Information System Security Officer* Atlantic City, NJ

Infinisource Consulting Solutions

$95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's or advanced degree in Computer Information Systems or a related field; experience or certifications can substitute for degree
  • Active Top Secret Security Clearance (TS)
  • 3+ years of experience as an Information Systems Security Officer (ISSO)
  • Expert knowledge of FISMA systems, Risk Management Framework (RMF), and NIST 800-series guidelines
  • Proficient in vulnerability and scanning tools with strong risk assessment interpretation skills
  • Strong communication skills, both verbal and written
  • Ability to independently manage projects and adhere to schedules

Responsibilities

  • Ensure compliance with Federal Information Assurance policies for Information System Authorization to Operate (ATO)
  • Oversee continuous monitoring and maintenance of security practices for information systems
  • Serve as a liaison between system owners and FBI information security personnel
  • Guide the design and development of systems towards integrated security best practices
  • Create and update required security assessments and documentation for each system
  • Track privileged user access to information systems
  • Conduct vulnerability scans and ensure security logs are maintained as per policy

Benefits

  • Comprehensive health insurance
  • Flexible working hours
  • Professional development opportunities
  • Generous paid time off policy
  • Retirement savings plan
Full Job Description
SUMMARY This position is for an experienced Information Systems Security Officer (ISSO) responsible for assuring compliance with all information system (IS) security requirements. The ISSO ensures proper assessment and implementation of security practices and procedures and validation of all security obligations toward meeting the Federal Information Security Modernization Act (FISMA) Risk Management Framework (RMF) requirements. ESSENTIAL FUNCTIONS • Ensure that Learning Systems Unit (LSU) adhere to Federal Information Assurance policies and procedures to acquire and maintain an Information System(s) Authorization to Operate (ATO) under the FISMA, by following NIST 800-53 guidelines and NIST 800-53a security controls assessment practices for all current and future systems. • Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for each information system. • Provide liaison support between the LSU system owner and other FBI info system security personnel. • Guides LSU Operations/system engineering design and development toward a "baked-in" security approach using Information Assurance best practices, as well as FBI-specific policies and guidelines. • Create and update the Privacy Threshold Analysis (PTA) and Privacy Impact Assessment (PIA), Configuration Management Plan (CMP), Contingency Plan (CP) and Incident Response Plan (IRP), as required for each system • Responsible for keeping track of all privileged users accessing IS's. • Conduct required info system vulnerability scans and log analysis according to risk assessment parameters. • Ensure that all system security Plan of Actions and Milestones (POA&Ms) are reviewed and updated. • Ensure all information security audit logs are retained in accordance with DOJ, ODNI or FBI policy • Report any information system security incidents to the Information Systems Security Manager (ISSM) and/or Chief Security Office (CSO), immediately, and initiate upon approval, any protective and corrective measures, required to be taken. • Actively participate as a security board member in the Change Management Process • Ensure all info systems are operated, maintained, and disposed of in accordance with security policies. • Perform at a level where all information system security assessment documentation delivered to the government is accepted on 1st pass. The government criteria shall be based on administrative (grammar, spelling, punctuation, classifications markings, etc.) and technical review. Requirements QUALIFICATIONS Required Skill and Experience: • Bachelors or advanced degree in Computer Information Systems or related field; experience and/or appropriate certifications may be substituted for degree • Active Top Secret Security Clearance (TS) • 3+ years demonstrated experience as an ISSO • Experience and expert knowledge with FISMA Systems, the RMF, NIST 800-series guidelines, Intelligence Community Directive 503 (ICD 503), Committee on National Security Systems (CNSS) Instructions, FIPS, SAA requirements and processes, Continuous Monitoring Framework experience, Plan of Action & Milestones (POA&M) policies and vulnerability/patch management • Ability to define project goals and work independently to complete projects while adhering to the established schedule • Proficient with vulnerability and scanning tools and well-versed in interpreting risk posture resulting from assessment reports • A solid background in IT systems support • A demonstrated ability to quickly and independently learn unfamiliar IT systems • Demonstrated ability to effectively communicate both verbally and in writing • Work on moderately complex assignments, using judgement to resolve problems/make recommendations • Proficient with Microsoft products - Word, Excel, PowerPoint and Vision

Similar Jobs

More Jobs at Infinisource Consulting Solutions

More Information Technology Jobs

Find similar Information System Security Officer* Atlantic City, NJ jobs: