Information Systems Security Officer
5 days ago
Be Challenged and Make a Difference
In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture.
Description of Task to be Performed:
AnaVation is seeking a mid-level ISSO for our mission critical customer in Washington, DC. You will work as part of a highly talented team providing security compliance expertise on high priority projects.
Daily duties include, but are not limited to:
- Developing, maintaining, and assessing Security Assessment & Authorization (SA&A) packages resulting in an authority to operate (ATO) for IT systems.
- Creating and maintaining SSPs and supporting documentation in accordance with agency guidelines and directives. This includes writing implementation statements, creating supporting documentation (e.g., contingency Plans, Incident Response Plans, Account Management Plans, etc.), and performing self-assessments, while working with system stakeholders.
- Develop, coordinate, test, and train personnel on Incident Response Plans and Contingency Plans.
- Ensuring that information systems are accredited, maintain their ATO, and are being continuously monitored.
- Performing risk assessments for government systems, to include cloud-based systems.
- Performing security control assessments to include collecting supporting artifacts/evidence and interviewing system owner/owner representatives.
- Having an in-depth knowledge of the Risk Management Framework (RMF).
- Maintaining and tracking system POA&Ms.
- Conducting vulnerability management and analysis.
- Reviewing and analyzing government policy.
- Improving on processes and procedures and making recommendations to improve the security posture of the agency's IT systems and applications.
This position requires a Top-Secret clearance with SCI eligibility and the ability to obtain a CI Poly. This position is on-site in Washington DC with no remote option.
Required Qualifications:- Bachelor's in Computer Science, or other related analytical, scientific, or technical discipline
- 4+ years' experience with NIST, FISMA, and Security Assessment & Authorization.
Knowledgeable on various security-related NIST publications (e.g., SP 800-53r5, SP 800-53A, SP 800-18r1, etc.)
In-depth knowledge of information security principles, methodologies, and best practices.
- Experience in conducting risk assessments and implementing security controls.
Proficiency in using security tools and technologies, such as firewalls, intrusion detection systems, SIEM, and vulnerability management tools.
Knowledge of incident response procedures.
- Obtain a CI Poly.
- Can be on-site 5 days a week.
- Desirable Qualifications (Education/Certificates, Experience, Physical, etc.):
- Certifications: CISSP
- FedRAMP and Cloud experience (e.g., Azure, AWS, Oracle (OCI))
- Hands-on experience using a Governance, Risk, and Compliance tool, such as CSAM or eMASS.
- Ability to conduct gap analysis on non-federated vendor audit results, such as SOC Type 2, HIPAA comparison review and analyst against NIST SP Revision 5 security controls.
- Ability to accurately manage complex workstreams, comprehend the application of the RMF, and understand the application of security controls across the interface, application, operating system, network, and database layers of modern information systems. Understand the applicable artifacts used as evidence to assess compliance.
Experience with multiple tools providing security functions such as vulnerability management (e.g., Nessus), configuration management (e.g., BigFix, SCCM, ePO), endpoint protection (e.g., antivirus, ATP), data loss prevention, and intrusion detection software and hardware.
Ability to evaluate data flows, network diagrams, and logical security boundaries.
- Familiarity with the use of data analysis tools, including the use of Microsoft Excel or PowerBI to combine data from multiple sources.
Benefits
- Generous cost sharing for medical insurance for the employee and dependents
- 100% company paid dental insurance for employees and dependents
- 100% company paid long-term and short term disability insurance
- 100% company paid vision insurance for employees and dependents
- 401k plan with generous match and 100% immediate vesting
- Competitive Pay
- Generous paid leave and holiday package
- Tuition and training reimbursement
- Life and AD&D Insurance
About AnaVation
AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team.
If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you
AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.
-
Information Systems Security Officer
19 hours ago
Washington, Washington, D.C., United States Iron Bow Technologies Full time $80,000 - $120,000 per yearIron Bow Technologies is for people who believe trust is paramount, transformation is embraced, and the future is here, because"What we do matters"We are a next generation solutions provider, delivering mission success across government, healthcare, and commercial industries. Iron Bow relies on ourpassionate people,long standing partnerships, andstrategic...
-
Information System Security Officer
3 days ago
Washington, Washington, D.C., United States Peraton Full time $80,000 - $128,000ResponsibilitiesWe are seeking an experienced and highly motivated Information Systems Security Officer (ISSO) to join our team. The ISSO will be responsible for managing the security and integrity of information systems in compliance with Risk Management Framework (RMF) policies and procedures. This role involves working closely with government customers,...
-
Information System Security Officer
5 days ago
Washington, Washington, D.C., United States Peraton Full time $86,000 - $138,000 per yearAbout PeratonPeraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our...
-
Information Systems Security Officer
4 days ago
Washington, Washington, D.C., United States Booz Allen Hamilton Full time $99,000 - $225,000 per yearInformation Systems Security OfficerThe Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to government organizations. In all of this "cyber noise," how can these organizations understand their risks and how to mitigate them? The answer is you—an Information...
-
Information Systems Security Officer
5 days ago
Washington, Washington, D.C., United States CyberStorm Defense L.L.C. Full time $120,000 - $180,000 per yearCyberStorm Defense is seeking an experienced Information Systems Security Officer (ISSO) to provide cybersecurity governance, risk management, and compliance oversight for systems supporting the Federal Aviation Administration (FAA) and Department of Transportation (DOT).This role supports FAA TechOps (AJW), Enterprise Services (AJM-3), and Program...
-
Jr. Information System Security Officer
19 hours ago
Washington, Washington, D.C., United States HRUCKUS Full time $70,000 - $95,000 per yearVeteran Owned Firm Seeking a Junior Information Systems Security Officer (ISSO) for an Onsite role in Washington, DCMy name is Stephen Hrutka, and I am the owner of a Veteran Owned management consulting firm in Washington, DC focused on Technical/Cleared Recruiting for the DoD and IC.HRUCKUS helps other Veteran-Owned businesses recruit for positions across...
-
Information System Security Officer
17 hours ago
Washington, Washington, D.C., United States Cloudshape Full time $100,000 - $120,000 per yearLocation:Remote with a high preference for candidates local to the DC, MD, VA areaCitizenship Required:YesClearance Type:SecretPositions Available:1Salary Range: $110,000 - $120,000At Cloudshape our employees have incredible opportunities to work in helping organizations securely transform their IT Infrastructure to meet the changing business cultures. We...
-
Information System Security Officer
3 days ago
Washington, Washington, D.C., United States A3 Technology Inc Full time $50,000 - $175,000 per yearA3 Technology, Inc. is seeking a mission-driven Information System Security Officer (ISSO) to lead Assessment & Authorization (A&A) and Continuous Monitoring for U.S. Customs and Border Protection (CBP) systems. The ISSO will assume duties in accordance with DHS 4300A and CBP HB D, ensuring systems achieve and maintain Authority to Operate (ATO) while...
-
Information System Security Officer II
3 days ago
Washington, Washington, D.C., United States Global Resource Solutions, Inc. Full time $100,000 - $120,000 per yearGlobal Resource Solutions, Inc. (GRS) is seeking an enthusiastic, motivated, detail orientated, and talented individual for the position of Information System Security Officer II.Job Description:Summary: The ISSO II's primary function is working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force,...
-
Information Systems Security Officer II
5 days ago
Washington, Washington, D.C., United States AT&T Full time $98,100 - $228,600Job Description: This position requires office presence of a minimum of 5 days per week and is only located at customer's site. No relocation is offered.AT&T Global Public Sector is a trusted provider of secure, IP enabled, cloud-based, network solutions and professional services to the Federal Government. We are dedicated to recruiting, developing and...