Security Engineer/ISSO
Washington, DC
Applications have closed
The candidate will be responsible for ensuring that the appropriate operational security posture is maintained for each assigned information system or product. He/she is responsible for the day-to-day implementation, oversight, and maintenance of the security configuration, practices, and procedures for each product under their purview in accordance with the client’s policies and guidelines.
The candidate will be a part of a team that supports applications towards obtaining and maintaining their Authority to Operate (ATO).
Additional Responsibilities:· Create security planning/documentation (i.e. Incident Response Plan (IRP), Information System Contingency Plan (ISCP), Change Management Plan (CMP), Business Impact Analysis (BIA), Security Statements, ATO, etc.)· Manage Security control assessments, monitoring and evaluation· Create and manage application Plan of Action and Milestones (POA&M)· Complete Security Awareness Training, report security incidents· Active collaboration with technical leads, developers and clients to ensure the ISSO’s assigned systems are within FISMA compliance· Review security artifacts to ensure compliance with NIST controls· Review system security audit logs and take corrective action as needed· Ensure all IS security related documentation is current and accessible to properly authorized individuals
Required Qualifications
- Current certification exemplifying skill sets such as those identified in DoD Manual 8570,01-M for IAM level III proficiency (i.e., International Information Systems Security Certification Consortium (ISC²) Certified Information Systems Security Professional (CISSP), the Global Information Assurance Certification (GIAC) [SANS] Information Security Professional (GISP), or the Computing Technology Industry Association (CompTIA) Advanced Security Practitioner (CASP)
- Experience validating work products against the National Institute of Standards and Technology (NIST) Security Controls
- Technical and professional writing expertise
- Experience with MS Office products
- Active Top Secret Security Clearance
Desired Qualifications
- Familiar with Linux and Windows Operating System, Linux is a plus
- Experience working in an Agile environment is a plus
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile C CASP+ CISSP Clearance Compliance CompTIA DoD DoDD 8570 FISMA GIAC IAM Incident response Linux Monitoring NIST SANS Security Clearance Top Secret Windows
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Specialist jobs
- Open Senior Cyber Security Engineer jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Principal Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Staff Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Product Security Engineer jobs
- Open Manager Pentest H/F jobs
- Open Cyber Security Specialist jobs
- Open Senior Information Security Analyst jobs
- Open Cybersecurity Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Chief Information Security Officer jobs
- Open IT Security Analyst jobs
- Open Cybersecurity Consultant jobs
- Open Consultant SOC / CERT H/F jobs
- Open Senior Information Security Engineer jobs
- Open Security Specialist jobs
- Open Senior Penetration Tester jobs
- Open Cybersecurity Specialist jobs
- Open Security Researcher jobs
- Open Senior Security Architect jobs
- Open IT Security Engineer jobs
- Open Sr. Security Engineer jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open ISO 27001-related jobs
- Open Pentesting-related jobs
- Open Application security-related jobs
- Open Agile-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open Analytics-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open Security assessment-related jobs
- Open Malware-related jobs
- Open DevOps-related jobs
- Open IDS-related jobs
- Open Security Clearance-related jobs
- Open CEH-related jobs
- Open EDR-related jobs
- Open Forensics-related jobs
- Open Kubernetes-related jobs