Cyber ISSO/ISSE

3 months ago


Sterling, United States KEMTechnology Full time
Job DescriptionJob DescriptionSalary:

THE OPPORTUNITY:

Our Federal customer with a Systems Engineering & Integration (SE&I) program focuses on providing agency with advisory and technical services with the effort of helping them support the management of their various cyber programs. Supporting activities span a wide range of topics, including requirements formation, requirements feasibility analysis, technology subject matter expertise, cyber industrial technology awareness, information assurance, independent validation, and verification (IV&V), penetration testing, prototypes, enterprise architecture, technical documentation authoring and analysis of 3rd party technical documentation, and technology roadmaps.

RESPONSIBILITIES/QUALIFICATIONS: 


This role is 40/60 split between ISSO and ISSE functionsAs an information systems security officer (ISSO), you will oversee and manage all aspects of an organization's information security system, including researching, testing, training, and implementing programs designed to safeguard sensitive information from any possible breaches.  It will also encompass:

  • Getting the system authorized for operations (ATOs)
  • Continuous monitoring of system (ConMon) where they are responsible for monitoring and tracking system vulnerabilities and compliance issues
  • Generates Plans of Action & Milestones (POA&M) to track the mitigation of vulnerabilities and compliance issues.
  • Responds to data calls, scan requests and weekly and monthly reporting
  • Generates security artifacts such as System Security Plans, Security Control Traceability Matrices, Configuration Plans and Contingency Plans and Testing, and Self-Assessment Test Plans

As an information systems security engineer (ISSE), you will safeguard networks against unauthorized modification, destruction, or disclosure.

  • Conducts risk analysis on products reviewing CVEs, plugins, CWEs etc.
  • Facilitates Technical Insertion for new products
  • Reviews Change Requests for security impacts and technical documentation from a security perspective
  • Participates in Agile Planning Events to provide technical input in addition to trade studies for tools, etc.


RESPONSIBILITIES/QUALIFICATIONS:


  • Researches, evaluates, designs, tests, recommends, communicates, and implements new security software or devices
  • Implements, enforces, communicates, and may develop internet, network, or other information security policies or security plans for data, internet, software applications, hardware, telecommunications, and computer installations
  • Manage all aspects of an organization's information security system, including researching, testing, training, and implementing programs designed to safeguard sensitive information from any possible breaches
  • Conducts risk analyses from vulnerability, compliance scans, pen testing results, or other audit activity; writes including but not limited to Plan of Action and Milestones, System Security Plans, Security Control Traceability Matrices, Configuration Management Plans, Contingency Plans and Test Results, Business Impact Analyses, and Security Impact Analyses
  • Conducts trade studies for tools and participates in Agile Planning Events to provide technical input.



REQUIREMENTS:

  • Bachelors’ Degree in Computer Information Systems with eight (8) years related experience
    OR
    12 total years of experience in Information Assurance and IT Security
  • Active TS clearance is required


PREFERRED EDUCATION/EXPERIENCE/SKILLS:

  • Experience in cloud security highly desired
  • Cyber program experience within federal customer space a plus
  • Certifications such as CISSP, CEH, CISA, CAP highly desired




  • Sterling, United States Northrop Grumman Full time

    Requisition ID: R10165450 Category: Information Technology Location: Dulles, Virginia, United States of America Clearance Type: Top Secret Telecommute: No- Teleworking not available for this position Shift: Days (United States of America) Travel Required: Yes, 10% of the Time Relocation Assistance: Relocation assistance may be available Positions...


  • Sterling, United States Nightwing Full time

    Date Posted:2024-02-08Country:United States of AmericaLocation:VA546: 23010 Ladbrook Drive, Dulles 23010 Ladbrook Drive Building 2, Sterling, VA, 20166 USAPosition Role Type:OnsiteYou have been redirected to RTX’s career page as we have recently transitioned from RTX to become a standalone company, which provides us with greater autonomy and opportunities...

  • Sr. ISSE

    1 month ago


    Sterling Heights, Michigan, United States BAE Systems Full time

    Job Description As a senior member of the Vulnerability Management and Assessment Team (VMAT), you will be part of a fast-paced team functioning as a SME in Security Assessments and Engineering, supporting CISA in safeguarding systems and networks across multiple environments. You bring the following to the team.Expertise in security engineering, system and...


  • Sterling, United States Northstrat Full time

    Job DescriptionJob DescriptionNorthstrat has an opening for a Senior Systems Administrator, supporting Linux operating systems on our factory development/test network as well as edge and cloud production environments. This position is primarily located in Sterling, VA but may also be performed at CACI facilities in Aurora, CO.Some Continental US and...


  • Sterling Heights, Michigan, United States BAE Systems Full time

    Job Description ** This position can be based out of Sterling, VA, Rockville, MD, or Pensacola, FL. This position is eligible for maximum telework (>50%). **This BAE Systems program supports our federal customer who plays a key role in providing direct cybersecurity engineering support. This program provides systems and security engineering and integration...