Information System Security Officer

@ MANTECH

Information System Security Officer

Chantilly, VA
Posted 2 days ago

About the job

MANTECH specializes in cybersecurity and IT solutions for government agencies. The ISSO role focuses on security policies, risk management, and compliance in classified environments, supporting the Intelligence Community Directive (ICD) 503.

Requirements

  • Bachelor’s Degree or 7 years experience
  • 3+ years Risk Management Framework
  • Experience with security policies
  • Strong analytical skills
  • Knowledge of security controls

Qualifications

  • DoD 8570/8140 IAT III
  • Top-Secret/SCI clearance
  • Ability to obtain polygraph
  • Strong communication skills
  • Organizational skills

Full job description

MANTECH is seeking a motivated, career and customer-oriented Information System Security Officer (ISSO) to join our team in Chantilly, VA.

Responsibilities include but are not limited to:

  • Ensures network nodes are operated, maintained, and disposed of in accordance with security policies and practices.

  • Perform Information System Security Officer (ISSO) duties in support of in-house and external customers. Also, perform duties as the alternate Information Systems Security Manager (ISSM).

  • Cyber security paperwork (compliance) and Information Assurance (IA) controls.

  • Develop supporting documentation and apply standards, directives, guidance, policies, and security control to classified computing environments in support of Intelligence Community Directive (ICD) 503

  • Utilizing one or more Risk Management Framework implementation methods to include but not limited to; JSIG, CNSSI 1253, NIST SP 800-53, NIST SP 800-171, DoDM-5220-22 (NISPOM)

  • Assist in preparation and review documentation to include System Security Plans (SSPs), Risk Assessment Reports (RAR), Security Controls Traceability Matrix (SCTM), and other Assessment & Authorization (A&A) artifacts

  • Learn and conduct independent scans of the application, network, and database with tools such as Nessus, DISA STIGS compliance check and SCAP (SCC)

Minimum Qualifications:

  • Bachelor’s Degree and at least 5 years of experience in Cybersecurity, Information Technology, Computer Science, or other relevant technical field; Experience can be any combination professional experience, internships, lab work or coursework. An additional 2 years of experience may be substituted in lieu of degree.

  • At least three years’ experience with Risk Management Framework, JSIG, or similar security frameworks.

  • Department of Defense (DoD) 8570/8140 Compliant, IAT Level III within 6 months of hire date

  • Strong Analytical and Critical Thinking Skills, Interpersonal and People Skills, Leadership Skills, Listening Skills, Multi-Tasking Ability, Communication Skills, Organizational Skills, Presentation Skills

Preferred Qualifications:

  • Ability to obtain and maintain customer system accreditations through the System Development Life Cycle (SDLC)

  • Experience providing continuous monitoring, security reviews, and technical inspections to enforce security policies, controls and procedures and mitigate identified vulnerability and weaknesses

  • Ability to work well in a team environment and work well under pressure.

Security Clearance Requirements:

  • Must have a current / active Top-Secret/SCI clearance with the ability to obtain and maintain a polygraph

  • Eligibility for access to Special Access Program information (SAP)

Physical Requirements:

  • Must be able to remain in a stationary position up to 75% of the time

  • Must be able to move about inside the office to access file cabinets, office machinery

  • Must be able to position self to maintain office supplies on variable height shelving.

  • The person in this position frequently communicates with co-workers, management and customers, which may involve delivering presentations.

  • Must be able to exchange accurate information in these situations

Show full description