The Senior Information System Security Officer (ISSO) supports the Information System Security Manager (ISSM) in protecting and accrediting mission-critical Air Force and Department of Defense information systems. This position conducts cybersecurity research and analysis, develops Risk Management Framework (RMF) and Cross Domain Solution accreditation documentation, evaluates network architectures and security exception requests, and implements applicable DoD, DISA, CSSP, USCENTCOM, and Authorizing Official requirements. The Senior ISSO also maintains security records and approved-product libraries, tracks and reports security events, interprets information assurance policies, and provides IT management, reporting, briefing, training, and CONUS/OCONUS travel support as required.
AFCENT's mission is to deliver combat-ready air, space, communications, and cyberspace capability for USCENTCOM, helping maintain security and stability throughout Southwest Asia. We support the AFCENT Commander, USCENTCOM, coalition and joint partners, and warfighters who rely on NIPRNet, SIPRNet, partner networks, and other command-and-control systems. The AFCENT NOSC program is focused on running and protecting a 24/7 enterprise network and systems operations, including cybersecurity, engineering, maintenance, and technical support, keeping the AFCENT's theater communications and IT infrastructure ready, secure, and available to effectively execute the AFCENT mission.
Job Responsibilities - Assist the ISSM by conducting research, analysis, and creating documentation in support of the RMF process.
- Analyze, evaluate and recommend the application of Air Force systems accreditation and certification procedures for existing and planned network architectures.
- Research, process and recommend approval of Firewall and Bluecoat Exception Requests.
- Process requests for removable media.
- Complete accreditation documents as outlined by DISA Risk Management Framework (RMF), Cybersecurity Service Provider (CSSP), USCENTCOM, and Authorizing Official (AO) guidance.
- Maintain Enterprise Products List (EPL) and Accreditation Library for all approved products and systems and evaluate service level agreements.
- Prepare and process accreditation documents for Cross Domain Solutions.
- Research, analyze and document Information Assurance and Security polices and assist with interpretation of local policies.
- Track, document, and report all security related events and prepare relevant documentation for ISSM and AO review.
- Implement and enforce DoD Information System, Platform Information Technology (PIT) systems cybersecurity policies and procedures as defined by relevant cybersecurity-related documentation.
- Provide General IT Management support.
- Provide documentation/reports support as required.
- Provide meetings/briefings support as required.
- Provide functional training support as required.
- Provide OCONUS deployment/TDY travel support as required.
- Provide CONUS TDY support as required.
Required Qualifications - B.S. in related field and 5 or more years• relevant Information Security experience; or, 7 or more years• relevant Information Security experience.
- Firewall experience
- Ability to implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
- Must possess experience and demonstrate an understanding of Risk Management Framework, National Institute of Technology and Standards (NIST) Cyber Framework, DoD and Service-level Instructions/Directives/Policies, and Cyber Security Regulations/Best Practices.
Certifications Required - ITIL Foundation (candidate has up to 60 days to acquire ITIL Foundation certification)
Clearance Required - Department of Defense TS/SCI