ISSO (TS/SCI with CI poly)
Herndon, VA, United States
Maxar Technologies
Integrated space infrastructure and Earth intelligence capabilities that make global change visible, information actionable and space accessible.Please review the job details below.
Maxar is seeking an ISSO to join a multi-faceted software development and systems administration team working to build and maintain software applications backed by a self-managed high-performance compute (HPC) infrastructure on a private cloud system. We are responsible for the system from the hardware to the user interface.
Principal Responsibilities:
- Coordinate with government information system owners and industry partners to maintain compliance of information systems with customer requirements to include supporting ICD503 Assessments and Authorizations of industry partners’ systems.
- Support the Assessment and Authorization of information systems by performing risk assessments, preparing and reviewing documentation in accordance with the Risk Management Framework (RMF), identify deficiencies an provide recommendations for solutions, track Plan of Action and Milestones (POA&M) through mitigation and risk acceptance, and conduct weekly, monthly, and annual Continuous Monitoring (CONMON) activities.
- Implement vulnerability management programs, including tracking and addressing IAVAs and security patches, accessing applicability to existing systems, and ensuring closure.
- Perform data transfers between air-gapped systems at varying classification levels using tools for virus and dirty word scanning in accordance with media control and data transfer policies
- Assess and respond to security-related incidents, alerts, and requests to include software requests.
- Prepare systems and components for disposal and assist industry partners with disposal of equipment.
Minimum Requirements:
- Bachelor’s degree and 8 or more years of relevant information system security experience.
- Knowledge of security-related IC and DoD policies, procedures and operating instructions.
- Demonstrated experience in ICD 503 certification and accreditation processes.
- Hands-on technical expertise in cybersecurity, including security assessments, system auditing, and secure system development.
- Familiarity with NIST SP 800-37, CNSSI 1253, NIST SP 800-53, NIST SP 800-39, and NIST SP 800-30.
- Top Secret SCI with a CI Polygraph
Desired Skills:
- Experience with Industry Standard tools for purposes of audit reduction, vulnerability scanning, and malware detection is preferred. Relevant tools include but are not limited to: Splunk, Tenable Nessus, Security Content Automation Protocol (SCAP) Checker and STIG viewer.
- Experience Administering and Operating IT Technologies including Microsoft Windows, Linux, Networks, Firewalls, and Virtual Cloud environments.
- Additional Security Certifications (or desire to continue security learning) CISSP, CISM, GSLC, CCISO.
#cjpost
#LI-RD
In support of pay transparency at Maxar, we disclose salary ranges on all U.S. job postings. The successful candidate’s starting pay will fall within the salary range provided below and is determined based on job-related factors, including, but not limited to, the experience, qualifications, knowledge, skills, geographic work location, and market conditions. Candidates with the minimum necessary experience, qualifications, knowledge, and skillsets for the position should not expect to receive the upper end of the pay range.
● The base pay for this position within the Washington, DC metropolitan area is: $131,000.00 - $219,000.00 annually.For all other states, we use geographic cost of labor as an input to develop market-driven ranges for our roles, and as such, each location where we hire may have a different range.
We offer a comprehensive package of benefits including paid time off, health and welfare insurance, and 401(k) to eligible employees. You can find more information on our benefits at: https://www.maxar.com/careers/benefits
The application window is three days from the date the job is posted and will remain posted until a qualified candidate has been identified for hire. If the job is reposted regardless of reason, it will remain posted three days from the date the job is reposted and will remain reposted until a qualified candidate has been identified for hire.
The date of posting can be found on Maxar’s Career page at the top of each job posting.
To apply, submit your application via Maxar’s Career page.
Maxar Technologies values diversity in the workplace and is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected veteran status, age, or any other characteristic protected by law.
Tags: Audits Automation CISM CISSP Cloud Compliance DoD Firewalls GSLC ICD 503 Linux Malware Monitoring Nessus NIST NIST 800-53 POA&M Polygraph Risk assessment Risk management RMF SCAP Security assessment Splunk Top Secret TS/SCI Vulnerability management Windows
Perks/benefits: Career development Health care Insurance
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.