Current jobs related to Information System Security Officer - Pasco - Envisioneering Inc


  • Pasco, United States Spry Methods Full time

    Who We're Looking For (Position Overview): Spry Methods is looking for an ISSOs to support the Department of Interior's (DoI) Information System Security Line of Business (ISSLoB) Cybersecurity Program services. The ISSO will be a member of a large team that manages a variety of activities associated with the National Institute of Science and Technology...


  • Pasco, Washington, United States CALIBRE Systems Full time

    About the RoleCALIBRE Systems is seeking a highly skilled Information Assurance Specialist to support our government clients in the National Capitol Region. As a key member of our team, you will be responsible for conducting threat and risk assessments, providing security planning and risk management expertise, and ensuring compliance with departmental and...


  • Pasco, United States CALIBRE Systems Full time

    Job Description CALIBRE, an employee-owned Management Consulting and Digital Transformation firm is looking for an Information Assurance Specialist to support one of our government clients out of the National Capitol Region (Fort Belvoir, Crystal City, Pentagon). Duties and tasks may include and may not be limited to the following: Provide expertise to...


  • Pasco, Washington, United States First Tek Full time

    Job DescriptionJob Title: Business Systems Analyst 3Job Summary:First Tek is seeking a highly skilled Business Systems Analyst 3 to join our team. As a key member of our organization, you will be responsible for ensuring the reliability and security of our systems and processes.Responsibilities:Provide monitoring, review, analysis, and support for the...


  • Pasco, United States Everest Consultants Full time

    Title: Business Systems Analyst 3 (N-IT) Location: Vancouver, OR (Hybrid) Duration: 12-month Contract (with possible extensions up to 5 years) Pay Range: $65.16- $68.39 per hour The role of the Business Systems Analyst is to Analyze science, engineering, business, and other data processing problems to implement and improve computer systems. Analyze user...


  • Pasco, United States First Tek Full time

    POSITION RESPONSIBILITIES Note: All official drafts, documents and recommendations, as listed below, must be reviewed, finalized and approved / accepted by appropriate BPA manager or other federal personnel with the authority to do so. Reliability Compliance Provide monitoring, review, analysis and support for the Security Management Program - verifying...

  • Office Coordinator

    1 week ago


    Pasco, Washington, United States Terragraphics Full time

    **Job Summary**Terragraphics is seeking a highly skilled and detail-oriented individual to join our team as an Administrative Assistant. As a key member of our staff, you will be responsible for providing administrative support to our team, ensuring the smooth operation of our office, and contributing to our company's mission to make a positive impact in our...


  • Pasco, Washington, United States Motorola Solutions Full time

    Company Overview At Motorola Solutions, our mission is to empower individuals to excel in critical moments. We are dedicated to enhancing safety through innovative technologies that span our entire safety and security ecosystem. Our solutions include advanced communication devices, AI-driven video security, and integrated command center capabilities. We...


  • Pasco, Washington, United States Everest Consultants Full time

    Job DescriptionJob Title: Business Systems Analyst 3Job Summary:We are seeking a highly skilled Business Systems Analyst 3 to join our team at Everest Consultants. As a Business Systems Analyst 3, you will play a critical role in analyzing and improving our clients' business systems and processes.Key Responsibilities:System Analysis and Design: Analyze...


  • Pasco, Washington, United States MultiCare Health System, Inc. Full time

    Welcome to MultiCare. At MultiCare, we are committed to fostering a genuine sense of belonging for all our staff. Within our healthcare network, you will discover a diverse array of fulfilling careers, opportunities for advancement, secure work environments, and adaptable schedules. Our mission - collaborating and healing for a healthier future - unites us...


  • Pasco, Washington, United States Leidos Full time

    Job SummaryLeidos is seeking a highly skilled Field Service Technician I to join our Security Enterprise Solutions (SES) Operation team. As a key member of our team, you will be responsible for providing technical support and maintenance services to our customers worldwide.Key ResponsibilitiesInstallation and Repair of Complex Equipment: Perform on-site...


  • Pasco, Washington, United States MultiCare Health System, Inc. Full time

    Join Our Team at MultiCare. At MultiCare, we are committed to fostering a genuine sense of belonging for all our staff. Within our healthcare network, you will discover a diverse array of fulfilling careers, growth opportunities, secure work environments, and adaptable schedules. We are united by our mission - collaborating and healing for a healthier future...


  • Pasco, Washington, United States Agile Defense Full time

    Company Overview: At Agile Defense, we understand that proactive measures lead to successful outcomes, and adapting to new challenges is essential for progress. Our mission is to deliver innovative solutions that support critical national initiatives through the effective integration of cutting-edge technologies, skilled professionals, and unmatched agility....

  • Surgical House Officer

    2 months ago


    Pasco, United States Johns Hopkins Medicine Full time

    Sibley Memorial Hospital is looking for a Surgical House Officer. Sibley Memorial Hospital is located in Washington, DC. Our Physicians and leaders are highly engaged and committed to teamwork. As a member of the surgical team you will work bedside with the most talented physicians, nurses and staff who enjoy extensive benefits and opportunities for personal...

  • Office Administrator

    3 weeks ago


    Pasco, United States Pepsi-Cola of Pasco Full time

    Job description: We are looking for a responsible Administrative Assistant to perform a variety of administrative and clerical tasks. Duties of the Administrative Assistant include providing support to our managers and employees, assisting in daily office needs and handling the company's general administrative activities. Job responsibilities: Answering...

  • Office Assistant

    1 week ago


    Pasco, United States S.S. Eq., Inc. Part time

    Job DescriptionJob DescriptionDescription:Agricultural equipment dealership is seeking a part-time Office Assistant to join our Pasco, WA corporate office. This is an entry-level position appropriate for candidates wanting to gain experience working in an office environment. Candidate will work among an office staff of 7. Candidate will sort, scan, and file...


  • Pasco, Washington, United States MultiCare Health System, Inc. Full time

    Welcome to MultiCare. At MultiCare, we are committed to fostering a genuine sense of belonging for all our staff. Within our extensive health care network, you will discover a diverse array of fulfilling career paths, opportunities for advancement, secure work environments, and adaptable schedules. We are united by our mission - collaborating and healing for...


  • Pasco, United States Agile Defense Full time

    At Agile Defense we know that action defines the outcome and new challenges require new solutions. That's why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next. Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of...


  • Pasco, United States S.S. Eq., Inc. Full time $16

    Job DescriptionJob DescriptionDescription:Agricultural equipment dealership is seeking a part-time Scanning & Data Clerk to join our Pasco, WA corporate office. This is an entry-level position appropriate for candidates wanting to gain experience working in an office environment. Intern will work among an office staff of 7. Intern will sort, scan, and file...


  • Pasco, Washington, United States MultiCare Health System, Inc. Full time

    Welcome to Your Future. At MultiCare, we are committed to fostering a genuine sense of belonging for all our team members. Within our extensive healthcare network, you will discover a vibrant array of fulfilling careers, opportunities for advancement, secure work environments, and adaptable schedules. Our mission - to partner and heal for a healthier...

Information System Security Officer

4 months ago


Pasco, United States Envisioneering Inc Full time

Job Title

Information System Security Officer - (ISSO)

Location

Washington, DC 20375 US (Primary)

Job Type

Full-Time

Education

Bachelor's Degree

How much will you travel if the job requires it?

0 - 25%

Minimum Security Clearance Required

TS

Job Description

Envisioneering, Inc. is seeking an Information Systems Security Officer (ISSO) to support an active government contract. This position will be responsible for the following:

  • Lead the RMF process for assigned programs, organizations, systems, or enclaves.
  • Maintain and report system's A&A status and events.
  • Manage the SP for assigned systems throughout their lifecycle.
  • Perform annual security reviews, annual testing of security controls, and annual testing of the contingency plan, in line with FISMA requirements.
  • Manage POA&M entries and ensuring vulnerabilities are properly tracked, mitigated, and resolved.
  • Assist with identification of the security control baseline set and any applicable overlays.
  • Supervise the validation of security controls with the PM/ISO, SCA Liaison, PSO, and AO CSA.
  • Assemble the Security Authorization Package and submit for adjudication.
  • Register and maintain the system in eMASS.
  • Assess the quality of security control implementation against all requirements in accordance with the approved SLCM strategy.
  • Plan and perform cybersecurity testing to assess security controls and recording security control compliance status during sustainment.
  • Report changes in the security posture of systems to the AO.
  • Utilize the Collaboration Board in eMASS workflow for all formal coordination during the RMF process. Detailed findings will be posted in the Artifacts tab (if necessary).
  • Assist the ISSMs in executing their duties and responsibilities.
  • Ensure compliance with all USN, DON, and DoD cybersecurity policies.
  • Ensure all users possess the requisite security clearances and awareness of their responsibilities for systems under their purview prior to being granted access.
  • Ensure an incident response, business continuity, disaster recovery, as well as vulnerability and threat reporting plans and channels are in place and that team members are trained accordingly.
  • Ensure relevant policy and procedural documentation is current and accessible to properly authorized individuals.
  • Utilize the Collaboration Board in the eMASS workflow for all formal coordination during the RMF process. Detailed findings will be posted in the Artifacts tab (if necessary).
Assist the ISSE with the following responsibilities:
  • Oversee the development and maintenance of a system's cybersecurity solutions.
  • Identify AO and SCA cognizance (i.e. FAO or NAO, and FSCA or SCA) of the system as well as any specific authorization requirements such as reciprocity, cross domain, and applicable overlays to support System Categorization.
  • Identify mission criticality.
  • Identify and tailor the security control baseline with applicable overlays.
  • Assist with development, maintenance, and tracking of the SP.
  • Lead the security control implementation and testing efforts.
  • Perform vulnerability-level risk assessment on the POA&M/RISK Assessment Worksheet.
  • Assist with any security testing required as part of A&A or annual reviews.
  • Assist in the mitigation and closure of open vulnerabilities under the system's change control process.
  • Oversee cybersecurity testing to assess security controls and recording security control compliance status during the continuous monitoring phase of the lifecycle.
  • Make data entries into the eMASS record and POA&M consistent with implementation results.
  • Utilize the Collaboration Board in the eMASS workflow for all formal coordination during the RMF process. Detailed findings will be posted in the Artifacts tab (if necessary).
  • Rework shall be documented and provided to the PSO/PMO for review.
Assist the ISSM with the following responsibilities:
  • Support necessary compliance activities (e.g., ensure system security configuration guidelines are followed, compliance monitoring occurs).
  • Continuously validate the organization against policies/guidelines/procedures/regulations/laws to ensure compliance.
  • Acquire and manage the necessary resources, including leadership support, financial resources, and key security personnel, to support information technology (IT) security goals and objectives and reduce overall organizational risk.
  • Advise senior management (e.g., CIO) on risk levels and security posture.
  • Advise appropriate senior leadership or Authorizing Official of changes affecting the organization's cybersecurity posture.
  • Collect and maintain data needed to meet system cybersecurity reporting.
  • Communicate the value of information technology (IT) security throughout all levels of the organization stakeholders.
  • Ensure security improvement actions are evaluated, validated, and implemented as required.
  • Ensure that cybersecurity inspections, tests, and reviews are coordinated for the network environment.
  • Ensure that cybersecurity requirements are integrated into the continuity planning for that system and/or organization(s).
  • Evaluate and approve development efforts to ensure that baseline security safeguards are appropriately installed.
  • Identify alternative information security strategies to address organizational security objective.
  • Identify information technology (IT) security program implications of new technologies or technology upgrades.
  • Interpret patterns of non compliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program.
  • Manage the monitoring of information security data sources to maintain organizational situational awareness.
  • Oversee the information security training and awareness program.
  • Participate in an information security risk assessment during the Security Assessment and Authorization process.
  • Participate in the development or modification of the computer environment cybersecurity program plans and requirements.
  • Prepare, distribute, and maintain plans, instructions, guidance, and standard operating procedures concerning the security of network system(s) operations.
  • Provide system related input on cybersecurity requirements to be included in statements of work and other appropriate procurement documents.
  • Recognize a possible security violation and take appropriate action to report the incident, as required.
  • Recommend resource allocations required to securely operate and maintain an organization's cybersecurity requirements.
  • Supervise or manage protective or corrective measures when an cybersecurity incident or vulnerability is discovered.
  • Track audit findings and recommendations to ensure appropriate mitigation actions are taken.
  • Promote awareness of security issues among management and ensure sound security principles are reflected in the organization's vision and goals.
  • Oversee policy standards and implementation strategies to ensure procedures and guidelines comply with cybersecurity policies.
  • Identify security requirements specific to an information technology (IT) system in all phases of the System Life Cycle.
  • Ensure plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
  • Assure successful implementation and functionality of security requirements and appropriate information technology (IT) policies and procedures that are consistent with the organization's mission and goals.
  • Participate in the acquisition process as necessary, following appropriate supply chain risk management practices.
  • Ensure all acquisitions, procurements , and outsourcing efforts address information security requirements consistent with organization goals.
  • Forecast ongoing service demands and ensure security assumptions are reviewed as necessary.
  • Define and/or implement policies and procedures to ensure protection of critical infrastructure as appropriate.
  • Acquire necessary resources, including financial resources, to conduct an effective enterprise continuity of operations program.
  • Advise senior management (e.g., CIO) on cost/benefit analysis of information security programs, policies, processes, and systems, and elements.
  • Collaborate with stakeholders to establish the enterprise continuity of operations program, strategy, and mission assurance.
  • Ensure that protection and detection capabilities are acquired or developed using the IS security engineering approach and are consistent with organization-level cybersecurity architecture.
  • Establish overall enterprise information security architecture (EISA) with the organization's overall security strategy.
  • Evaluate cost benefit, economic, and risk analysis in decision making process.
  • Interface with external organizations (e.g., public affairs, law enforcement, Command or Component Inspector General) to ensure appropriate and accurate dissemination of incident and other Computer Network Defense information.
  • Interpret and/or approve security requirements relative to the capabilities of new information technologies.
  • Lead and align information technology (IT) security priorities with the security strategy.
  • Lead and oversee information security budget, staffing, and contracting.
  • Manage the publishing of Computer Network Defense guidance (e.g., TCNOs, Concept of Operations, Net Analyst Reports, NTSM, MTOs) for the enterprise constituency.
  • Manage threat or target analysis of cyber defense information and production of threat information within the enterprise.
  • Monitor and evaluate the effectiveness of the enterprise's cybersecurity safeguards to ensure they provide the intended level of protection.
  • Provide enterprise cybersecurity and supply chain risk management guidance for development of the Continuity of Operations Plans.
  • Provide leadership and direction to information technology (IT) personnel by ensuring that cybersecurity awareness, basics, literacy, and training are provided to operations personnel commensurate with their responsibilities.
  • Provide technical documents, incident reports, findings from computer examinations, summaries, and other situational awareness information to higher headquarters.
  • Recommend policy and coordinate review and approval.
  • Use federal and organization-specific published documents to manage operations of their computing environment system(s).
  • Participate in Risk Governance process to provide security risks, mitigations, and input on other technical risk.
  • Evaluate the effectiveness of procurement function in addressing information security requirements and supply chain risks through procurement activities and recommend improvements.
Job Requirements

MINIMUM SKILLS / QUALIFICATIONS:
  • Must have and maintain a DoD Top Secret Clearance.
  • 15+ years of technical and managerial experience in system administration and information security/cybersecurity.
  • CISSP, CISM, or other DOD 8570.01-M IAM Level 3 certification.
  • Bachelor's degree with a concentration in a related discipline (e.g., information security, cybersecurity, information technology)
  • Self-motivated and the ability to multi-task and balance multiple goals and priorities.
  • Must be familiar with DOD Risk Management Framework (RMF) policies, standards, procedures and have relevant experience with associated tools (e.g., eMASS, XACTA 360, Assured Compliance Assessment Solution (ACAS), Anchore, DISA Security Technical Implementation Guides (STIGs), SCAP Compliance Checker (SCC), STIG Viewer, eMASSter, Eval STIG).
Education:
  • Bachelor's degree with a concentration in a related discipline (e.g., information security, cybersecurity, information technology).
  • CISSP, CISM, or other DOD 8570.01-M IAM Level 3 certification.

Benefits:Envisioneering, Inc. offers a stable work environment, a competitive salary, and a comprehensive benefits package effective date of hire; including 401k, Medical/Dental/Vision, FSA, Short Term, Long Term, AD&D and Life insurance, (employer paid), voluntary life, Tuition Reimbursement, Paid Leave, Holidays and much more.

As a condition of employment: You must pass a drug and pre-employment drug screening. U.S. Citizenship Required. Candidate must follow all company and non-DOT Drug and Alcohol Testing. A Department of Defense (DoD) Top Secret security clearance is required at time of hire. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibility requirements for access to classified information. Due to the nature of work performed within our facilities, U.S. citizenship is required. Please confirm in your cover letter or resume.

Envisioneering Inc. is an Equal Opportunity Employer that does not discriminate on the basis of actual or perceived race, creed, color, religion, alienage or national origin, ancestry, citizenship and immigration status, age, disability or handicap, sex (including pregnancy), marital status, veteran status, sexual orientation, gender identity, genetic information, arrest record, hairstyle, or any other characteristic protected by applicable federal, state, or local laws. Our management team is dedicated to this policy with respect to recruitment, hiring, placement, promotion, transfer, training, compensation, benefits, employee activities, and general treatment during employment. Envisioneering Inc. is committed to creating and maintaining a workplace in which all employees have an opportunity to participate and contribute to the success of the business and are valued for their skills, experience, and unique perspectives.