In a world of possibilities, pursue one with endless opportunities. Imagine Next!
At Parsons, you can imagine a career where you thrive, work with exceptional people, and be yourself. Guided by our leadership vision of valuing people, embracing agility, and fostering growth, we cultivate an innovative culture that empowers you to achieve your full potential. Unleash your talent and redefine what's possible.
Job Description:
Parsons has emerged as a leader in the development of cutting-edge solutions for the Department of War and Intelligence Community. Our tremendous success can be attributed to our people and our priorities. We hire the best; we make them a priority, and we never lose focus on the mission. It's why we're here. We have built this cultural legacy by working closely with analysts and operators to understand their needs and deliver meaningful value through innovative, cost effective and intuitive software solutions.
Our Space Operations Program Directorate is passionate about making America the undisputed leader in Space because we understand that ensuring our nation's security for future generations depends on it. Parsons creates game changing space solutions by teaming highly respected subject matter experts with brilliant technologists. Do you want to be part of a team that is helping the government solve major national security challenges in the space domain? We need your help.
Our team is looking for a Senior Information Systems Security Officer (ISSO). In this role you will get to focus on the cybersecurity aspects of system design to deal with cyber-related disruptions, minimizing misuse and malicious behavior, while supporting Department of War agencies, such as HQ Air Force, Office of the Secretary of Defense (OSD) and Military Compartments efforts. The position will provide "day-to-day" support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
Required Skills:
- Utilize Joint Special Access Program Implementation Guide (JSIG) /Risk Management Framework (RMF) to achieve and maintain Authorization to Operate (ATO), Interim Authorization to Test (IATT), and Authority to Connect (ATC) for all existing and new Information Systems (IS) that require accreditation to include on premise and cloud platforms
- Maintain and develop System Security Plans (SSP), Security Controls Traceability Matrices (SCTM), Risk Assessment Reports (RAR), Continuous Monitoring Plans (ConMon), Security Assessment Reports (SAR), and Plan of Actions and Milestones (POA&M)
- Ability to Develop and update documentation, policy, and procedures such as: Ports Protocols and Services Management (PPSM) worksheets, system and network diagrams / descriptions, and SOPs
- Expert knowledge of and hands on experience with Security Technical Implementation Guides (STIGs), Assured Compliance Assessment Solution (ACAS), Splunk, Netwrix, Endpoint Security Solutions (ESS)/Trellix
- Coordinate and perform security audits and system updates to identify nonstandard events and maintain system and information integrity
- Play an active role in conducting continuous monitoring activities on Accredited Information Systems (AIS) its environment of operation to include developing and updating the system artifacts, managing, and controlling changes to the system
- Conduct security impact analysis activities and provide to the Information Systems Security Manager (ISSM) on all configuration management changes to the authorization boundaries
- Report Cyber incidents or vulnerabilities to the ISSM and/or government chain of command
- Strong ability to produce and maintain varied technical documentation
- Knowledge of risk management processes (e.g., methods for assessing and mitigating risk)
- Broad knowledge of Information Technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption); computer networking concepts and protocols, and network security methodologies; network security architecture concepts including topology, protocols, and components, and have
- Experience in reviewing and implementing secure configuration management techniques
- Practical experience in guiding systems through NIST SP 800-37 RMF steps, from Prepare to Monitor, using CNSSI 1253 to ascertain appropriate Confidentiality, Integrity, and Availability levels, and the NIST SP 800-53 controls associated with each level
- Experience with Enterprise Mission Assurance Support Service (eMASS) and Xacta
- Must have a Bachelors' Degree in Computer Science/Engineering/Cybersecurity or other relevant Engineering field from an accredited university with minimum 8 years of experience
- Top Secret (TS) security clearance with eligibility for Secret Compartmented Information (SCI)
- Willingness to submit to a Counterintelligence polygraph to achieve SAP security Clearance within 3 months of hire
- Possess a DoD 8140.03/8570.01 Information Assurance Manager II certification: Certified Inf