Information Systems Security Officer (Isso)
McLean, VA, USA
Full Time Mid-level / Intermediate Clearance required USD 85K - 105K
Prudent Technology
We are looking for team member local to McLean, VA area only. The role will require going to client location, couple of days a week in coming months.
Job Description:
The ISSO is responsible for ensuring the appropriate operational security posture is maintained for an information system and as such, works in close collaboration with the ISSM and ISO. The position shall have the detailed knowledge and expertise required to manage the security aspects of an information system and, in many organizations, is assigned responsibility for the day-to-day security operations of a system. This also will include physical and environmental protection, personnel security, incident handling, and security training and awareness. It will be required to work in close coordination with the ISSM and ISO in monitoring the information system(s) and its environment of operation to include developing and updating the authorization documentation, implementing configuration management across authorization boundaries. This will include assessing the security impact of those changes and making recommendation to the ISSM. The primary function is working under Chief Information Security Officer (CISO) supporting US Patent Trademark agency. The position will provide "day-to-day" support for NIST 800-37 (RMF) activities.
Performance shall include:
- Assist the ISSM in meeting their duties and responsibilities
- Prepare, review, and update authorization packages
- Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media
- Notify ISSM when changes occur that might affect the authorization determination of the information system(s)
- Conduct periodic reviews of information systems to ensure compliance with the security authorization package
- Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
- Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
- Ensure all IS security-related documentation is current and accessible to properly authorized individuals
- Ensure audit records are collected, reviewed, and documented (to include any anomalies)
- Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties
- Execute the cyber security portion of the self-inspection, to include provide security coordination and review of all system assessment plans
- Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them
- Prepare reports on the status of security safeguards applied to computer systems.
- Perform ISSO duties in support of in-house and external customers.
- Conduct security impact analysis activities and provide to the ISSM on all configuration management changes to the authorization boundaries.
Experience:
- 5+ years related experience.
- Prior performance in roles such as System, Network Administrator or ISSO
Security Clearance:
- Status of clearance (e.g., active Public Trust)
Travel Requirement:
- On occasions, the ISSO is anticipated to perform various duties (i.e. security investigation, etc.) at the contract facility within the specified location requiring ISSO/ISSM support.
Tags: CISO Clearance Compliance Monitoring NIST RMF Security Clearance Security Impact Analysis Vulnerabilities
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.