Posted in

Information Systems Security Officer – Isso

Information Systems Security Officer – Isso

CompanyICF
LocationAberdeen, MD, USA
Salary$105353 – $179101
TypeFull-Time
DegreesBachelor’s
Experience LevelSenior, Expert or higher

Requirements

  • Bachelors Degree
  • 7 years of experience
  • Active High Level security clearance with SCI and Poly
  • DoDI 8570.01 Requirement, IAM II (see Note 4, Note 5, Note 6)

Responsibilities

  • Perform all ISSO duties and responsibilities in DODI 8500.01, DODI 8510.01, and AR 25–2.
  • Responsible for ensuring the appropriate operational security posture is maintained for the information system (IS) on multiple security domains and classification to met Intelligence Community (IC), DoD and Army cybersecurity/information assurance regulations and policies. This includes providing guidance and oversight to vendors and/or the
  • Develops, reviews, evaluates and verifies self-testing results to validate enclave security requirements in accordance with applicable Intelligence Community, DoD and Army cybersecurity and Information Assurance (IA) regulations, policies and organizational security policies) in Information Systems (ISs) are met. ISs includes Cross Domain Solution Suites (CDSS), Cloud, On-Prem, Tactical, etc., within the program’s portfolio.
  • Ensure the appropriate organizational operational security posture is maintained for the assigned Army IS.
  • Maintain organizational situational awareness and initiate actions to improve or restore cybersecurity posture of assigned IS.
  • Implement and enforce assigned Army IS cybersecurity policies and procedures, as defined by cybersecurity-related documentation.
  • Ensure Army IS cybersecurity-related documentation is current and accessible to properly authorized individuals. Prepare, distribute, and maintain plans, instructions, and SOPs concerning system security.
  • Prepare and maintain Risk Management Framework (RMF) system accreditation Body of Evidence (BOE) packages using the eMASS, XACTA or other approved A&A tool to include, System Security Plans, Risk Assessment Reports, System Requirements Traceability Matrices (SCTM), and other documentation as required by ICD 503, NIST 800-53, CNSSI 1254 and any additional documentation as determined by the Authorizing Official (AO). Direct experience with eMASS, XACTA or other other A&A repositories required.
  • Review unit or product vendor RMF BOE and provides guidance and oversight.
  • Fully understand DISA Port Protocol, and Services Management (PPSM) requirement and able to obtain PPSM account for management of PPSM for supporting systems.
  • Must be willing to travel, as needed, 25% and more.

Preferred Qualifications

  • Direct experience with implementation of DOD-I-8500, DOD-I-8510, ICD 503, NIST 800-53, CNSSI 1253, Army AR 25-2, and RMF security control requirements and able to provide technical direction, interpretation and alternatives for security control compliant.
  • Relevant experience must be in computer or information systems design/development and with information assurance and accreditation processes (e.g., System Security Plans, Risk Assessment Reports, Certification and Accreditation Packages, and System Requirements Traceability Matrices).