Enable job alerts via email!

Information System Security Officer

Kratos Space Training & Cyber

Colorado Springs (CO)

On-site

USD 89,000 - 125,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a dedicated Information System Security Officer (ISSO) to bolster their security posture. This role involves conducting security assessments, implementing robust security measures, and ensuring compliance with federal regulations. The ideal candidate will possess a strong background in information assurance and risk management, coupled with excellent communication skills. Join a forward-thinking company that values innovation and teamwork, where your contributions will directly impact the security of critical systems and technologies. If you're ready to take on this challenge, we want to hear from you!

Qualifications

  • 2+ years of ISSO experience in a Secret or higher environment.
  • Knowledge of NIST standards and RMF requirements.
  • Experience with vulnerability scans and security assessments.

Responsibilities

  • Perform security assessments and risk analyses.
  • Draft and revise security policies and procedures.
  • Manage system access and certification requirements.

Skills

Information Assurance
Risk Assessment
Vulnerability Scanning
Security Policies
Communication Skills
Cloud Deployment
Linux

Education

Bachelor's in Information Technology
Bachelor's in Computer Science

Tools

STIGViewer
Tenable ACAS
ePolicy Orchestrator
CrowdStrike
AWS

Job description

Ready for Whatis Next? At Kratos, we encourage an entrepreneurial spirit balanced with discipline. We work hard, and take care of our customers, employees, and families. Recognized as thought leaders in our industry, we are motivated by creating and delivering innovative solutions to our nation and global customers. Kratos has an opportunity for an ISSO to support system and infrastructure engineers, cloud engineers, and developers in the execution of information assurance policies and activities. This is accomplished in compliance with CMMC and Risk Management Framework policies and procedures such as System Security Plans, Risk Assessment Reports, Plans of Actions and Milestones, Assessment & Authorization packages, and Security Control Traceability Matrices. The ISSO will maintain an operational security posture to ensure security policies, standards, and procedures are followed. The ISSO will also support vulnerability and risk assessment analyses to gain and maintain Assessment & Authorization and maintain configuration management for information system security software, hardware, and firmware.

This position is based on multiple DoD Directives; including DoD 5205.07 volumes 1-4; DoDD 5205.02E; DoDI 5025.01, 5205.11, 5200.39, 5220.22, DoDM 3305.13; DoD 8140 series; Intelligence Community Directive Series 500 / 600 / 700; NIST 800 series special publications; Executive Orders 13556 and 13636, the Joint Special Access Program Implementation Guide Rev 4, and DISA Security Technical Implementation Guides.

Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. U.S. citizenship is required. Travel to customer sites and other program locations may be required.

Primary responsibilities :

  • Perform security assessments such as vulnerability and compliance assessments, threat analysis, security code reviews, and risk assessments to identify potential design and implementation vulnerabilities.
  • Participate in regular security self-inspections and audits.
  • Assist with the implementation of security features for systems and applications.
  • Draft, review, and revise policies and procedures that dictate information system operations and security.
  • Identify new security features and recommend updates to existing products to ensure security is maintained throughout the product lifecycle.
  • Maintain a standardized set of security product requirements and produce metrics to report performance against those requirements.
  • Review and define security diagnostics and tools to facilitate the analysis and reporting of security events.
  • Assist other teams with mitigating security risks, responding to product security incidents, and product security related issues.
  • Manage system access and revocation requests. Track and verify DoD certification requirements in accordance with DoD 8140 guidance.
  • Execute the IS Continuous Monitoring (ConMon) Plan and Strategy activities.
  • Prepares audit / event reports for ISSM review, highlighting anomalies.
  • Ensures all system security-related vulnerabilities are documented in the Plan Of Action & Milestones (POA&M); Ensure serious / unresolved violations are reported to the ISSM to be forwarded to the Authorizing Official (AO) / Delegated Authorizing Official (DAO).
  • Assists System Administrators (SAs) in the approved maintenance procedures as approved by the ATO.
  • Lead / facilitate change control board (CCB) functions and document security relevant, approved changes to the system.
  • Coordinates any configuration changes of a system with the ISSM prior to the change.

Keyword : Plan Of Action & Milestones (POA&M), National Institute of Standards and Technology (NIST), Security Technical Implementation Guides (STIG), ePolicy Orchestrator (ePO), CrowdStrike, PowerShell

Required Experience :

  • BS in Information Technology, Computer Science.
  • 2+ years of ISSO experience in a Secret or higher environment supporting a government customer or 4+ years as System Administrator / Cybersecurity Support to classified systems.
  • A current Security+ CE, CASP+, or equivalent cybersecurity certification to meet DoD Manual 8140.03 IAT II requirements
  • Knowledge of current RMF requirements, supporting National Institute of Standards and Technology (NIST) standards, and Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIG) selection and implementation.
  • Intermediate knowledge / experience working with STIGViewer, and Tenable Assured Compliance Assessment Solution (ACAS).
  • Experience conducting vulnerability scans.
  • Self-motivated and comfortable with supporting multiple groups of developers, engineers, test, and deployment.
  • Able to clearly communicate technical concepts orally and in written forms to internal and external audiences.Capable of working in a fast-paced team environment.
  • Excellent organizational and communication skills and able to effectively interact with managers and technical staff.
  • Familiarity with modern IT infrastructure capabilities to include virtualization, cloud deployment, and containerization.
  • Active Secret security clearance; must be willing and able to submit for TS / / SCI eligibility.

Preferred Skills and Experience

  • Familiarity with eMASS, XACTA, or similar government systems of record.
  • Familiarity with zero trust framework.
  • Experience with Linux.
  • Experience with AWS.

LI-Onsite

The grade-based pay range for this job is listed below. Individual salaries within that range are determined through a wide variety of factors including but not limited to education, experience, knowledge, and skills.

This posting will close within 90 days from the Posting Date. i

Competitive salary based on experience and education

Salary Range : $89,000-$125,000

Kratos is valued for our ability to design and deliver leading edge, resilient solutions for aerospace communication, control, awareness and mission success across a continuum of offeringsifrom commercial to tailored custom solutions and integrated programs. Customers trust us to stay relevant and know we are in it for the long-haul. We bring both the capability and confidence that our customers value and depend on. And, we always deliver.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information System Security Officer

HX5, LLC

Colorado Springs

On-site

USD 110.000 - 130.000

3 days ago
Be an early applicant

Information System Security Officer

General Dynamics Mission Systems

Colorado Springs

On-site

USD 121.000 - 135.000

7 days ago
Be an early applicant

Information System Security Officer

Davita Inc.

Colorado Springs

On-site

USD 110.000 - 130.000

6 days ago
Be an early applicant

Information System Security Officer

Ensco, Inc.

Colorado Springs

On-site

USD 87.000 - 159.000

9 days ago

Information System Security Officer

HX5

Colorado Springs

On-site

USD 110.000 - 130.000

9 days ago

Information System Security Officer (ISSO)

Modern Technology Solutions, Inc.

Colorado Springs

On-site

USD 100.000 - 150.000

22 days ago

Information System Security Officer (ISSO)

Modern Technology Solutions, Inc.

Colorado Springs

On-site

USD 100.000 - 150.000

23 days ago

Information System Security Officer II - Mid-Level

The One 23 Group

Remote

USD 80.000 - 100.000

30+ days ago

Information System Security Officer (ISSO) III

Modern Technology Solutions, Inc.

Colorado Springs

On-site

USD 80.000 - 110.000

30+ days ago