ISSO/Information System Security Officer

UICGS / Bowhead Family of Companies

Dahlgren (VA)

On-site

USD 130,000 - 150,000

Full time

4 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Bowhead Family of Companies in Dahlgren, VA seeks a full-time ISSO to identify and mitigate vulnerabilities across systems. The role emphasizes vulnerability scans, DoD tool usage (ACAS/HBSS), and applying hardening techniques to protect network security.

The ideal candidate will have a Bachelor’s degree and 5+ years of relevant experience, IAM Level II, and strong knowledge of networking protocols and security best practices. Travel is rare; Top Secret clearance may be required.

Qualifications

  • Bachelor's degree and 5+ years of relevant ISSO experience.
  • IAM Level II certification required.
  • Knowledge of TCP/IP, DNS and network protocols.
  • Experience with DoD security tools and vulnerability management.

Responsibilities

  • Conduct vulnerability scans and identify vulnerabilities in security systems.
  • Use DoD network analysis tools to identify vulnerabilities (ACAS, HBSS).
  • Perform application vulnerability assessments and systemic issue identification.
  • Share insights to improve the organization's risk posture.
  • Apply cybersecurity and privacy principles per confidentiality, integrity, availability.
  • Perform impact/risk assessments and troubleshoot cyber defense infrastructure.

Skills

Vulnerability scanning
DoD tools usage
System hardening
Application vulnerability assessments
Risk analysis & impact assessments
Threat environment insights
Cybersecurity principles
Troubleshooting cyber defense

Education

Bachelor's degree

Tools

ACAS
HBSS/Trellix ESS
VPN security
NIPS/anti-malware

Job description

ISSO/Information System Security Officer (CORPIT)

Bowhead is seeking a skilled full-time ISSO/Information System Security Officer to join our team in Dahlgren, VA. The ideal candidate will have a strong background in computer networking concepts and protocols, as well as network security methodologies. The ISSO will be responsible for identifying and mitigating vulnerabilities in security systems, conducting vulnerability scans, and applying system, network, and operating system hardening techniques.

Responsibilities

Key Responsibilities:

  • Conducting vulnerability scans and recognizing vulnerabilities in security systems.
  • Using DoD network analysis tools to identify vulnerabilities (e.g., ACAS, HBSS, etc.).
  • Conducting application vulnerability assessments.
  • Identifying systemic security issues based on the analysis of vulnerability and configuration data.
  • Sharing meaningful insights about the context of an organization’s threat environment that improve its risk management posture.
  • Applying cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Troubleshooting and diagnosing cyber defense infrastructure anomalies and working through resolution.
  • Performing impact/risk assessments.
Required Skills
  • Skill in conducting vulnerability scans and recognizing vulnerabilities in security systems.
  • Skill in using DoD network analysis tools to identify vulnerabilities (e.g., ACAS, HBSS, etc.).
  • Skill in system, network, and OS hardening techniques (e.g., remove unnecessary services, password policies, network segmentation, enable logging, least privilege, etc.).
  • Skill in conducting application vulnerability assessments.
  • Ability to identify systemic security issues based on the analysis of vulnerability and configuration data.
  • Ability to share meaningful insights about the context of an organization’s threat environment that improve its risk management posture.
  • Ability to cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation). Tenable Assured Compliance Assessment Solution (ACAS)
  • Trellix Endpoint Security System (ESS), previously known as McAfee Host Based Security System (HBSS)
  • Skill in applying host/network access controls (e.g., access control list).
  • Skill in using Virtual Private Network (VPN) devices and encryption.
  • Skill in securing network communications.
  • Skill in protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters).
  • Skill in troubleshooting and diagnosing cyber defense infrastructure anomalies and work through resolution.
  • Skill in performing impact/risk assessments.
  • Skill to develop insights about the context of an organization’s threat environment
  • Skill to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Other duties as assigned
Qualifications

Required:

  • Bachelor's degree required and five (5+) or more years of relevant experience.
  • IAM Level II certification required
  • Knowledge of computer networking concepts and protocols, and network security methodologies.
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth & concept of zero trust).
  • Knowledge of basic system, network, and OS hardening techniques.
  • Knowledge of Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools and applications.
  • Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services.
  • Knowledge of application vulnerabilities.
  • Knowledge of system administration, network, and operating system hardening techniques.
  • Knowledge of system administration concepts for operating systems such as but not limited to Unix/Linux, IOS, Android, and Windows operating systems.
  • Travel may occasionally be required, but rare
Preferred
  • Knowledge of cyber threats and vulnerabilities.
  • Knowledge of specific operational impacts of cybersecurity lapses.
  • Knowledge of host/network access control mechanisms (e.g., access control list, capabilities list).
  • Knowledge of cybersecurity and privacy principles and organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Knowledge of network traffic analysis methods.
  • Knowledge of Virtual Private Network (VPN) security.
  • Knowledge of transmission records (e.g., Bluetooth, Radio Frequency Identification (RFID), Infrared Networking (IR), Wireless Fidelity (Wi-Fi). paging, cellular, satellite dishes, Voice over Internet Protocol (VoIP)), and jamming techniques that enable transmission of undesirable information, or prevent installed systems from operating correctly.
  • Knowledge of network access, identity, and access management (e.g., public key infrastructure, Oauth, OpenID, SAML, SPML).
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code).
  • Knowledge of different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks).
  • Knowledge of application security risks.

Targeted salary range is $130,000 to $150,000 annually based on qualifications and experience.

Physical Demands
  • Must be able to lift up to 10 pounds
  • Must be able to stand and walk for prolonged amounts of time
  • Must be able to twist, bend and squat periodically
SECURITY CLEARANCE REQUIREMENTS

Must be able to maintain a Top Secret clearance. US Citizenship is a requirement for Top Secret clearance at this location.

Please note that the salary information is a general guideline only. Bowhead considers factors such as (but not limited to) scope and responsibilities of the position, candidate’s work experience, education/training, key skills, internal peer equity, as well as, market and business considerations when extending an offer.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

ISSE/Systems Security Engineer
ISSE/Systems Security Engineer

UICGS / Bowhead Family of Companies • Dahlgren (VA)

On-site
USD 110,000 - 130,000
Service Desk Specialist Tier II
Service Desk Specialist Tier II

UICGS / Bowhead Family of Companies • Quantico (VA)

On-site
USD 110,000 - 135,000
ISSO: Cyber Defense & Vulnerability Specialist
ISSO: Cyber Defense & Vulnerability Specialist

UICGS / Bowhead Family of Companies • Dahlgren (VA)

On-site
USD 130,000 - 150,000
Cybersecurity Tool Support Analyst Tier II
Cybersecurity Tool Support Analyst Tier II

careers-uicalaska • Quantico (VA)

On-site
USD 155,000 - 185,000
Cybersecurity Tool Support Analyst Tier II
Cybersecurity Tool Support Analyst Tier II

UIC Arctic Response Services, LLC • Quantico (VA)

On-site
USD 155,000 - 185,000
Cybersecurity Tool Support Analyst Tier II
Cybersecurity Tool Support Analyst Tier II

UICGS / Bowhead Family of Companies • Quantico (VA)

On-site
USD 155,000 - 185,000
GXVM System Information System Security Engineer (ISSE)
GXVM System Information System Security Engineer (ISSE)

UIC Government Services and the Bowhead Family of Companies • Crane (IN)

On-site
USD 100,000 - 115,000
Medical insurance
401(k) retirement plans
Paid time off
Service Desk Specialist Tier II
Service Desk Specialist Tier II

UIC Arctic Response Services, LLC • Quantico (VA)

On-site
USD 110,000 - 120,000
Top Secret ISSO: Protect Critical Networks
Top Secret ISSO: Protect Critical Networks

UIC Arctic Response Services, LLC • Dahlgren (VA)

On-site
USD 130,000 - 150,000
Systems Administrator
Systems Administrator

Bowhead • Dahlgren (IL)

On-site
USD 70,000 - 90,000