Information System Security Officer - CLEARED

RightDirection Technology Solutions
LORTON, VA, US
Full-time

RightDirection Technology Solutions LLC

Description :

RDTS is seeking an experienced Information System Security Officer (ISSO) to provide Systems Assessment and Authorization support to the US Department of the Treasury's Departmental Offices (DO), Office of the Chief Information Officer (OCIO).

This position requires both the technical ability to provide independent assessments and plans for current enterprise applications and systems;

and the interpersonal skills to oversee effective inter / intra-departmental collaborations to ensure effective operations.

Personnel selected for this role will work with RDTS leadership to oversee the program and Government personnel to develop plan based on scheduled system and application analysis to meet mission needs of the Department of Treasury DO.

Duties and Responsibilities :

  • The overall duties and responsibility for this position are to perform a security assessment (either full or partial) on each system (up to nine systems) assigned in the Enterprise Applications Cybersecurity portfolio.
  • The list of systems requiring security assessments will be provided by the Program Manager and Government Lead based on the current team workload.
  • The ISSO will work independently to perform IT audits on complex information systems, applications, and enclaves to ensure that appropriate controls exist, are correctly implemented, and that procedures are in compliance with NIST, Federal, DOD standards.
  • The candidate will conduct cybersecurity control validation exercises on classified and unclassified networks, applications, and systems to validate the effectiveness of current security measures.
  • He / She will conduct accurate evaluation of the level of security required.
  • He / She will perform all procedures necessary to ensure the safety of information systems assets and to protect systems from intentional or inadvertent access or destruction.
  • The individual will provide technical support in the areas of vulnerability assessment, risk assessment, network security, and security implementation.
  • The candidate will provide technical evaluations of customer systems and assists with making security improvements.
  • The candidate will also develop a Security Assessment Plan (SAP) (Per NIST SP 800-53A, TD P 85-01, and TSSEC Policy or DO P 910 if applicable) that describes the scope of the system assessment.

The SAP shall include :

  • Security controls and control enhancements under assessment.
  • Assessment procedures to be used to determine security control effectiveness.
  • Assessment environment, assessment team, and assessment roles and responsibilities.

The results of the security assessment shall be documented in the Security Assessment Report (SAR), Security Requirements Compliance Matrix (SRCM), and the Plan of Actions and Milestones (POA&M).

Requirements :

  • Bachelor's Degree in Computer Science, IA or other cyber discipline.
  • Five (5) to Ten (10) years relevant experience.
  • Must possess fundamental understanding of Splunk applications.
  • Experience with Tenable., Qualys, DB Protect, Websense or a similar security scanner.
  • Must have strong understanding of DISA STIG and CIS Benchmark configurations.
  • Must be able to weigh business needs against security concerns and be able to analyze applied mitigations to evaluate whether they meet security requirements.
  • Must be a US citizen.
  • Must be able to obtain and maintain a security clearance.

Specialized Requirements :

  • Experience with scripting.
  • Experience with host based and application layer scan technologies.
  • Knowledge of Azure, AWS, Oracle OCI or similar cloud-based systems.
  • Strong knowledge of security fundamentals and common vulnerabilities clearance.
  • Experience with the full stack of information technologies and associated security models, including server / OS, database, hardware, network devices, user compute application / SDLC, etc.
  • Experience working with cyber security and vulnerability management.
  • Ability to work in a fast-paced work environment and open to quickly adjusting to meet Customer needs.

PM21

All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.

All qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, age, marital status, pregnancy, genetic information, or other legally protected status.

PIfd8c1f52735f-26289-29957372

2 days ago
Related jobs
Promoted
AT&T
Chantilly, Virginia

Supporting the Information System Security Manager (ISSM) & Information System Security Engineer (ISSE) Lead. Information System Security Officer (IA Technical Level II) (Government). AT&T has an opening for an Information System Security Officer (ISSO). The job duties of the Information Sys...

Booz Allen Hamilton
Alexandria, Virginia

Information System Security Analyst or Information System Security Officer. Information System Security Officer. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you—an information security risk specialist who will break down co...

Novul Solutions
Alexandria, Virginia

We are seeking an experienced Information System Security Officer (ISSO) to ensure the secure operation of information systems in compliance with DoD regulations. Validate and enforce security policies and procedures outlined in the System Security Plan (SSP) and ensure compliance with cybersecurity...

ManTech
Chantilly, Virginia

Hold at least one of the following certifications: Certified Information Systems Security Professional (CISSP), Global Information Security Professional (GISP), or the CompTIA Advanced Security Practitioner (CASP) or other certifications exemplifying skill sets such as those described in DoD Instruc...

Parsons Corporation
Chantilly, Virginia

Information System Security Officers. Certified Information Systems Security Professional (CISSP) certification. Bachelor’s Degree or higher and 3 years of relevant information assurance / cybersecurity experience. Perform assessments of systems and networks within the networking environment or encl...

Peraton
Chantilly, Virginia

Information Systems Security Officer (ISSO). Work closely with the System Owner to identify any additional controls that are applicable to the system(s) to maintain a favorable security posture. Maintain the Security Authorization or Assessment and Accreditation (A&A) of their assigned system(s). Ma...

Parsons Corporation
Chantilly, Virginia

Certified Information Systems Security Professional (CISSP) certification. In this role you will develops, maintain, and implement information security standards, procedures, and guidelines for applications and databases. In addition, you will ensure that systems and organizational databases are pro...

Cyber Defense Technologies
Chantilly, Virginia

Responsible for capturing and refining information protection requirements to ensure their integration into information systems acquisition and information systems development through purposeful security design or configuration. Develop and implement security designs for new or existing network syst...

Open Systems Technologies Corporation
Quantico, Virginia

Work closely with Government customers to ensure the confidentiality, integrity, and availability of systems, applications, networks, and data through the planning, analysis, development, implementation, maintenance, and enhancement of information systems security programs; infrastructure; applicati...

Next Step Systems – Recruiters for Information Technology Jobs Top IT Recruiting Firm
Springfield, Virginia

Integrated Operations Shift Supervisor, Day Shift, TS/SCI with Polygraph Security Clearance Required, Springfield, VA. Ready to hire an Integrated Operations Shift Supervisor with an active TS/SCI with Polygraph Security Clearance. Current Security + Certification. Basic knowledge of ServiceNow, Win...