Information System Security Officer jobs in United States
cer-icon
Apply on Employer Site
company-logo

SOSi · 8 hours ago

Information System Security Officer

SOSi is a leading technology and services integrator in the defense and government services industry, and they are seeking a seasoned Information Systems Security Officer to secure mission-critical IT operations at Joint Base Pearl Harbor Hickam. The role involves managing the Risk Management Framework lifecycle, ensuring compliance with security policies, and contributing to the team's success in protecting organizational assets.

ConsultingGovernmentInformation Technology
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote
Hiring Manager
Rhonda Reinartz
linkedin

Responsibilities

Assist the ISSM (Information System Security Manager) in formulating and upholding an organized information system security program and policies that are applicable to their assigned area of responsibility
Establish and maintain secure computer systems and networks for classified processing, and take responsibility for the administration, maintenance, and security auditing of such systems
Develop and supervise the implementation of guidelines and policies for operational information systems security
Manage assigned eMASS (Enterprise Mission Assurance Support Service) packages containing all security authorizations for information systems under their supervision
Coordinate inspections, tests, and reviews of information system security
As a key member of the team, you will be responsible for contributing your expertise and skills to help ensure the team's success in responding to security incidents and protecting organizational assets
Practical understanding of the Assured Compliance Assessment Solution (ACAS) to support the execution of the information system patch and vulnerability management program
Thorough understanding of Security Technical Implementation Guidelines (STIG) and ensure they are reviewed, maintained, and updated on a quarterly basis
Ensure compliance with Configuration Management policies and procedures for authorizing the use of hardware and software on an information system
Engage with external stakeholders to facilitate the coordination of interconnection requests and ensure that such requests are processed and approved in an efficient manner
Maintain current knowledge of system functions, security policies, technical security safeguards, and operational security measures
Manage, maintain, and execute the information security continuous monitoring plan
Keep records of all security-related vulnerabilities POA&Ms and ensure that serious or unresolved violations are reported to the AO/DAO
Evaluate any changes to the system, its environment, and operational requirements that could impact security authorization

Qualification

Risk Management FrameworkNIST 800-53r5EMASSDoD 8570 IAT-IINSA CSfC solutionCross Domain SolutionsJIRAConfluenceTenable NessusSCAPCommunication skills

Required

An Active in-scope SECRET clearance
Bachelor's degree in a related field plus 4 years of related experience
DoD 8570 IAT-II compliant (Security+ CE, CCNA, CND, CySA+, GICSP, GSEC, or SSCP)
Knowledge of NSA's Commercial Solution for Classified (CSfC) solution and Cross Domain Solutions (CDS)
Thorough understanding of NIST Publication 800-53r5, Risk Management Framework, Executive Order 14028, and OMB Mandate M-22-09
Prior experience with eMASS
Strong communication skills and ability to coordinate tasks across functional groups

Preferred

An Active in-scope TOP SECRET clearance with SCI Eligibility
Recent experience in the assessment and authorization of systems
Practical knowledge of JIRA and Confluence
Experience with compliance tools such as Tenable Nessus and SCAP
Experience in program policy and process creation and oversight

Company

SOSi solves the challenges of the modern mission.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Jim Edwards
Chief Growth Officer
linkedin
Company data provided by crunchbase