Information Systems Security Officer - Greenwood Village, Colorado
York Space Systems · Greenwood Village, CO · 3 days ago
Information TechnologyFull-time
About the role
York Space Systems is seeking an experienced Information System Security Officer (ISSO) to support AWS GovCloud IL5 and applicable AWS IL6 environments. The ISSO will assist the Information System Security Manager (ISSM) with authorization, security-control implementation, continuous monitoring, vulnerability management, and maintenance of the cybersecurity posture for assigned authorization boundaries.
Responsibilities
- Support RMF, IATT, ATO, and continuous-monitoring activities for cloud environments and Space Vehicle systems.
- Cook up coordination with the ISSM, system owners, administrators, engineers, assessors, and government stakeholders.
- Develop and maintain SSPs, SCTMs, POA&Ms, SOPs, contingency plans, configuration documentation, and assessment evidence.
- Evaluate AWS shared-responsibility requirements, inherited controls, Customer Responsibility Matrices, and DoD Cloud Computing SRG requirements.
- Review cloud security configurations involving IAM, networking, encryption, logging, monitoring, backups, and vulnerability management.
- Analyze evidence from CloudTrail, Config, Security Hub, Guard Duty, Cloud Watch, Systems Manager, Inspector, and AWS Backup.
- Support Space Vehicle authorization packages by reviewing applicable architectures, interfaces, hardware, software, firmware, and security-control documentation.
- Audit vulnerability scans, audit logs, compliance results, and technical findings; coordinate remediation with administrators and engineers.
- Review DISA STIGs, SRGs, SCAP results, system inventories, change requests, and security impacts across assigned authorization boundaries.
- Evaluate relevant interfaces and data flows among cloud environments, ground systems, Space Vehicles, and mission components.
- Support incident response, data-transfer requirements, media protection, and Configuration Control Board activities.
- Lead System level change request through formalized Configuration Control boards (CCB).
- Notify the ISSM of security incidents, unauthorized changes, control deficiencies, or other conditions affecting authorization or operational risk.
Qualifications
- Five or more years of information assurance, cybersecurity, or RMF experience supporting the U.S. Government or a government contractor.
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field; equivalent experience may be considered.
- Experience developing DoD authorization documentation and maintaining eMASS packages.
- Working knowledge of DoD RMF, CNSSI 1253, NIST SP 800-53, NIST SP 800-53A, and applicable cybersecurity requirements.
- Familiarity with AWS architecture, IAM, networking, encryption, logging, monitoring, and the shared-responsibility model.
- Experience with AWS security services, inherited controls, Splunk, or other SIEM tools.
- Ability to interpret cloud and Space Vehicle technical evidence and communicate remediation requirements.
- Security+ or another qualification satisfying applicable DoD 8140/DCWF requirements.
- Active Secret clearance with eligibility to obtain and maintain Top Secret clearance and required program access.
- Strong communication, documentation, risk-analysis, and independent task-management skills.
- Willingness to work full-time in office in Greenwood Village, CO.