The Information Systems Security Officer is responsible for the day-to-day operations and support of classified information systems at our Kratos Defense & Rocket Support Services, Glen Burnie, MD facility. This will include physical and environmental protection, personnel security, incident handling, security training and awareness. The successful candidate will be required to work in close coordination with the siteis ISSM in monitoring the information system(s) in its environment of operation. Duties include developing and updating authorization documentation and implementing configuration management across authorization boundaries, including assessing the security impact of changes and making recommendations to the ISSM. KEY RESPONSIBILITIES
- Maintain operational security posture for an information system or program.
- Provide cybersecurity oversight and guidance supporting Assessment and Authorization (A&A) as required.
- Prepare system security plan (SSP) and provide recommendations to assist in obtaining ATOs based on RMF experience IAW established cybersecurity policies and procedures.
- Verify package submissions meet the threshold for approval such as: CCIs, SCA-V results, POA&Ms, STIGs, Cybersecurity Strategies and System Security Plans (SSPs) and other RMF documentation etc.
- Identify, develop (either directly, or in coordination with applicable experts), review and incorporate common artifacts found in an RMF accreditation package such as: system architecture and boundaries, hardware and software lists, risk assessment reports, POA&Ms, data flows, PPSM accounting, and other necessary systems, network, and application documentation.
- Apply knowledge and experience identifying, assessing, and documenting compliance against applicable DoD security controls (technical, management, operational), within RMF packages.
- Implement vulnerability scanning and assessment tools (e.g., ACAS/Nessus) necessary to identify and document compliance.
- Analyze and interpret vulnerability assessment results and formulate plans to mitigate vulnerabilities.
- Assist with the CM for information system security software, hardware, and firmware. Maintain records on workstations, servers, routers, firewalls, intelligent hubs, network switches, etc. to include system upgrades.
- Oversee the implementation of software patches to maintain the security posture of the organization.
- Identify information system risks and possible mitigation measures, documenting these in various risk reports and Plans of Action and Milestones (POA&Ms).
- Perform and complete STIG checklists, monitor IAVM compliance, and appropriately assess and document to completion all associated POA&Ms.
- Identify, interpret, and evaluate major applications, infrastructure, enclaves, and Enterprise system environments based on proposed accreditation boundaries.
- Establish and publish upon approval cybersecurity policies and Standard Operating Procedures (SOPs) as required.
- Maintain and report assessment and authorization statuses and issues in accordance with organizational guidance.
- Translate technical IS configurations into non-technical documentation.
- Implement and enforce information systems security policies, standards, and methodologies.
- Demonstrate strong verbal and written communications and interpersonal skills.
SKILLS / QUALIFICATIONS
- Ability to maintain sensitive and confidential information as required by government standards.
- Ability to interact effectively with peers and supervisors.
- Ability to interact appropriately with the public when necessary.
- Ability to adhere to workplace rules.
- May require up to 15% travel to support meetings, design reviews, other reviews and meetings and launch operations.
Keyword: ISSO, SSP
Required Experience:
EDUCATION, EXPERIENCE, AND LICENSING REQUIREMENTS
- U.S. Citizenship required.
- U.S. Secret Clearance required.
- 5+ years of experience.
- AT Level II (Security +).
- Configuration and Document Management.
- Security Policy Implementation.
- Security Vulnerability Scanning Tools.
- System Security Plan (SSP).
PAY RANGE The likely salary range for this position is $96,034 - $121,785. This is not, however, a guarantee of compensation or salary. Rather, the successful candidateis salary will be set based on experience, geographic location and possibly contractual requirements, and could fall outside of this range. #LI-AC1 #LI-Onsite
From: Kratos Defense
|