Information Systems Security Engineer (ISSE)
KITTERY, ME, US
⚠️ We'll shut down after Aug 1st - try foo🦍 instead ⚠️
CompQsoft
Unlock your business potential with ComQsoft's 25+ years of IT expertise. We deliver tailored solutions - Cloud, Data & AI, & Cybersecurity.Description
JOB DESCRIPTION:
- The contractor shall provide Cyber Security (CS) support. In performance of this task the contractor shall:
- Oversee the development and maintenance of a system’s CS solutions.
- Identify Authorizing Official (AO) and SCA cognizance (i.e. Functional Authoring Official or Navy Authorizing Official, and Functional Security Control Assessor or Security Control Assessor) of the system as well as any specific authorization requirements such as reciprocity, cross domain, and applicable overlays to support System Categorization.
- Identify and tailor the security control baseline with applicable overlays.
- Assist with development, maintenance, and tracking of the Security Plan.
- Lead the security control implementation and testing efforts.
- Perform vulnerability-level risk assessment on the POA&M/RISK Assessment Worksheet.
- Assist with any security testing required as part of Assessment and Authorization (A&A) or annual reviews.
- Assist in the mitigation and closure of open vulnerabilities under the system’s change control process.
- Oversee CS testing to assess security controls and recording security control compliance status during the continuous monitoring phase of the lifecycle.
- Make data entries into the eMASS record and POA&M consistent with implementation results.
- Utilize the Collaboration Board in the eMASS workflow for all formal coordination during the RMF process. Detailed findings will be posted in the Artifacts tab (if necessary).
- Rework shall be documented and provided to the Package Submitting Officer/Project Management Office for review.
- Analyze the results of software, hardware, or interoperability testing.
- Determine level of assurance of developed capabilities based on test results.
- Develop test plans to address specifications and requirements.
- Validate specifications and requirements for testability.
- Make recommendations based on test results.
- Perform developmental testing on systems under development.
- Perform interoperability testing on systems exchanging electronic information with other systems.
- Perform operational testing.
- Test, evaluate, and verify hardware and/or software to determine compliance with defined specifications and requirements.
- Record and manage test data.
- Determine scope, infrastructure, resources, and data sample size to ensure system requirements are adequately demonstrated.
- Address security implications in the software acceptance phase including completion criteria, risk acceptance and documentation, common criteria, and methods of independent testing.
Requirements
Must Have Skills:
*Candidates must have CompTIA Security+, active clearance, good
communication, consistent engagement, and be willing to travel 2nd week of on-boarding to Portsmouth Naval Shipyard (PNSY).
*Past experience as an ISSE on Navy eMass Projects is a plus.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
1
1
0
Category:
Security Engineering Jobs
Tags: Clearance Compliance CompTIA eMASS ISSE Monitoring POA&M Risk assessment RMF Vulnerabilities
Region:
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Senior Cybersecurity Engineer jobsInformation System Security Officer jobsIT Security Analyst jobsSenior Security Analyst jobsSenior Information Security Analyst jobsSecurity Operations Engineer jobsSenior Cloud Security Engineer jobsCyber Security Specialist jobsInformation Security Manager jobsSenior Product Security Engineer jobsSenior Network Security Engineer jobsInformation System Security Officer (ISSO) jobsSenior Information Security Engineer jobsSenior Cyber Security Engineer jobsSecurity Consultant jobsChief Information Security Officer jobsInformation Systems Security Engineer jobsSecurity Specialist jobsNetwork Engineer jobsCyber Threat Intelligence Analyst jobsSenior Software Engineer jobsIT Security Engineer jobsSecurity Operations Analyst jobsCybersecurity Specialist jobsSenior IT Auditor jobs
GDPR jobsSecurity assessment jobsEDR jobsTS/SCI jobsEncryption jobsSDLC jobsThreat detection jobsRMF jobsMalware jobsTerraform jobsSplunk jobsSQL jobsIDS jobsITIL jobsFinance jobsCompTIA jobsOWASP jobsTop Secret jobsIPS jobsForensics jobsSOC 2 jobsActive Directory jobsDocker jobsGIAC jobsClearance Required jobs
TCP/IP jobsOSCP jobsCRISC jobsHIPAA jobsMITRE ATT&CK jobsDoDD 8570 jobsIntrusion detection jobsAnsible jobsVPN jobsCCSP jobsZero Trust jobsJavaScript jobsSOAR jobsJira jobsDNS jobsUNIX jobsIT infrastructure jobsData Analytics jobsIndustrial jobsSOX jobsBanking jobsNIST 800-53 jobsKPIs jobsGCIH jobsSANS jobs