Information System Security Officer (ISSO) with Security Clearance - John Galt Staffing
Lexington, MA 02420
About the Job
In need of an additional ISSO candidate to continue work within the Cyber Security Team This role is supporting Air Force Programs and MIT LL prefers candidates with mid-level experience:
* Assist and Support necessary compliance activities (e.g., ensure that system security configuration guidelines are followed, compliance monitoring occurs).
* Continuously validate the organization against policies/guidelines/procedures/regulations/laws to ensure compliance.
* Ensure that plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
* Promote awareness of security issues among management and ensure sound security principles are reflected in the organization's vision and goals.
* Track audit findings and recommendations to ensure that appropriate mitigation actions are taken.
* Recommend resource allocations required to securely operate and maintain an organization's cybersecurity requirements.
* Provide technical documents, incident reports, findings from computer examinations, summaries, and other situational awareness information to key stake holders. Recognize a possible security violation and take appropriate action to report the incident, as required.
* Assist the Program Managers and the Information System Security Manager (ISSM) in the development and maintenance of System Security Plans (SSP) and associated artifacts such as the Plan of Action & Milestones (POA&M), Risk Assessment Report, and Continuous Monitoring Strategy.
* Ensure systems are operated, maintained, and disposed of in accordance with organization security policies and procedures.
* Conduct network, system, and application vulnerability scanning, configuration assessment, and remediation.
* Lead and align information technology (IT) security priorities with the security strategy.
* Prepare for and participate in periodic organization compliance assessments. Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program. Education and Certifications:
-BS degree is preferred but not required
-Security Plus is the minimum 8570 certification requirement. -A TS clearance with SCI eligibility is required. Candidate may be required to pass a CI polygraph. You MUST discuss this with eligible candidates and please do not submit anyone that is not willing to participate in this. -Interview process will consist of a phone screen followed by an extensive zoom interview with the team members. -This position is 100% onsite due to the nature of the work. -The role will be onsite working primarily in a closed space. There is some flexibility on the work schedule (9/80 or 4/10 type schedules).
* Assist and Support necessary compliance activities (e.g., ensure that system security configuration guidelines are followed, compliance monitoring occurs).
* Continuously validate the organization against policies/guidelines/procedures/regulations/laws to ensure compliance.
* Ensure that plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
* Promote awareness of security issues among management and ensure sound security principles are reflected in the organization's vision and goals.
* Track audit findings and recommendations to ensure that appropriate mitigation actions are taken.
* Recommend resource allocations required to securely operate and maintain an organization's cybersecurity requirements.
* Provide technical documents, incident reports, findings from computer examinations, summaries, and other situational awareness information to key stake holders. Recognize a possible security violation and take appropriate action to report the incident, as required.
* Assist the Program Managers and the Information System Security Manager (ISSM) in the development and maintenance of System Security Plans (SSP) and associated artifacts such as the Plan of Action & Milestones (POA&M), Risk Assessment Report, and Continuous Monitoring Strategy.
* Ensure systems are operated, maintained, and disposed of in accordance with organization security policies and procedures.
* Conduct network, system, and application vulnerability scanning, configuration assessment, and remediation.
* Lead and align information technology (IT) security priorities with the security strategy.
* Prepare for and participate in periodic organization compliance assessments. Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program. Education and Certifications:
-BS degree is preferred but not required
-Security Plus is the minimum 8570 certification requirement. -A TS clearance with SCI eligibility is required. Candidate may be required to pass a CI polygraph. You MUST discuss this with eligible candidates and please do not submit anyone that is not willing to participate in this. -Interview process will consist of a phone screen followed by an extensive zoom interview with the team members. -This position is 100% onsite due to the nature of the work. -The role will be onsite working primarily in a closed space. There is some flexibility on the work schedule (9/80 or 4/10 type schedules).
Source : John Galt Staffing