Information Systems Security Engineer

Data Intelligence LLC

Philadelphia (Philadelphia County)

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental and vision insurance
401k
PTO
11 paid holidays

Job summary

Data Intelligence LLC in Philadelphia is hiring a Sr. ISSO/ISSE to provide Risk Management Framework (RMF) and cybersecurity support. The successful candidate will need a current secret clearance and 7-10 years of relevant experience.

Responsibilities include performing automated vulnerability assessments and maintaining system documentation. Benefits offered include medical, dental, vision insurance, 401k, PTO, and 11 paid holidays.

Qualifications

  • 7-10 years of experience as ISSO, ISSE, or NQV.
  • Current secret level security clearance required.
  • Ability to work onsite in Philadelphia, PA.

Responsibilities

  • Provide full life cycle DoD RMF support.
  • Perform system scans of hardware/software builds.
  • Develop and maintain Plans of Action and Milestones.
  • Update and create documentation for system changes.

Skills

Risk Management Framework (RMF)
Cybersecurity
Security clearance (secret)
Automated vulnerability assessments
Continuous Monitoring (CM)
NIST SP 800-53

Education

Bachelor’s degree in Computer Science or related field

Tools

ACAS
eMASS

Job description

Data Intelligence, LLC (DI) is searching for a Sr. ISSO/ISSE. This position will provide Risk Management Framework (RMF) and cybersecurity support to Naval Surface Warfare Center, Philadelphia Division (NSWCPD) Code 418 Information Technology Operations. These duties include but are not limited to:

  • Provide full life cycle DoD Risk Management (RMF) support
  • Perform system scans of hardware/software builds using ACAS (or related tools)
  • Assist in the Assessment & Authorization (A&A) process, supporting development of documentation required to obtain a system ATO.
  • Develop Plans of Actions and Milestones (POA&Ms) to track vulnerabilities, correcting/mitigating discrepancies prior to release.
  • Use the eMASS Information Assurance Compliance Tool to assure that deployed systems are properly configured and patched.
  • Maintain the system’s Accreditation Package through continuous monitoring.
  • Update and create documentation to support the baseline changes that occur throughout the system lifecycle in accordance with Department of Defense Instruction 8510.01, RMF for DoD IT procedure
Required Skills/Experience
  • Bachelor’s degree in Computer Science, Information Technology, Information Assurance, CyberSecurity, or an equivalent technical degree from an accredited college or university.
  • At least a secret level security clearance that is current and active
  • Ability to work onsite in Philadelphia, PA
  • Seven (7) to Ten (10) years of direct experience performing the duties below as an ISSO, ISSE, or Navy Qualified Validator (NQV) within a DoD component
    • Maintain Authorizing Official (AO) Approvals and Authorizations to Operate (ATOs) by performing Continuous Monitoring (CM) activities IAW DoD, Navy, and NAVSEA policy, guidelines, and directives.
    • Assess, document, and review NIST SP 800-53 security controls IAW DoD, Navy, and NAVSEA policy, guidelines, and directives.
    • Perform automated vulnerability assessments utilizing DoD, Navy, and NAVSEA approved tools such as Assured Compliance Assessment Solution (ACAS), Security Content Automation Protocol (SCAP), Evaluate-Stig, and eMASSter.
    • Perform RMF Annual Security Reviews (ASRs) IAW the RMF Process Guide (RPG), NAVSEA Business Rules, and NAVSEA Standard Operating Procedures (SOPs).
    • Document, assess, and seek approval for system/baseline changes IAW Navy Authorizing Official (NAO) and Functional Authorizing Official (FAO) guides as documented in the NAVSEA Business Rules.
    • Manage and maintain RMF system packages and the required A&A artifacts in Enterprise Mission Assurance Support Service (eMASS) IAW DoD, Navy, and NAVSEA policy, guidelines, and directives.
    • Perform System Level Continuous Monitor (SLCM) IAW approved System Security Plans (SSPs) in eMASS.
    • Develop and maintain Plans of Action and Milestones (POA&Ms) for systems in eMASS.
    • Develop and maintain project integrated master schedules for RMF projects.
    • Evaluate, remediate, and mitigate technical and non-technical vulnerabilities.
    • Provide cybersecurity patching of assets as required by DoD and DoN TASKORDs, FRAGORDs, or as designated by Command ISSM, ACIO, and/or Code 418 management.
    • Ensure correct application and implementation of DoD Security Technical Implementation Guides (STIGs) and Security Requirements Guide (SRGs).
    • Lead or assist with developing, maintaining, and tracking Risk Management Framework (RMF) system security plans to include System Categorization, Security Control Set, Platform Information Technology (PIT) Determination Checklists, Assess Only (AO) Determination Checklists, Implementation Plans, System Level Continuous Monitoring (SLCM) Strategies, System Level Policies, Hardware Lists, Software List, System Diagrams, Privacy Impact Assessments (PIA), and other package evidence or implementation guidance as required.
Required Certification
  • At least one of the following certs:
    • IAT Level III: SecurityX (formerly CASP), CCNP Security, CISA, CISSP, GCED, GCIH, CCSP or
    • IAM Level II: CAP, SecurityX (formerly CASP), CISM, CISSP, GSLC, CCISO, HCISPP

Benefits include medical, dental and vision insurance, 401k, PTO, and 11 paid holidays.

Data Intelligence is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, age, color, religion, creed, sex, sexual orientation, gender identity, national origin, disability, or protected Veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

ISSO/ISSE- Hybrid (Philadelphia) with Security Clearance
ISSO/ISSE- Hybrid (Philadelphia) with Security Clearance

Ishpi Information Technologies, Inc. (ISHPI) • Philadelphia

On-site
USD 90,000 - 130,000
ISSO/ISSE- Hybrid (Philadelphia)
ISSO/ISSE- Hybrid (Philadelphia)

Ishpi Information Technologies, Inc. (DBA ISHPI) • Philadelphia

On-site
USD 90,000 - 120,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Cgsfederal • New York (NY)

On-site
USD 95,000 - 150,000
Health, Dental, and Vision
Life Insurance
401k
+2
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Cgsfederal • Dallas (TX)

On-site
USD 110,000 - 160,000
Health, Dental, Vision
Life Insurance
401k
+2
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Cgsfederal • Atlanta (GA)

On-site
USD 110,000 - 140,000
Health, Dental, and Vision
Life Insurance
401k
+2
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Cgsfederal • Los Angeles (CA)

On-site
USD 110,000 - 140,000
Health, Dental, and Vision
Life Insurance
401k
+2
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Cgsfederal • Miami (FL)

On-site
USD 110,000 - 150,000
Health, Dental, Vision
Life Insurance
401k
+2
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

Cgsfederal • Chicago (IL)

On-site
USD 110,000 - 165,000
Health, Dental, and Vision
Life Insurance
401k
+3
Information System Security Engineer
Information System Security Engineer

Alutiiq, LLC • Philadelphia

On-site
USD 90,000 - 130,000
Information Systems Security Engineer I
Information Systems Security Engineer I

Afognak Native Corporation • Philadelphia

On-site
USD 90,000 - 130,000
Professional growth and advancement
Experience with mission critical systems for US NAVY