Isso Specialist

4 weeks ago


Lexington, United States Aquila Technology Full time

**Clearance**: Top Secret with SCI Eligibility

At Aquila Technology, you will see our teams passion every day, whether we are building a robust, policy-compliant IT system or stress-testing a system to identify gaps and security vulnerabilities. To own the advantage, we ensure our team owns results and gets the work done right the first time by deploying smart, purposeful solutions that work. Aquila is the right people with the right skills driving the right outcomes. We call this the Aquila Advantage.

**About the Role**:
Aquila is seeking anISSO Specialistto join our team in supporting one of the countrys premier defense research organizations.

**There are a few requirements for the position**:

- Must be a U.S Citizen (Green Cards / Visas do not qualify)
- Willingness to undergo a comprehensive background investigation and maintain a personal security clearance. (Aquila would sponsor you for the security clearance.)
- Must be within commutable distance of Lexington, Massachusetts.

**Responsibilities**:

- Develops and maintains an Information System (IS) security program and policies for an assigned area of responsibility.
- Develops and oversees operational IS security implementation policy and guidelines.
- Monitors all available resources that provide warnings of system vulnerabilities and security compliance deficiencies.
- Monitors system recovery processes to ensure security features and procedures are properly restored and functioning correctly.
- Responsible for supporting security assessments, tests, and reviews; ensuring proper measures are taken when an IS incident or vulnerability affecting secure systems or information is discovered.
- Ensures systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the System Security Plan (SSP).
- Develops and updates the SSP, manages and controls changes to the system, and assesses the security impact of those changes.
- Ensures user activity monitoring data is analyzed, stored, and protected in accordance with the IS policies and procedures.
- Develops and maintains POAMs to help manage resolution of IS weaknesses, coordinate resources and timelines for corrective actions, and address mitigation actions.
- Ensures all users have the requisite security clearances and authorization and are aware of their security responsibilities. Assists in approved secure data transfer between systems.

**What You'll Bring**:

- 4 years of System Auditing
- CompTIA Security+ Certification
- Bachelor's Degree
- Currently holds a Top Secret/SCI clearance
- 4 years of Regulatory Compliance
- 4 years of STIGs/SCAP of 4 years
- 4 years of Assessing Security Controls (CS105.16)
- 4 years of Assessment and Authorization
- 4 years of Authorizing Systems (CS106.16)
- 2 years of Categorization of the System (CS102.16)
- 4 years of Continuous Monitoring (CS200.16)
- 2 years of HBSS
- 4 years of Implementation of Controls (CS104.16)
- 4 years of Monitoring Security Controls (CS107.16)
- 2 years of NIST 800-53
- 2 years of Risk Management Framework (RMF)
- 1 year of Selecting Security Controls (CS103.16)

**Working Knowledge of the Following**:

- Assist and Support necessary compliance activities (e.g., ensure that system security configuration guidelines are followed, and compliance monitoring occurs).
- Continuously validate the organization against policies/guidelines/procedures/regulations/laws to ensure compliance.
- Ensure that plans of action and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
- Promote awareness of security issues among management and ensure sound security principles are reflected in the organization's vision and goals.
- Track audit findings and recommendations to ensure that appropriate mitigation actions are taken.
- Recommend resource allocations required to securely operate and maintain an organization's cybersecurity requirements.
- Provide technical documents, incident reports, findings from computer examinations, summaries, and other situational awareness information to key stakeholders.
- Recognize a possible security violation and take appropriate action to report the incident, as required.
- Assist the Program Managers and the Information System Security Manager (ISSM) in the development and maintenance of System Security Plans (SSP) and associated artifacts such as the Plan of Action Milestones (POAM), Risk Assessment Report, and Continuous Monitoring Strategy.
- Ensure systems are operated, maintained, and disposed of in accordance with organization security policies and procedures.
- Lead and align information technology (IT) security priorities with the security strategy.
- Prepare for and participate in periodic organization compliance assessments. Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program.

**An


  • ISSO Specialist

    2 months ago


    lexington, United States Softworld Inc Full time

    Job Title: ISSO SpecialistJob Location - Lexington MA 02420Onsite Requirements:NIST 800-53 Current DoD 8570 IAT Level II Certification (GSEC, Security+ CE, SSCP, CCNA-Security) Prior ISSO experience


  • Lexington, United States Encode Full time

    Greetings.,Hiring for ISSO Specialist, with knowledgeable in computer security principles, to include the Risk Management Framework (RMF), Security Technical Implementation Guides (STIGs), National Industrial Security Program Operating Manual (NISPOM), and Defense Security Service (DSS) Assessment and Authorization Manual (DAAPM). Role: ISSO...

  • Isso Specialist

    3 weeks ago


    Lexington, United States Dhara Consulting Group Full time

    Today - Top Secret - Unspecified - None - Lexington, MA** (ON-SITE/OFFICE)** **ISSO Specialist** **Clearance: Top Secret with SCI Eligibility** At Aquila Technology, you will see our team's passion every day, whether we are building a robust, policy-compliant IT system or stress-testing a system to identify gaps and security vulnerabilities. To own the...

  • ISSO Specialist

    2 months ago


    Lexington, United States Softworld Inc Full time

    Job Title: ISSO Specialist Job Location - Lexington MA 02420 Onsite Requirements: NIST 800-53 Current DoD 8570 IAT Level II Certification (GSEC, Security+ CE, SSCP, CCNA-Security) Prior ISSO experience Job Description: This role is supporting Air Force Programs and Client prefers candidates with mid-level experience: Assist and support necessary...

  • ISSO Specialist

    2 months ago


    Lexington, United States Softworld, a Kelly Company Full time

    Job Title: ISSO SpecialistJob Location - Lexington MA 02420Onsite Requirements:NIST 800-53 Current DoD 8570 IAT Level II Certification (GSEC, Security+ CE, SSCP, CCNA-Security) Prior ISSO experience Job Description:This role is supporting Air Force Programs and Client prefers candidates with mid-level experience:Assist and support necessary compliance...

  • ISSO Specialist

    2 months ago


    Lexington, United States Softworld, a Kelly Company Full time

    Job Title: ISSO SpecialistJob Location - Lexington MA 02420Onsite Requirements:NIST 800-53 Current DoD 8570 IAT Level II Certification (GSEC, Security+ CE, SSCP, CCNA-Security) Prior ISSO experience Job Description:This role is supporting Air Force Programs and Client prefers candidates with mid-level experience:Assist and support necessary compliance...

  • ISSO Specialist

    2 months ago


    Lexington, United States Softworld, a Kelly Company Full time

    Job Title: ISSO SpecialistJob Location - Lexington MA 02420Onsite Requirements:NIST 800-53 Current DoD 8570 IAT Level II Certification (GSEC, Security+ CE, SSCP, CCNA-Security) Prior ISSO experience Job Description:This role is supporting Air Force Programs and Client prefers candidates with mid-level experience:Assist and support necessary compliance...

  • ISSO Specialist

    1 month ago


    Lexington, MA, United States Softworld Inc Full time

    Job Title: ISSO Specialist Job Location - Lexington MA 02420 Onsite Requirements: NIST 800-53 Current DoD 8570 IAT Level II Certification (GSEC, Security+ CE, SSCP, CCNA-Security) Prior ISSO experience Job Description: This role is supporting Air Force Programs and Client prefers candidates with mid-level experience: Assist and support necessary...

  • ISSO Specialist

    1 week ago


    Lexington, United States Aquila Technology Full time

    Job DescriptionJob DescriptionISSO SpecialistClearance: SecretAt Aquila Technology, you will see our team's passion every day, whether we are building a robust, policy-compliant IT system or stress-testing a system to identify gaps and security vulnerabilities. To own the advantage, we ensure our team owns results and gets the work done right the first...

  • ISSO Specialist

    7 days ago


    Lexington, United States Softworld Inc Full time

    Job Title: ISSO Specialist Job Location: Lexington MA 02420 Onsite Requirements: Information Assurance RMF Compliance Job Description: This position assists in the security configuration and management of collateral classified systems and networks in a variety of traditional and virtual environments including Linux, Unix, Sun, and Windows. Assists the...

  • ISSO Specialist

    3 weeks ago


    Lexington, United States Aquila Technology Full time

    Job DescriptionJob DescriptionISSO Specialist Clearance: Top Secret with SCI Eligibility At Aquila Technology, you will see our team's passion every day, whether we are building a robust, policy-compliant IT system or stress-testing a system to identify gaps and security vulnerabilities. To own the advantage, we ensure our team owns results and gets the...

  • ISSO Specialist

    1 week ago


    Lexington, United States Aquila Technology Full time

    Job DescriptionJob DescriptionISSO Specialist Clearance: Top Secret with SCI Eligibility At Aquila Technology, you will see our team's passion every day, whether we are building a robust, policy-compliant IT system or stress-testing a system to identify gaps and security vulnerabilities. To own the advantage, we ensure our team owns results and gets the...

  • IT Specialist infosec

    1 month ago


    Lexington Park, United States Naval Air Systems Command (NAVAIR) Full time

    Position Description Candidate may be responsible for managing a group of cybersecurity team members who are responsible for implementing, documenting, and enforcing cybersecurity within the DITAC Department. Candidate should have advanced application and mastery of IS plans, and functions, and is responsible for the management of complex projects, and...


  • Lexington, United States John Galt Staffing Full time

    Responsibilities:• Assist in the security configuration and management of collateral classified and unclassified systems and networks in a variety of traditional and virtual environments including Linux, Unix, Solaris, and Windows• Assist divisional ISSM and System Administrators in the development and maintenance of System Security Plans (SSP) and...


  • Lexington Park, United States Booz Allen Full time

    Information Security Risk Specialist, SeniorThe Opportunity:Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the DoD. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is an information security risk...


  • Lexington Park, United States Booz Allen Full time

    Information Security Risk Specialist, SeniorThe Opportunity:Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the DoD. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is an information security risk...


  • Lexington Park, MD, United States Booz Allen Full time

    Information Security Risk Specialist, SeniorThe Opportunity:Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the DoD. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is an information security risk...