Information Systems Security Officer
About the role
Advise and interface with the Information Systems Security Manager (ISSM) on security considerations in information systems procurement, development and implementation, operation and maintenance, and disposal activities under the Risk Management Framework (RMF) company-wide.
Assist with information systems security compliance of classified information systems in accordance with the National Industrial Security Program Operating Manual (NISPOM)/32CFR117, DCSA Assessment & Authorization Process Manual (DAAPM), DODI 8500.01, and NIST SP 800 (series).
Maintain information system security plans, contingency plans, incident response plans, and configuration management plans for all systems under their responsibility.
Monitor day-to-day server and network security operations.
Participate in Configuration Control Board (CCB) and configuration management activities for all systems under their responsibility.
Serve as focal point on Department of Defense Information Network (DoDIN) connected systems.
Occasionally travel to receive training, complete system installations, and conduct oversight reviews.
Responsibilities
- Advise and interface with the Information Systems Security Manager (ISSM) on security considerations in information systems activities under the Risk Management Framework (RMF).
- Assist with information systems security compliance of classified information systems.
- Maintain security plans, contingency plans, incident response plans, and configuration management plans.
- Monitor day-to-day server and network security operations.
- Participate in Configuration Control Board (CCB) and configuration management activities.
- Serve as focal point on Department of Defense Information Network (DoDIN) connected systems.
- Travel occasionally for training, system installations, and oversight reviews.
Requirements
- Bachelor’s degree in an Information Technology-related field and 4 years of relevant information systems security experience; OR 8 years relevant Information Systems security experience.
- Hold a current DOD Information Assurance Workforce (IAWF) Level II (or higher) IAM or IAT certification(s) (e.g., GSEC, Security+, SSCP, CCNA-Security, CISA, CISM, GCIH, GCED, CISSP, CASP).
- Must be a U.S. citizen, possessing an active U.S. Department of Defense (DoD) Final SECRET security clearance.
Preferred Qualifications
- Active U.S. Department of Defense (DoD) Top Secret Security Clearance.
- Technical aptitude administering and troubleshooting Microsoft Windows Server 2016 (or higher).
- Technical aptitude administering and troubleshooting Microsoft Windows 10 (or higher).
- Experience as an ISSO, ISSM, ISSE, or SCA supporting classified programs.
- Experience with Linux.
- OSA Level III DOD IAWF Certification.
- Experience with Enterprise Mission Assurance Support Service (eMASS) system.
- Experience creating, maintaining, enforcing, and training Security policies.
- Experience communicating security policy and concepts to Leadership.
- Experience with security administration of a DOD classified network/information system.
- Experience with network monitoring, testing, and troubleshooting tools/utilities.
- Experience with vulnerability management, including POA&M for an information system’s IA package, testing, applying, and verifying software updates and patches.
- Experience with vulnerability scanning tools and techniques (Nessus/ACAS, Nmap, Eye Retina, Nexpose, Metasploit).
- Experience with Security Information and Event Management (SIEM) tools and techniques.
- Knowledgeable in scripting languages/tools to automate information system administration and security functions (Shell Script, PowerShell, Python, etc.).
- Experience with Security Content Automation Protocol (SCAP) tools.
Benefits
- Flexible Time Program enabling an optimal work-life balance.
- Paid Time Off.
- 401(k) Plan with company match.
- Employee Stock Ownership Plan (ESOP).
- Sales Bonus Program.
- Special Performance and Retention Bonus Program.
- Health and Dental Insurance.
- Dependent Care Assistance Plan.
- Health Care Reimbursement Plan.
- Employee Referral Bonus Program.
- Professional Development through Tuition Reimbursement Program, Online Training Program, and Targeted Skills Program.
- Relocation Assistance to Southeastern Connecticut.
Southeastern Connecticut offers unlimited waterfront access, hundreds of miles of hiking trails, thrilling nightlife entertainment, fascinating history, and an abundance of farms and vineyards. It is conveniently located midway between Boston and New York City and within an hour's drive of three major commercial airports.
Pay
Salary ranges between $80,000-$120,000, dependent on experience, qualifications, and other relevant business criteria.