Jobs · OTHR · Maryland

Information System Security Officer

Peraton Labs · Silver Spring, MD · 4 wk ago
On-siteOTHR$104k–$166k/yrFull-time

About Peraton

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extends to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face.

About The Role

Peraton is seeking an Information System Security Officer in support of Peraton Labs' information assurance and information technology operations. This is a full-time on-site position working out of the Silver Spring, Maryland office.

  • Assist the Information System Security Manager (ISSM) with information assurance efforts, and systems across numerous environments in Silver Spring, MD.
  • Perform Information System Security Officer (ISSO) roles and responsibilities as prescribed by the DAAG, JSIG, ICD-503, and other applicable regulations.
  • Aid in the creation, management, and maintenance of RMF Package documentation, submissions, and associated artifacts. This includes A&A packages, ASA packages, SCRs, etc.
  • Prepare, deliver, and update all required documentation as directed by the ISSM using the current approved templates, forms, regulations, and methods.
  • Meet continuous monitoring requirements for the accredited information systems, to include weekly auditing, performing of backups, AV updates, OS patching, vulnerability scanning, and other prescribed tasks.
  • Manage security vulnerabilities, implement timely remediation, monitor security logs for violations and anomalous events, and report information security concerns and problems when necessary.
  • Provide information for the generation of Plan of Actions & Milestones (POA&Ms) for each non-compliant control, manage all applicable POA&Ms throughout the information system lifecycle.
  • Oversee the maintenance of Linux and Microsoft classified information systems, with the ability to assist in technical efforts when needed. This may include building systems, installing software, and/or troubleshooting information systems and network devices.
  • Apply security controls based on the DoD Security Technical Implementation Guidance and other customer requirements.
  • Work closely with the key stakeholders to identify any additional controls that are applicable to the system(s) to maintain a favorable security posture.
  • Affiliate in incident response, annual self-inspection, and inventory efforts.
  • Track the deployment of all applicable software and hardware to classified environments.
  • Provide, track, and report security requirements throughout the system life cycle of all information systems that are within the accreditation boundary.
  • Provide timely and detailed responses to user and customer requests.
  • Continuously maintain a thorough understanding of all relevant corporate policies, security control plans as well as system configurations, architecture, installed software, accounts (both Operating System and Application), data flows, ports, protocols, and other relevant data for each Information System.
  • Maintain required certifications for this role.

Qualifications

  • 5 years with BS/BA; 3 years with MS/MASecurity+ or equivalent certification (DoD 8570 IAM Level II).
  • Experience with SAP and/or DCSA assessments and authorizations.
  • 3+ years experience with Authority to Operate (ATO) process, continuous monitoring, POA&Ms, Security Authorizations (SA), NIST 800-37, NIST 800-53 Rev4/ Rev5, working with Information System Owners (ISO) and Program Managers (PM).
  • Experience with SCAP, STIGs, and other compliance tools.
  • Proven written and verbal communication skills, and the ability to work well with team members.
  • Active TS clearance with ability to obtain SCI.

Desired Skills/Qualifications

  • Preferred degree in a technical discipline such as computer science, cybersecurity, or information technology.
  • Experience with Ongoing Authorizations.
  • Experience with eMASS.
  • Experience with ACAS, Nessus, and/or other vulnerability scanners.
  • 3+ years of solid Linux system administration working experience with specific focus on Ubuntu and RedHat distributions.
  • Experience with Linux shell scripting include writing new scripts and troubleshoot existing codes.
  • In-depth knowledge of TCP/IP and networking concepts and a solid understanding of the well-known services including DHCP, DNS, SSH, TLS, IPSec, etc.

Similar jobs

Security Officer

Guardian Security Services, Inc.Downers Grove, IL· 1 mo ago
Information Technologyapply on de.jobsyn.org

Security Officer

Per Mar Security ServicesMinneapolis, MN· 1 mo ago
Information Technologyapply on joblinkapply.com

Security Officer

Signet JewelersNew York, NY· 1 mo ago
Information Technology$28–$35/hrapply on signetjewelers.wd1.myworkdayjobs.com

Security Officer

Securitas Security Services USA, Inc.Grand Rapids, MN· 1 mo ago
Information Technology$18.35/hrapply on ekaw.fa.us2.oraclecloud.com

Security Officer

SedgebrookLincolnshire, IL· 2 mo ago
Information Technology$18/hrapply on eexs.fa.us2.oraclecloud.com

Security Officer

CARTILittle Rock, AR· 2 mo ago
Information Technologyapply on secure4.saashr.com