to rapidly adapt and learn how to operate the front and back end of new products and processes.

Responsibilities:

The duties and responsibilities of the Information Systems Security Officer include, but are not limited to, the following:

  • Generate and maintain the complete security Body of Evidence (BoE) while leading the A&A activities according to the Risk Management Framework (RMF) processes (ICD 503, CNSSI-1253, NIST 800-37, NIST 800-53, etc.) for all multiple information systems.
  • Lead the development and maintenance of information security policies, standards, and control procedures to enable compliance with RMF.
  • Complete Security Authorization packages, to include System Security Plans, Security Assessment Reports, POA&M summaries and a Continuous Monitoring Plan/assessment schedule, and present executive briefing to senior management.
  • Ensure security risk assessments are conducted as appropriate on any system upgrades, software/hardware changes, etc.
  • Ensure security authorization boundaries are properly defined and captured in the system security plans, and that all interconnection agreements are in place and current.
  • Ensure system security controls contain accurate implementation statements and assessments results, and that appropriate artifacts are completed to support findings provide hands-on assistance as appropriate.
  • Ensure POA&Ms have appropriate milestones, accurate description of the weaknesses and remediation, estimated cost to completion and realistic due dates providing hands-on assistance to components as necessary.
  • Maintain day-to-day security posture and continuous monitoring of all Information Systems.
  • Review system vulnerability scans, verify implementation of DISA STIG’s, and ensure other security relevant information system configuration tasks are completed.
  • Perform test/evaluation of required technical security controls including performing certification tests and periodic inspections of information systems.
  • Develop and conduct test procedures for verification Assessment and Authorization (A&A), Risk Management Framework (RMF) safeguards to meet customer requirements based NIST publications.
  • Assess changes to an IS by performing periodic self-inspections, tests, and reviews of the IS program to ensure that systems are operating as authorized/accredited and that conditions have not changed; ensure corrective actions are taken for identified findings and vulnerabilities.


Requirements:

  • Must meet DoD 8570.01-M IAT-II or IAM-I baseline certification requirements such as Security + or equivalent.
  • Experience with Microsoft Office applications such as Excel, Word, and Outlook.
  • Experience in development of technical documentation to include artifacts required to support Assessment & Authorization (A&A) under the Risk
  • Management Framework.
  • Experience with security configurations across multiple operating systems in various environments, to include Windows, Linux, UNIX, utilizing Active Directory/Group Policy.
  • In-depth knowledge of Microsoft Windows OS (client and server); familiarity with Red Hat Enterprise Linux (RHEL) desired.
  • Experience in development of technical documentation to include artifacts required to support Assessment & Authorization (A&A) under the Risk Management Framework.
  • Experience with eMASS, XACTA, ACAS/NESSUS, Trellix, and Splunk.
  • Experience with risk managed downloads, IS sanitization and destruction, contaminations, incident response, virus scanning, privileged user access, and hardware/software configuration management.
  • Experience with developing IT policy, guidance, or procedure documentation supporting cybersecurity accreditations.
  • Experience with analyzing, assessing, or implementing NIST SP 800-53 security controls, CCIs, and associated assessment procedures.
  • Experience with developing and presenting complex technical information for technical and non-technical audiences.
  • Expert familiarity with RMF.
  • Experience with Microsoft Office applications such as Excel, Word, Outlook, and SharePoint.
  • Exceptional attention to detail; excellent verbal and written communication skills; strong organizational skills; critical thinking and problem-solving skills.
  • Ability to work both independently and as part of a team in a dynamic environment.
  • Ability to travel up to 25%.


Clearance Required:

  • Must have active Top Secret clearance with SCI or TS with the ability to acquire SCI


Minimum Education:

  • High School Diploma


Minimum Years of Experience:

  • 8+ years of related experience


Preferred:

  • Bachelor's degree in cybersecurity or related field
  • Previous supervision and/or participation with cybersecurity Assessment and Authorizations.
  • Ability to provide hands-on cyber security tool assistance as necessary.
  • Familiarity with cybersecurity tool suite; ForeScout, Avanti, and HBSS.


#javelin

Pay Transparency Verbiage

Amentum’s health and welfare benefits are designed to invest in you and in the things you care about. Your health. Your well-being. Your security. Your future. Eligible employees and their dependents may elect medical, dental, vision, and basic life insurance. Employees are able to enroll in our company’s 401k plan, and, if eligible, a deferred compensation plan and Executive Deferral Plan. Employees will also receive 17 days of vacation per year, seven paid holidays, plus floating holidays and caregiver leave. Hired applicants will be able to purchase company stock and have the opportunity to receive a performance discretionary bonus.

The base salary range for this position is $140K to $155K. This range reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training.

  • Meade, United States Farfield Systems Full time

    Job OverviewFarfield Systems is seeking a highly skilled Information Systems Security Officer to join our team. As an ISSO, you will be responsible for ensuring the security and integrity of our information systems and networks.Key Responsibilities:Review and analyze security scan results to identify potential vulnerabilities and provide recommendations for...


  • Fort Meade, Maryland, United States Quantech Services Full time

    Job Title:Cybersecurity SpecialistJob Summary:Quantech Services is seeking a highly skilled Cybersecurity Specialist to join our team. As a Cybersecurity Specialist, you will be responsible for providing support for a program, organization, system, or enclave's information assurance program. You will provide support for proposing, coordinating, implementing,...


  • Fort Meade, Maryland, United States Birchmere Group Full time

    Job DescriptionJob Summary:We are seeking a highly skilled Information Systems Security Officer to join our team at Birchmere Group. The successful candidate will be responsible for providing support for a program, organization, system, or enclave's information assurance program. This includes proposing, coordinating, implementing, and enforcing information...


  • Fort Meade, Maryland, United States Birchmere Group Full time

    Job DescriptionBirchmere Group is seeking a highly skilled Information Systems Security Officer to join our team. The successful candidate will be responsible for providing support for a program, organization, system, or enclave's information assurance program.The ideal candidate will have a strong background in IT, cybersecurity, or security authorization,...


  • Fort Drum, United States General Dynamics Information Technology Full time

    Job Title: Information Systems Security OfficerJob Summary:The Information Systems Security Officer will be responsible for implementing and maintaining the Risk Management Framework (RMF) program for the MTC network enclaves. This includes defining and implementing standard operating procedures, implementing DoD, Army, and MTC policies, and creating plans...


  • Fort Meade, Maryland, United States Lockheed Martin Full time

    Unlock the Future of CybersecurityAt Lockheed Martin, we're pushing the boundaries of innovation in cybersecurity. As a key member of our team, you'll play a critical role in protecting our nation's most sensitive information and systems.About the RoleWe're seeking an experienced Information Systems Security Engineer (ISSE) to join our team. In this role,...


  • Meade, United States ST2 ManTech Advanced Systems Intl Full time

    Secure Our Nation, Ignite Your FutureAt ST2 ManTech Advanced Systems Intl, we're seeking a highly skilled and experienced Program Chief Information Security Officer (CISO) IV to join our team in the DMV area. This is an exciting opportunity to work on innovative projects that offer opportunities for advancement while helping to protect our national...


  • Fort Meade, United States Base-2 Solutions, LLC Full time

    Job Description: Maintain the appropriate operational security posture for assigned systems, programs, and/or enclaves. Provide guidance and technical expertise on all matters that impact or affect the information system's security. Assisted in the development and execution of an enterprise-level continuous monitoring program to minimize security risks and...


  • Meade, United States ST2 ManTech Advanced Systems Intl Full time

    Secure Our Nation, Ignite Your FutureAt ST2 ManTech Advanced Systems Intl, we're seeking a highly skilled Program Chief Information Security Officer (CISO) IV to join our team in the DMV area. This role offers a unique opportunity to work on innovative projects that drive national security and provide opportunities for advancement.Key...


  • Fort Meade, United States Dynamic Data Solutions, D2S Full time

    COMPANY DESCRIPTIONDynamic Data Solutions (D2S) is a leading provider of Information Technology (IT) and cyber security solutions for Department of Defense (DoD) and private sector mission partners in the MD, DC, and VA areas. We offer a range of consulting services that assist companies in reducing risk, securing critical enterprise infrastructure,...


  • Fort Meade, Maryland, United States Birchmere Group Full time

    Job Title: Information Systems Security OfficerAt Birchmere Group, we are seeking a highly skilled Information Systems Security Officer to join our team. The successful candidate will be responsible for providing support for a program, organization, system, or enclave's information assurance program.Key Responsibilities:Propose, coordinate, and implement...


  • Fort Meade, Maryland, United States Modern Technology Solutions Inc Full time

    Job Title: Information Systems Security EngineerModern Technology Solutions, Inc. (MTSI) is seeking a highly skilled Information Systems Security Engineer to join our team in the Ft Meade, Maryland area in support of a government organization essential to U.S. national security.The ideal candidate will have a strong background in cybersecurity, information...


  • Meade, United States Lockheed Martin Full time

    Unlock Your Potential as a Cybersecurity ProfessionalJoin Lockheed Martin's esteemed team of cybersecurity experts and embark on a challenging and rewarding career path. As an Information Systems Security Engineer (ISSE), you will play a critical role in protecting our nation's critical infrastructure and ensuring the security of our digital world.About the...


  • Fort Meade, Maryland, United States ManTech Full time

    Job SummaryThe Information Systems Security Manager, Process Research IV at ManTech is responsible for ensuring the day-to-day implementation, oversight, and maintenance of security configuration, practices, and procedures for research systems. This role involves conducting research, analyzing processes, and developing strategies to enhance the security...


  • Fort Meade, Maryland, United States InterImage Full time

    Job Summary:As an Information Systems Security Specialist at InterImage, you will be responsible for maintaining responsibility for all ISSO duties in support of Information Systems, CSS Risk Management Framework, IC Directive, 503 Practitioners manual and the Committee on National Security Systems Instruction, and 1253 security controls. You will serve as...


  • Fort Meade, Maryland, United States Amentum Full time

    Job Summary:We are seeking an experienced Information Systems Security Manager to join our team at Amentum. The successful candidate will be responsible for providing management support for a program, organization, system, or enclave's Information Assurance program. This includes proposing, coordinating, implementing, and enforcing Information System...


  • Fort Meade, Maryland, United States Amentum Full time

    Job Summary:We are seeking an experienced Information Systems Security Manager to join our team at Amentum. As a key member of our cybersecurity team, you will be responsible for managing the security posture of our information systems and ensuring compliance with relevant regulations and standards.Responsibilities:Provide management support for a program,...


  • Fort Meade, United States Lockheed Martin Full time

    Job ID: 664282BR Date posted: Oct. 07, 2024 Program: ILDescription:This position may be eligible for up to $25K sign on bonus for external hires!What We're Doing:Lockheed Martin, Rotary Mission Systems Cyber & Intelligence invites you to step up to one of today's most daunting challenges: the use of advanced electronics to undermine our way of life. As a...


  • Meade, United States ST2 ManTech Advanced Systems Intl Full time

    Secure Our Nation, Ignite Your FutureAt ST2 ManTech Advanced Systems Intl, we're seeking a highly motivated and experienced Program Chief Information Security Officer (CISO) IV to join our team in the DMV area. This is an exciting opportunity to work on innovative projects that offer opportunities for advancement.Key Responsibilities:Collaborate with mission...


  • Fort Meade, Maryland, United States Birchmere Group Full time

    Job DescriptionAs a seasoned Information System Security Manager, you will provide management support for a program, organization, system, or enclave's Information Assurance program. Your expertise will be instrumental in proposing, coordinating, implementing, and enforcing Information System Security policies, standards, and methodologies.Key...