Information System Security Specialist II

TRISTAR

$75K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in Cybersecurity/Information Security.
  • Background as a Systems Administrator or similar role.
  • Proficiency with ACAS, STIGs, and POA&Ms.
  • Detail-oriented with strong documentation skills.
  • Effective communication with stakeholders and team members.
  • U.S. Citizenship required.
  • Ability to obtain and maintain a Secret Clearance.
  • Bachelor's degree in Information Technology.
  • CompTIA Security Plus certification is required prior to starting.

Responsibilities

  • Maintain records of applied patches and update documentation accordingly.
  • Conduct Cybersecurity Compliance Tests as necessary.
  • Distribute vulnerability packages to designated Information Systems Security Officer.
  • Document updates for Authorization to Operate (ATO).
  • Review Plans of Action and Milestones (POA&M) with subcontractors to address vulnerabilities.
  • Collaborate with testing teams to identify software issues and communicate with original equipment manufacturers (OEMs).
  • Attend customer and OEM meetings to discuss and resolve vulnerabilities.
  • Engage with OEMs regarding software updates and fixes.
  • Review Security Technical Implementation Guides (STIGs) and Security Requirement Guides (SRGs).
  • Occasional travel of up to 10%.

Benefits

  • Comprehensive health benefits package.
  • Opportunities for professional development and training.
  • Flexible work hours to accommodate personal commitments.
  • Supportive team environment focused on collaboration.
  • Access to cutting-edge cybersecurity tools and technologies.
Full Job Description
Job Type

Full-time

Description

We are seeking a dedicated and detail-oriented Information System Security Specialist II to join our team. In this role, you will support software and hardware patch management, vulnerability scanning, and the quarterly maintenance of software baselines to ensure IA compliance. The ideal candidate will play a key role in maintaining the security, integrity, and compliance of enterprise systems while supporting ongoing cybersecurity and operational objectives.

Key responsibilities
  • Maintain a record of patches applied and assist in updating corresponding documentation with a list of software versions.
  • Perform Cybersecurity Compliance Tests as required.
  • Distribute vulnerability packages via Secret Internet Protocol Router Network (SIPRNET) to the cognizant Information Systems Security Officer (ISSO) at the completion of the Compliance Test review.
  • Perform and create documentation for an updated or new ATO.
  • Review and communicate POA&M information with subcontractor to identify what vulnerabilities can be mitigated
  • Work with integration and testing teams to identify issues with software to then communicate those deficiencies with the OEM of the software.
  • Attend meetings with customer and OEM to outline, discuss, and find resolution to vulnerabilities.
  • Engage with OEM on status of updates related to fixes and releases.
  • Perform and review STIGs, and SRGs.
  • Some Travel Occasionally up to 10%.


Requirements

  • Experience working in Cybersecurity/Information Security.
  • Experience as a Systems Administrator or equivalent.
  • Exposure and experience working with ACAS, STIGs, and POA&Ms.
  • Detail oriented, able to keep track of key information, documentation, and communicate issues forward.
  • Capable of communicating with various stakeholders, customers, and team members effectively.
  • Must be a US Citizen.
  • Ability to obtain and maintain a Secret Clearance.
  • Bachelor's in Information Technology.
  • Must have or be able to obtain CompTIA Security Plus certification prior to starting.


Similar Jobs

More Jobs at TRISTAR

More Information Technology Jobs

Find similar Information System Security Specialist II jobs: