Information System Security Officer

E-Infosol LLC

$95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active Top-Secret clearance with capability to obtain SCI/CI Poly if needed.
  • Bachelor's and/or Master's degree in Computer Science, Management Information Systems, or related field.
  • Working knowledge of CI/CD Pipelines, virtualization, and cloud computing technologies.
  • Familiarity with security tools such as Tenable Nessus, AppDetectivePro, and NMAP.

Responsibilities

  • Ensure daily implementation and oversight of security configurations and practices.
  • Lead security authorization processes and recommend best practices.
  • Manage cybersecurity posture, including vulnerability management and incident response.
  • Upload security control evidence to GRC applications for monitoring.
  • Write documentation for systems subject to NIST SP 800-53 requirements.
  • Support A&A activities and maintain ATO as required.
  • Conduct IS vulnerability scans based on risk assessment parameters.

Benefits

  • Company-subsidized medical premiums for employees and dependents.
  • Comprehensive dental and vision coverage.
  • 401(k) retirement savings plan with up to 4% company match.
  • Health Savings Account (HSA) and flexible spending accounts (FSA, DCFSA).
  • Company-paid short and long-term disability.
  • Company-paid life and accidental death & dismemberment insurance with options.
  • Generous paid time off including all federal holidays.
  • Legal and identity protection services.
  • Bonuses and reimbursement for certifications.
Full Job Description
26-23-03-000

Summary

E-INFOSOL LLC is seeking a highly motivated Information System Security Officer to support our efforts in Clarksburg, WV

Job Description

The Senior Information System Security Officer (ISSO) supports a federal agency in verifying compliance with Federal Information Security Management Act (FISMA), National Institute of Standards and Technology (NIST), DISA Security Technical Implementation Guide (STIG), Federal Information Processing Standards (FIPS), National Information Processing Standards (NIPS), and support and the establishment, implementation, and maintenance of a life-cycle security model that develops, maintains, and dispositions information systems, services, and data, and safeguards their confidentiality, integrity, and availability to meet the needs and support the missions of the agency.

Job Responsibilities:
  • Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for the customer's information system(s)
  • Lead security authorization processes and procedures. Recommend security best practices and system configuration standards
  • Take full responsibility of cybersecurity posture and analysis to include vulnerability management, incident response support, and Risk Management Framework
  • Upload all security control evidence to the Governance, Risk, and Compliance (GRC) application to support security control implementation during the monitoring phase
  • Write System Security Plans, POA&Ms (Plan of Actions and Milestones), Risk Assessments, PIAs (Privacy Impact Analyses), and supporting documentation for systems subject to NIST SP 800-53
  • Support Assessment & Authorization (A&A) activities. Achieve and maintain ATO (Authority to Operate), as required
  • Conduct required IS vulnerability scans according to risk assessment parameters
  • Coordinate system owner concurrence for correction or mitigation actions
  • Monitor security controls for the customer's information system(s) to maintain security Authorized To Operate (ATO)
  • Create security A&A documentation for CODIS and maintains the project system security procedure for the Information System Security Manager (ISSM)
  • Review system audit trails, and reports all information system security incidents through the appropriate channels
  • Ensure that all users have the requisite security clearances, authorization, and need-to-know, and are aware of their security responsibilities before granting access to the Information System and administers/witnesses signed user
  • Manage Information Security Audits by federal departments/agencies, including third party auditors
  • Reports all security-related incidents to the ISSM
  • Initiate, with the approval of the ISSM, protective and corrective measures when a security incident or vulnerability is discovered
  • Interface with appropriate government managers and contractors to ensure understanding of and compliance with security requirements
  • Participates in CCBs and advises on the security impacts of all proposed changes and software requirements
  • Supports certification activities throughout the A&A process
  • Oversees system recovery processes as well as Continuity of operations (COOP) exercises
  • Assess emerging network system and enterprise-level risks and vulnerabilities. Advises leadership on cyber security risk management, security strategy, security project planning, and security architecture
  • Advise and conduct liaison with appropriate security organizations on security status of configuration changes to the operational system.


Required Qualifications:
  • Active Top-Secret clearance with capability to obtain SCI/CI Poly if needed to meet contract requirements.
  • Bachelors and/or Master's degree in Computer Science, Management Information Systems, or related computer science technical degree
  • Working knowledge of Continuous Integration/Continuous Delivery (CI/CD) Pipelines Virtualization, software-defined infrastructure and working knowledge of cloud computing technologies
  • Familiarity with the use and operation of security tools including Tenable Nessus and/or Security Center, AppDetectivePro, HP Weblnspect, Network Mapper (NMAP), and/or similar applications


Preferred Qualifications:
  • CompTIA Security+ or (ISC)² Security Certified Practitioner (SSCP), (ISC)2 CISSP, or higher certification


Benefits
  • Medical - company subsidized premiums for employees, including family and dependent options.
  • Dental and Vision
  • Retirement Savings (401k) up to 4% match
  • Health Savings Account (HSA), FSA and DCFSA
  • Company-paid Short/Long-term disability (w/ additional supplemental options)
  • Company-paid Life and AD&D (w/ additional supplemental options)
  • Generous Paid Time Off and ALL 11 Federal Holidays
  • Legal and Identity Protection Services
  • Bonuses for certifications and reimbursement

Employee Perks:
  • UberOne, Company Outings (Sporting events, Happy Hours, etc.), Discounts on services including Pet Insurance

Similar Jobs

More Jobs at E-Infosol LLC

  • Information System Security Officer
    $95K — $115K *
    Clarksburg, WV 26301 (Harrison County)
    Information Technology
    In-Person
  • Full Stack Developer
    $110K — $130K *
    Fort Washington, MD 20744 (Prince Georges County)
    Aerospace & Defense
    In-Person
  • Full Stack Developer
    $110K — $130K *
    Fort Washington, MD 20744 (Prince Georges County)
    Information Technology
    In-Person
  • Full Stack Developer
    $110K — $130K *
    Washington, DC 20011 (District Of Columbia County)
    Information Technology
    In-Person
  • Full Stack Developer
    $110K — $130K *
    Fort Washington, MD 20744 (Prince Georges County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Information System Security Officer jobs: