Senior Information Systems Security Officer (ISSO) with Security Clearance

VTG

Fairfax (VA)

On-site

USD 175,000 - 220,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Byte Systems, a subsidiary of VTG, is seeking an Information Systems Security Officer to support the assessment and authorization process for information systems in a fast-paced federal environment.

You will work with developers, engineers, and customer security managers to implement defense-in-depth and secure cloud deployments. A strong background in risk management, vulnerability assessment, and cross-team collaboration is required.

Qualifications

  • Bachelor's degree in Cybersecurity, IT, or related field.
  • Minimum ten (10) years applied cybersecurity experience or 5 years with a related degree.
  • Experience shepherding IT projects through the authorization lifecycle.
  • Strong collaboration with stakeholders and customer security managers (ISSMs) and leadership.

Responsibilities

  • Support assessment and authorization (A&A) for information systems.
  • Collaborate with developers and engineers on secure hybrid-cloud environments.
  • Identify risks, vulnerabilities, anomalies, patching, auditing, and security hardening.
  • Utilize SIEMs and tooling to monitor, report, and improve posture.

Skills

Communication
A&A reporting
Network architecture
OS hardening
Vulnerability tools
Vulnerability research
Cross-team collaboration
CONOPS documentation
Risk management
NIST 800-53
Networking fundamentals
Cloud security
Scripting

Education

Bachelor's degree in Cybersecurity/IT or related

Tools

nmap
Nessus
Rapid7
Splunk
Nipper
Elasticsearch
Jira
Confluence
Cisco
VMware
Citrix
Trellix

Job description

Overview Byte Systems, a subsidiary of VTG, is seeking an Information Systems Security Officier to support the assessment and authorization (A&A) process for information systems. The successful candidate will have requisite cyber security experience with methods and tools used to improve the security posture of critical systems such as identifying risks, vulnerabilities, anomalies, patching, auditing, automation, security hardening, best practices, and evaluating system changes. In addition, the candidate will collaborate with developers and engineers on projects to create a secure hybrid-cloud environment. What will you do? REQUIRED KNOWLEDGE/SKILLS

  • Strong verbal and written communication/cooperation within a team context
  • Supported control implementation assessment and reporting and monitoring processes using cyber security and assessment management systems
  • Understanding of perimeter controls (firewalls), access control mechanisms, and network architectures
  • Demonstrated essential understanding of methods for hardening operating systems (e.g., CentOS, RedHat, Windows)
  • Skilled with and/or demonstrated technical aptitude with vulnerability and risk assessment tools such as Elasticsearch or Splunk SIEMs, Rapid7 Nexpose, and IDS/IPS monitoring and alerting
  • Strong understanding of methodologies for researching and documenting software and hardware vulnerabilities
  • Experienced working closely with stakeholders, developers, and external teams, including customer security manages (ISSMs), organizational leadership, and key personnel
  • Applied experience with the customer's assessment and authorization tracking tools
  • Knowledgeable regarding Common Control Provider (CCP) requirements and methodology
  • Demonstrated knowledge and experience with networking topologies and hardware, including commonly used/referenced network devices, IDS and IPS, etc.
  • Applied experience with open-source and commercial tools and systems such as nmap, Nessus, Rapid7, Splunk, Nipper, Elasticsearch, Jira, Confluence, Cisco, VMware, Citrix, or Trellix, as well as GOTS tools used by the customer
  • Demonstrated experience with the design and implementation of defense-in-depth solutions
  • Skilled in cross-team collaboration and effective communication to fulfill specific authorization requirements
  • Demonstrated skill documenting processes and procedures in CONOPS and system security, contingency, configuration management and other plans
  • Demonstrated ability to facilitate customer concurrences required for risk-based decisions, especially those requiring waivers
  • Experience assisting the customer with decisions impacting the security posture and compliance of their systems and networks with requirement as documented in NIST 800-53 and its revisions
  • Extensive familiarity with communications protocols, such as TCP/IP, UDP, HTTP/S, SSH, LDAP, etc.
  • Demonstrated experience with security, monitoring and auditing cloud-based technologies, products and services, such as Amazon Web Services (AWS) or Microsoft Azure
  • Knowledge of the customer’s organization, their network systems and infrastructure, processes and procedures, and request and approval tools
  • Ability to work within fast-paced customer environments DESIRED SKILLS
  • Experience in scripting/program languages such as Bash, PowerShell, or Python Do you have what it takes? QUALIFICATIONS
  • Bachelor's degree in Cybersecurity, IT, or other related technical discipline; or the equivalent combination of education, technical training, or work/military experience
  • Minimum ten (10) years applied experience or relevant degree plus five (5) years of Cybersecurity expertise with demonstrated ability to successfully shepherd IT projects of varying types through the authorization lifecycle Pay Range: VTG's estimated starting pay range is $175,000-$220,000 annually, which is a general guideline for the geographic location. When extending an offer, VTG also considers work experience, education, skill level, market considerations and may possibly include contractual requirements which may cause an offer to fall outside of this range.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Systems Security Officer (ISSO)
Senior Information Systems Security Officer (ISSO)

Vosper Thornycroft Group • Tysons (VA)

On-site
USD 175,000 - 220,000
Senior Information Systems Security Officer (ISSO)
Senior Information Systems Security Officer (ISSO)

VT Group (VTG) • Virginia (IL)

On-site
USD 175,000 - 220,000
Information Systems Security Officer with Security Clearance
Information Systems Security Officer with Security Clearance

VTG • Los Angeles (CA)

On-site
USD 107,000 - 115,000
Cyber Security Specialist IV
Cyber Security Specialist IV

Vosper Thornycroft Group • Herndon (VA)

On-site
USD 175,000 - 220,000
Information Systems Security Officer
Information Systems Security Officer

VT Group (VTG) • Chantilly (VA)

On-site
USD 100,000 - 113,000
Cyber Security Specialist IV
Cyber Security Specialist IV

VT Group (VTG) • Herndon (VA)

On-site
USD 175,000 - 220,000
Information Systems Security Officer
Information Systems Security Officer

Vosper Thornycroft Group • Chantilly (VA)

On-site
USD 100,000 - 113,000
Information Systems Security Officer
Information Systems Security Officer

VTG Defense • Norfolk (VA)

On-site
USD 107,000 - 115,000
Information Systems Security Officer
Information Systems Security Officer

VTG Defense • San Diego (CA)

On-site
USD 107,000 - 115,000
Information Systems Security Officer
Information Systems Security Officer

VTG Defense • Maryland

On-site
USD 107,000 - 115,000