Cybersecurity Information System Security Officer / Security
Join to apply for the Cybersecurity Information System Security Officer / Security role at Pantex Plant
Location : Amarillo TX (PAC)
Job Title : Cybersecurity Information System Security Officer / Security
Career Level : Associate
Organization : Formal Authorization & Risk Mgmt (50992239)
Job Specialty : Cyber Security
What You'll Do
The Cyber Security Professional is responsible for the Assessment and Authorization (A&A) of Federal information systems, as well as the development of accreditation and other required cybersecurity documentation for new and existing systems. Additionally, this person will utilize various network tools for continuous monitoring of Information Technology (IT) assets. This role includes responsibilities of the Information System Security Officer (ISSO) and / or the Security Control Assessor (SCA) for classified and unclassified IT systems. Candidates are expected to have an understanding of the NIST Risk Management Framework (RMF) and the various supporting elements.
- A&A of Federal information systems
- Development of accreditation and other required cybersecurity documentation for new and existing information systems
- Conduct independent comprehensive assessments of the management, operational, and technical security controls, and control enhancements employed within, or inherited, by an IT system, to determine the overall effectiveness of the controls (as defined in National Institute of Standards and Technology Special Publication (NIST SP) 800-37)
- Perform continuous monitoring of IT assets
- Develop risk assessments and the proper mitigations
- This role includes responsibilities of the ISSO and / or the SCA or classified and unclassified IT systems
- Perform other duties as assigned
What You Can Expect
Meaningful work and unique opportunities to support missions vital to national and global security
Top-notch, dedicated colleagues
Generous pay and benefits with a stable organization
Career advancement and professional development programs
Work-life balance fostered through flexible work options and wellness initiatives
Meaningful work and unique opportunities to support missions vital to national and global securityTop-notch, dedicated colleaguesGenerous pay and benefits with a stable organizationCareer advancement and professional development programsWork-life balance fostered through flexible work options and wellness initiativesMinimum Job Requirements
Bachelor's degree in engineering / computer / mathematics / information technology discipline.
OR Applicants without a bachelor's degree may be considered based on a combination of at least 8 years of completed education and / or relevant experience.
Bachelor's degree in engineering / computer / mathematics / information technology discipline.OR Applicants without a bachelor's degree may be considered based on a combination of at least 8 years of completed education and / or relevant experience.Preferred Job Requirements
Knowledge of computer networking concepts and protocols, and network security methodologiesKnowledge of risk management processes (e.g., methods for assessing and mitigating risk)Knowledge of cybersecurity and privacy principlesKnowledge of cybersecurity threats and vulnerabilitiesKnowledge of Security Assessment and Authorization processKnowledge of RMF best practicesAbility to present administrative, technical, and operational information clearly and effectively through the oral and written word as well as diagrams and chartsKnowledge of NIST 800-53 / 53A security controlsAbility to assess and provide written assessments of A&A packagesExperience with RMF in the Department of Energy (DOE) CommunitySecurity+, Certified Ethical Hacker (CEH) Certification or Certified Information Systems Security Professional (CISSP) CertificationFedRAMP and Cloud compliance experienceKnowledge of IT security principles and methods (e.g., firewalls, demilitarized zones, encryption)Knowledge of Application Security RisksKnowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacyKnowledge of Supply Chain Risk Management Practices (NIST SP 800-161)Knowledge of Personally Identifiable Information (PII) data security standardsKnowledge of authentication, authorization, and access control methodsKnowledge of database systemsKnowledge of Industrial Control Systems (NIST 800-82)Knowledge emerging technologies that have potential for exploitationKnowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL / SQL and injections, race conditions, covert channel, replay, return-orientedWhy Pantex?
You get #morethanajob. We encourage employees to achieve a healthy personal balance among home, work and the community. Benefits such as : medical plan, prescription drug plan, vision plan, dental plan, employer matched 401(k) savings plan, disability coverage, education reimbursement and many more.
Pantex is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, sex, age, religion, national origin, ancestry, genetic information, disability or veteran status.
J-18808-Ljbffr