Posted in

Information Systems Security Officer – Isso

Information Systems Security Officer – Isso

CompanyICF
LocationAberdeen, MD, USA
Salary$107936 – $183491
TypeFull-Time
DegreesBachelor’s
Experience LevelSenior

Requirements

  • Bachelors Degree
  • 7 years of technically related experience
  • Active High Level security clearance with SCI and Poly

Responsibilities

  • Perform all ISSO duties and responsibilities in DODI 8500.01, DODI 8510.01, and AR 25–2.
  • Responsible for ensuring the appropriate operational security posture is maintained for the information system (IS) on multiple security domains and classification to met Intelligence Community (IC), DoD and Army cybersecurity/information assurance regulations and policies.
  • Develops, reviews, evaluates and verifies self-testing results to validate enclave security requirements in accordance with applicable Intelligence Community, DoD and Army cybersecurity and Information Assurance (IA) regulations, policies and organizational security policies) in Information Systems (ISs) are met.
  • Ensure the appropriate organizational operational security posture is maintained for the assigned Army IS.
  • Maintain organizational situational awareness and initiate actions to improve or restore cybersecurity posture of assigned IS.
  • Implement and enforce assigned Army IS cybersecurity policies and procedures, as defined by cybersecurity-related documentation.
  • Ensure Army IS cybersecurity-related documentation is current and accessible to properly authorized individuals. Prepare, distribute, and maintain plans, instructions, and SOPs concerning system security.
  • Prepare and maintain Risk Management Framework (RMF) system accreditation Body of Evidence (BOE) packages using the eMASS, XACTA, or other approved A&A tool to include: System Security Plans, Risk Assessment Reports, System Requirements Traceability Matrices (SCTM), and other documentation as required by ICD 503, NIST 800-53, CNSSI 1254, and any additional documentation as determined by the Authorizing Official (AO). Direct experience with eMASS, XACTA, or other A&A repositories required.
  • Review unit or product vendor RMF BOE and provide guidance and oversight.
  • Fully understand DISA Port Protocol, and Services Management (PPSM) requirements, and able to obtain PPSM account for management of PPSM for supporting systems.
  • Must be willing to travel, as needed, 25%.

Preferred Qualifications

  • DoDI 8570.01 Requirement, IAM II certification (CISSP, CASP, etc.)
  • Direct experience with implementation of DOD-I-8500, DOD-I-8510, ICD 503, NIST 800-53, CNSSI 1253, Army AR 25-2, and RMF security control requirements, and able to provide technical direction, interpretation, and alternatives for security control compliance.
  • Relevant experience must be in computer or information systems design/development and with information assurance and accreditation processes (e.g., System Security Plans, Risk Assessment Reports, Certification and Accreditation Packages, and System Requirements Traceability Matrices).