Overview
GovCIO is currently hiring for an Information System Security Engineer (ISSE) to support the USAF at Port San Antonio, Lackland Annex.
Candidate will be involved in designing, implementing and securing information systems, conducting risk assessments and ensuring compliance with security standards and best practices.
Responsibilities
The ideal candidate primary function is :
- Support the authorization of systems through the Risk Management Framework (RMF) to get an Interim Authority to Operate (IATO) or ATO
- Support the categorization of Information System(s) (IS) to be accredited through the RMF process and support the development of the System Security Plan (SSP)
- Support the determination and selection of the required and / or applicable security controls to include the development of Memorandum of Understanding (MOU) or Memorandum of Agreement (MOA) for external systems and the development and implementation of an IS Continuous Monitoring (ISCM) plan
- Support the implementation of selected security controls specified in the SSP to the IS and its environment of operation
- Support the development, review, and approval of Security Assessment Plan (SAP) and System Assessment Report (SAR)
- Perform periodic security scans and remediating findings based on the scan results
- Support the development of the Plan of Action and Milestones (POA&M) and the development and update of the Security Authorization Package (SAP)
- Perform periodic assessment of the IS' security controls and develop the periodic ISCM report
Qualifications
Clearance : TS SCI
- High School with 10+ years (or commensurate experience)
- Active Top Secret / SCI eligible security clearance
- VMware Certified Professional certification
- Technical training related to Information Technology, Cyber Security, Computer Science, or related discipline
- At a minimum, an up-to-date Information Assurance Technical (IAT) Level II baseline certification
- 5 years' knowledge and experience in installing, maintaining, and using ACAS, HBSS, SCAP and other cybersecurity related tools
- At least HBSS or ACAS certification / training certificate or both (both courses are desired)
- Cybersecurity and IT related knowledge and experience
- RMF knowledge and experience
- Proficiency in Microsoft Word, PowerPoint, Excel
Desired qualifications :
- Kibana and Logstash
- Evaluate-STIG
- Microsoft Active Directory and Group Policy Management
- VMWare vSphere, vCenter, and Horizon View
- Both HBSS & ACAS certification / training
- Familiar with the evaluation / implementation processes for DISA STIGs to include Windows Server 2016, Server 2019, Windows 10 and VMWare ESxi hosts
- 5+ years of experience with Microsoft Windows and Server configuration and administration
- 5+ years of experience with implementing VMware, Linux, and Windows STIGs
30+ days ago