Information Security Systems Officer
West Chester, Pennsylvania, United States
Full Time Mid-level / Intermediate Clearance required USD 52K - 123K * est.
Weston Solutions
Weston Solutions solves complex environmental and infrastructure engineering challenges. Our engineers and scientists are committed to sustainability.- Assist with the development and maintaining an (ATO) Authorization to Operate, System Security Plans (SSPs), POA&Ms, and RARs.
- Execute RMF processes and procedures, including Continuous Monitoring (ConMon) of security controls.
- Assist with the sanitization of equipment and manage hardware/software inventories.
- Attend change control board (CCB), Incident Response and Contingency Plan meetings.
- Write standard operating procedures (SOP) and security in depth (SID) plans, as well as security policies.
- Work closely with ISSMs, IT staff, and program security personnel to ensure adherence to security policies.
- Conduct auditing functions for information systems and networks, identifying deviations from acceptable configurations.
- Provide cybersecurity education and training for all system users on appropriate risk mitigation strategies.
- Notify the ISSM of any changes to a system that could affect authorization.
- Report all security-related incidents to the ISSM.
- Perform other security duties as required.
- Must be a US citizen.
- Current/Active DOD Secret clearance and the ability to obtain and maintain Secret clearance.
- Bachelor's degree from an accredited university or college OR associate degree with a minimum of 2 years of professional experience OR High School Diploma with a minimum of 4 years of professional experience in Computer Science, Information Systems, Information Assurance, or Information Technology.
- Experience with Windows 10/11 Operating Systems (OS).
- Strong knowledge of Microsoft Office suite.
- Working knowledge of Group Policy managing and enforcing Group Policy Objects (GPOs) to standardize and secure user and computer settings.
- Working knowledge monitoring and analyzing system events recorded in the Event Viewer.
- Problem solving and troubleshooting skills.
- Strong attention to detail and organization skills.
- Must be a team player and able to work within all levels of a project team.
- Working knowledge of policies and guidance including the National Industrial Security Program Operating Manual (NISPOM), ICD 503, and/or DCSA Assessment & Authorization Process Manual (DAAPM).
- Working knowledge of Security Content Automation protocol (SCAP).
- Working knowledge of DISA Security Technical Implementation Guide (STIG).
- CompTIA Security+ certification or higher.
- Strong oral and written communication skills.
- Strong interpersonal and leadership skills.
- Experience using Nessus Vulnerability Scanner.
- Ability to lead initiatives of moderate scope and impact.
- Ability to coordinate several projects simultaneously.
- Proven analytical and organizational ability.
- Medical, Dental, Vision, 401K with base and matching employer stock contributions.
- Paid time off includes personal, holiday and parental.
- Life and disability plans.
- Critical illness and accident plans.
- Work/Life flexibility.
- Professional development opportunities.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Automation Clearance Compliance CompTIA Computer Science DAAPM DISA DoD ICD 503 Incident response Industrial Monitoring Nessus NISPOM NIST NIST 800-53 POA&M Risk assessment Risk Assessment Report RMF SCAP System Security Plan Windows
Perks/benefits: 401(k) matching Career development Equity / stock options Health care Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.