Information System Security Specialist II
About the role
We are seeking a dedicated and detail-oriented Information System Security Specialist II to join our team. In this role, you will support software and hardware patch management, vulnerability scanning, and the quarterly maintenance of software baselines to ensure IA compliance.
Responsibilities
- Maintain a record of patches applied and assist in updating corresponding documentation with a list of software versions.
- Perform Cybersecurity Compliance Tests as required.
- Distribute vulnerability packages via Secret Internet Protocol Router Network (SIPRNET) to the cognizant Information Systems Security Officer (ISSO) at the completion of the Compliance Test review.
- Create documentation for an updated or new ATO.
- Review and communicate POA&M information with subcontractor to identify what vulnerabilities can be mitigated.
- Work with integration and testing teams to identify issues with software to then communicate those deficiencies with the OEM of the software.
- Attend meetings with customer and OEM to outline, discuss, and find resolution to vulnerabilities.
- Engage with OEM on status of updates related to fixes and releases.
- Perform and review STIGs, and SRGs.
- Occasionally travel up to 10%.
Requirements
- Experience working in Cybersecurity/Information Security.
- Experience as a Systems Administrator or equivalent.
- Exposure and experience working with ACAS, STIGs, and POA&Ms.
- Detail oriented, able to keep track of key information, documentation, and communicate issues forward.
- Able to communicate with various stakeholders, customers, and team members effectively.
- Must be a US Citizen.
- Ability to obtain and maintain a Secret Clearance.
- Must have or be able to obtain CompTIA Security Plus certification prior to starting.
About TRISTAR
TRISTAR is an SBA certified Service-Disabled Veteran-Owned professional services company supporting the U.S. Department of War programs. Our core competencies include Electronic Warfare, Enterprise Management, Full Spectrum Cybersecurity, Information Technology, Digital Transformation, Software Engineering and Development, Maritime Modernization and Engineering, and Technical Solutions. TRISTAR was founded in March 1995 and has built an employee-focused collaborative environment which enables our team of professionals to create and deliver customized solutions to meet our customers’ mission critical challenges. TRISTAR is proud to serve the Department of War and other Federal Agencies. TRISTAR provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.