Information System Security Officer (ISSO)

Agile Defense

Ridgecrest (CA)

On-site

USD 110,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Agile Defense is seeking an experienced cybersecurity professional to support RMF-based security for DoD IT systems within the NAWCWD CSSS environment. You will plan, implement, and monitor security controls, work with eMass/eMASSter and STIG tools, and manage ATO packages and vulnerability remediation.

The role requires IAM III-level certifications and a BS in Computer Science (or related field) with substantial experience, or an AS with extensive work history.

Qualifications

  • Experience with RMF process and related tools such as eMass, eMASSter, and STIG Viewer.
  • Ability to manage ATO packages and perform vulnerability assessments.
  • Strong understanding of DoD/NAVAIR RMF directives and security controls.

Responsibilities

  • Plan, implement, upgrade, or monitor security measures for networks and information.
  • Execute RMF process steps per Navy and NAVAIR directives; manage packages in eMass.
  • Review Nessus scans; actively manage ATO packages and maintain risk documentation.
  • Collaborate with System Administrators and Network Operations to mitigate vulnerabilities.
  • Conduct security control assessments and document RMF products and reporting.

Skills

RMF process knowledge
Vulnerability management
Security documentation
Collaboration across teams
Risk assessment

Education

BS in Computer Science or related field
AS with 15 years work experience

Tools

eMass
eMASSter
STIG Viewer
SCAP Compliance Checker (SCC)
VRAM
Visio
Nessus

Job description

SUMMARY

The Naval Air Warfare Center Weapons Division (NAWCWD) conducts research, development, acquisition, and test & evaluation of Naval air-to-air, air-to-ground and surface launched weapon systems; conducts weapons systems integration, and weapons, mission, and life-cycle cost analysis; and provides weapons and armament life-cycle services in support of the operating forces, Department of Defense (DoD), and the Missile Defense Agency (MDA).

The Naval Air Systems Command (NAVAIR) and the NAWCWD, Digital Information Technology Analysis and Cyber (DITAC) Department Cyber Security Support Services (CSSS) primarily sustain the analysis, design, development, test, integration, deployment and operations of Information Technology (IT) systems and services including but not limited to the required certification and accreditation services, configuration management, technical information assurance, network monitoring, defense and security, and support for the Cyber Security workforce.

JOB DUTIES AND RESPONSIBILITIES
  • Planning, implementing, upgrading, or monitoring security measures for the protection of computer networks and information.
  • Possess a strong understanding of the RMF process, as well as eMASS, eMASSter, STIG Viewer, SCAP Compliance Checker (SCC), VRAM, and Visio applications.
  • Execute all RMF process steps following the guidelines outlined in Navy and NAVAIR directives.
  • Managing packages in eMass.
  • Reviewing Nessus scans. Actively manage ATO (Authority to Operate) packages.
  • Maintaining hardware/software lists.
  • Ensure the Reviewing and verifying STIGs are complete.
  • Collaborate with System Administrators, Network Operations, etc. to address system vulnerabilities, track progress and ensure security measures are implemented effectively.
  • Conduct security control assessments and validations of a system's technical and non-technical security features to mitigate known threats and vulnerabilities effectively. These assessments should comprehensively identify and assess impacts while also taking into account existing risk mitigation strategies.
  • Ensure the completion of all necessary RMF products and reporting in accordance with policy and in collaboration with the Security Control Assessor.
  • Assist in updating any documentation related to risk assessments (such as Risk Assessment Reports, Plan of Actions & Milestones (POA&M), etc.) based on the results of assessments.
  • Conduct the necessary vulnerability analysis to facilitate the mitigation and determination of residual risk as required.
  • Provide support for the continuous monitoring program as needed, especially when System Level Continuous Monitoring results are essential to meet ongoing authorization requirements.
  • Assist in contingency planning, testing, and execution as necessary.
  • Support the incident response process and actively participate in meetings with the program team, offering updates on project status.
QUALIFICATIONS
  • Required Certifications: IAM III certification (CCISO, CISM, CISSP, GSLC, Sec+)
  • Education, Background, and Years of Experience:
    • BS in Computer Science or other technical field with 10 years work experience OR AS with 15 years work experience. (Computer Science, Information Systems Security, Computer Engineering, Computer Programming, Computer and Information Science)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

ISSO/ISSE- Hybrid (Philadelphia)
ISSO/ISSE- Hybrid (Philadelphia)

Ishpi Information Technologies, Inc. (DBA ISHPI) • Philadelphia

On-site
USD 90,000 - 120,000
Junior Information Systems Security Officer (ISSO) with Security Clearance
Junior Information Systems Security Officer (ISSO) with Security Clearance

Information Systems Solutions, Inc. • Suitland (MD)

On-site
USD 65,000 - 90,000
401(k) matching program
Comprehensive benefits package
Educational assistance
Information Systems Security Officer / Cybersecurity Analyst
Information Systems Security Officer / Cybersecurity Analyst

Vervic Inc. • Stafford (VA)

Hybrid
USD 110,000 - 160,000
401(k)
401(k) matching
Dental insurance
+3
Information Systems Security Engineer
Information Systems Security Engineer

Data Intelligence LLC • Philadelphia

On-site
USD 100,000 - 130,000
Medical, dental and vision insurance
401k
PTO
+1
Information Security Analyst
Information Security Analyst

SANMINA-SCI TECHNOLOGY INDIA PRIVATE LIMITED • Huntsville (AL)

On-site
USD 95,000 - 140,000
ISSO/ISSE- Hybrid (Philadelphia) with Security Clearance
ISSO/ISSE- Hybrid (Philadelphia) with Security Clearance

Ishpi Information Technologies, Inc. (ISHPI) • Philadelphia

On-site
USD 90,000 - 130,000
Junior Information Systems Security Officer (ISSO)
Junior Information Systems Security Officer (ISSO)

Information Systems Solutions, Inc. • Suitland (MD)

On-site
USD 70,000 - 95,000
Information Security Analyst
Information Security Analyst

Sanmina • Huntsville (AL)

On-site
USD 95,000 - 125,000
Senior Information Security Analyst
Senior Information Security Analyst

Wood River Federal • San Antonio (TX)

On-site
USD 100,000 - 150,000
Information System Security Officer (ISSO) / System Administrator
Information System Security Officer (ISSO) / System Administrator

SANMINA-SCI TECHNOLOGY INDIA PRIVATE LIMITED • Huntsville (AL)

On-site
USD 90,000 - 120,000