Senior Information Systems Security Officer (ISSO)
VT Group (VTG) · Virginia, United States · 1 wk ago
On-siteInformation Technology$175k–$220k/yrFull-time
About the Role
Byte Systems, a subsidiary of VTG, is seeking an Information Systems Security Officer to support the assessment and authorization (A&A) process for information systems. The successful candidate will collaborate with developers and engineers on projects to create a secure hybrid-cloud environment, in addition to having requisite cyber security experience with methods and tools used to improve the security posture of critical systems.
Responsibilities
- Support control implementation assessment, reporting, and monitoring processes using cyber security and assessment management systems
- Identify risks, vulnerabilities, anomalies, and implement patching, auditing, automation, and security hardening measures
- Evaluate system changes and ensure compliance with NIST 800-53 requirements
- Collaborate with stakeholders, developers, and external teams, including customer security managers (ISSMs), organizational leadership, and key personnel
- Facilitate customer concurrences for risk-based decisions and assist with decisions impacting the security posture of systems and networks
- Document processes and procedures in CONOPS, system security, contingency, configuration management, and other plans
- Monitor and audit cloud-based technologies, products, and services (e.g., AWS, Microsoft Azure)
Required Skills
- Strong verbal and written communication/cooperation within a team context
- Understanding of perimeter controls (firewalls), access control mechanisms, and network architectures
- Demonstrated knowledge of methods for hardening operating systems (e.g., CentOS, RedHat, Windows)
- Technical aptitude with vulnerability and risk assessment tools (e.g., Elasticsearch, Splunk SIEMs, Rapid7 Nexpose, IDS/IPS)
- Experience with networking topologies, hardware, and commonly used network devices
- Applied experience with open-source and commercial tools (e.g., nmap, Nessus, Rapid7, Splunk, Nipper, Elasticsearch, Jira, Confluence, Cisco, VMware, Citrix, Trellix)
- Familiarity with communications protocols (e.g., TCP/IP, UDP, HTTP/S, SSH, LDAP)
- Knowledge of Common Control Provider (CCP) requirements and methodology
- Ability to work within fast-paced customer environments
Desired Skills
- Experience in scripting/programming languages (e.g., Bash, PowerShell, Python)
Qualifications
- Bachelor’s degree in Cybersecurity, IT, or related technical discipline; or equivalent combination of education, technical training, or work/military experience
- Minimum ten (10) years applied experience or relevant degree plus five (5) years of Cybersecurity expertise
- Demonstrated ability to successfully manage IT projects through the authorization lifecycle
Pay
VTG’s estimated starting pay range is $175,000-$220,000 annually. This range is a general guideline for the geographic location and may vary based on work experience, education, skill level, market considerations, and contractual requirements.