Information System Security Officer

Lockheed Martin
Pennsylvania
$98.8K-$186.1K a year
Full-time

Job Description

At Lockheed Martin Rotary and Mission Systems (RMS), we are driven by innovation and integrity. We believe that by applying the highest standards of business ethics and visionary thinking, everything is within our reach and yours as a Lockheed Martin employee.

Lockheed Martin values your skills, training, and education. Come and experience your future!

This position requires the candidate to function as the Information System Security Officer (ISSO) for multiple programs and performs as a technical liaison in support of the security standards and requirements relevant to the NIST Risk Management Framework (RMF) Step 1 thru Step 6 for the information systems.

The desired candidate will possess a working understanding of the NIST 800-53 Security and Privacy Controls for Federal Information Systems and Organizations combined with a high degree of technical skills obtained through systems engineering or systems administration.

The candidate must have working experience with the development, implementation, and maintenance of either the Linux and / or Microsoft Windows operating systems and supporting applications.

The ISSO is responsible for the oversight of the information system’s security posture with emphasis placed on the application and sustainment of the security controls.

In doing so, the primary functions include development and maintenance of the System Security Plan (SSP), Plan of Action and Milestones (POA&M), and Security Controls Traceability Matrix (SCTM) as primary RMF deliverables.

The ISSO also performs routine system auditing as well as vulnerability and compliance scanning throughout the entire lifecycle of the system.

Development and implementation of relevant security policies and procedures required by assessment and authorization activities also apply based on any of the following guidance directives :

  • Intelligence Community Directive 503 (ICD-503)
  • DCSA Assessment and Authorization Process Manual (DAAPM)
  • National Industrial Security Program Operating Manual (NISPOM Chapter 8)
  • Joint Special Access Program (SAP) Implementation Guide (JSIG)

Effective communication is a key attribute within this role. The ISSO provides clear direction and assists programmatic IT and infrastructure support personnel with the application of security patches and secure configurations commensurate with Security Technical Implementation Guides (STIGs).

Routine collaboration and consultation with the Information System Security Manager (ISSM) regarding the design, development, integration, and analysis of classified information systems is required.

Working knowledge of Industry Standard tools for purposes of audit reduction, vulnerability scanning, and malware analysis is preferred.

Relevant tools include but are not limited to : Splunk, Tenable Nessus, Host Based Security System (HBSS) components, Security Content Automation Protocol (SCAP) Checker and STIG viewer.

The ISSO is also a primary stakeholder and facilitator of the continuous monitoring efforts that promote RMF compliance throughout the organization.

In doing so, the ISSO will routinely monitor the applicable security controls assigned to programs and systems using a blend of automated and manual techniques.

This ensures that the security controls are : (1) being met and (2) implemented correctly with respect to the environment.

Deficiencies and weaknesses identified throughout the process will be reported back to the ISSM.

Primary support activities include :

  • Perform routine self-inspection reviews of the information systems.
  • Perform comprehensive investigations of computer security incidents and ensuring proper measures are taken post discovery of the incident / event.
  • Manage and execute the information security continuous monitoring requirements relevant to the system.
  • Oversee the compliance of security settings within operating systems and applications integrated in the classified information systems under the candidate’s purview

Desired skills

  • Experience working with classified information systems.
  • Previous experience supporting SAP / SCI environments.
  • Relevant ISSO / ISSE experience within the DoD or Intelligence Community.
  • Knowledge of the Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs) and configuration standards.
  • Experience with Security Directives, Policies, Publications and Regulations.
  • 4 days ago
Related jobs
Promoted
Lockheed Martin
PA, United States

The selected candidate will be part of the Space - Security & Emergency Services organization, and function as an Information System Security Officer (ISSO) in Valley Forge, PA, supporting a variety of classified programs as part of a team. Document compliance actions within the approved automated c...

Promoted
General Dynamics Mission Systems
Pittsburgh, Pennsylvania

The candidate will support information system life cycle activities from rapidly establishing systems to support classified proposals, to scoping systems for new programs and preparing Risk Management Framework packages, to regular maintenance, support and upgrades of systems during program executio...

Promoted
General Dynamics Mission Systems
Pittsburgh, Pennsylvania

The candidate will support information system life cycle activities from rapidly establishing systems to support classified proposals, to scoping systems for new programs and preparing Risk Management Framework packages, to regular maintenance, support and upgrades of systems during program executio...

Promoted
General Dynamics Mission Systems, Inc
Pittsburgh, Pennsylvania

The candidate will support information system life cycle activities from rapidly establishing systems to support classified proposals, to scoping systems for new programs and preparing Risk Management Framework packages, to regular maintenance, support and upgrades of systems during program executio...

Customers Bank
Malvern, Pennsylvania

Lead the information security function across the company to ensure consistent and high-quality information security management in support of the business goals. Develop and implement a strategic, long-term information security strategy and roadmap to ensure that information assets are adequately pr...

Watershed Security
Philadelphia, Pennsylvania

RESPONSIBILITIES AND DUTIES Responsible for ensuring the security and integrity of our organization's information systems You will work closely with our IT and security teams to identify potential vulnerabilities, develop security protocols, and implement necessary measures to safeguard our systems ...

The Pennsylvania State University
State College, Pennsylvania

The CISO will lead the Information Security department and have oversight related to information security, which includes financial and budgetary responsibilities. Professional security management certification, such as a Certified Information Systems Security. Chief Information Security Officer (CI...

Paragon Systems
Lansdale, Pennsylvania

Must be able to meet and continue to meet any applicable state, county and municipal licensing requirements for Security Officers. From Armed Security officers to Mailroom Service Clerks and Fire Fighters, from Field Investigators to Site Supervisors, we all stand united to maintain order in the mos...

The Pennsylvania State University
State College, Pennsylvania

Assistant Professor of Information Systems focused on Cyber Security/Network Security. The primary responsibilities of the Assistant Professor of Information Systems specializing in Cyber Security/Network Security include:. The successful candidate will also pursue teaching in areas such as manageme...

Information Network Associates
Harrisburg, Pennsylvania

INA) is currently seeking security professionals to join our organization as Unarmed Security Officers in the Harrisburg area. Three (3) years of law enforcement experience as a sworn Police Officer or Military Police Officer or five (5) years experience in security or protective force services or a...