Information Systems Security Officer

E&M Technologies, Inc.

$95K — $115K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of general work experience
  • 5+ years of directly related experience
  • Proficient in Risk Management Framework (RMF) processes following NIST SP 800 series guidelines
  • Experience developing RMF Body of Evidence and security documentation
  • Familiar with NIST SP 800-53 control assessments for Secret systems
  • Skilled in using eMASS for compliance documentation and vulnerability management
  • Must possess and maintain TS/SCI clearance

Responsibilities

  • Ensure cybersecurity posture of mission-critical systems
  • Maintain compliance with RMF requirements and support A&A efforts
  • Conduct security analyses on threats and vulnerabilities
  • Collaborate with internal and external stakeholders to implement security measures
  • Assess and mitigate risks to safeguard mission systems

Benefits

  • Medical, dental, and vision insurance
  • Life, short-term and long-term disability insurance
  • 401(k) match program
  • Flexible spending accounts
  • Flexible work schedules
  • Parental leave and paid time off
  • Holiday pay
Full Job Description
Job Type

Full-time

Description

POSITION: Information Systems Security Officer

WORK LOCATION: Colorado Springs, CO

JOB CATEGORY: Information Technology

JOB TYPE: Full Time

REQUISITION ID: EM09-199

CITIZENSHIP: United States Citizen

CLEARANCE TYPE: TS/SCI clearance

TRAVEL REQUIREMENTS: Up to 10%

E&M Technologies, Inc. is currently seeking an Information Systems Security Officer to join our team in Colorado Springs, CO in support of the North American Aerospace Defense Command. NORAD is a United States and Canada bi-national organization charged with the missions of aerospace warning, aerospace control and maritime warning for North America. Aerospace warning includes the detection, validation, and warning of attack against North America whether by aircraft, missiles, or space vehicles, through mutual support arrangements with other commands.

Job Description:
  • Play a key role in ensuring the cybersecurity posture of mission-critical systems within the NISSC II portfolio.
  • Have responsibility for maintaining compliance with Risk Management Framework (RMF) requirements and supporting Assessment and Authorization (A&A) efforts to ensure systems maintain an active Authorization to Operate (ATO).
  • Perform security analyses of threats, vulnerabilities, and system environments while collaborating with government, supplier, and internal stakeholders to implement security measures that safeguard mission systems.


Requirements

Minimum Qualifications:
  • Must have 5 or more years of general work experience
  • Must have 5 years or more of directly related experience
  • Experience applying Risk Management Framework (RMF) processes and principles in compliance with National Institute of Standards and Technology (NIST) Special Publication (SP) 800 series.
  • Experience in developing and/or contributing to the RMF Body of Evidence, including creation and maintenance of applicable artifacts and documentation for security control implementation and assessment.
  • Experience performing NIST SP 800-53 control assessments for Secret systems, including assessment of technical, operational, and management security controls.
  • Experience utilizing Department of Defense RMF tools eMASS to document assessment results, track vulnerabilities, manage POA&Ms, and report compliance status.
  • Must meet the requirements outlined in DoDM 8140 in the Information System Security Manager role (722)
  • Must be a U.S. Citizen
  • Must have and be capable of maintaining a U.S. Department of Defense (DOD) security clearance at the required level

Preferred Qualifications:
  • Ability to perform continuous assessments of systems and network security measures to identify potential risks, vulnerabilities, and threats.
  • Expertise in developing effective risk prevention strategies and mitigation plans to protect organizational assets.
  • In-depth experience with the implementation of RMF processes in compliance with applicable DoD and industry cybersecurity policies and standards.
  • Ability to interpret and apply cybersecurity policies to operational systems and provide informed recommendations.
  • Proficient in utilizing security-relevant tools such as Assured Compliance Assessment Solution (ACAS) and Endpoint Security Solution (ESS) to identify vulnerabilities, assess risks, and recommend actionable mitigations.
  • Practical experience using Security Content Automation Protocol (SCAP) tools to analyze system configurations and check compliance with DoD Security Technical Implementation Guides (STIGs).
  • Familiarity with best practices for secure system architectures, vulnerability management, and incident response.
  • Ability to foster and promote a proactive cybersecurity culture within the organization through awareness and adherence to security principles.
  • Strong interpersonal and communication skills, with the ability to collaborate effectively with cross-functional teams, customers, and third-party vendors.
  • Ability to present complex cybersecurity concepts and issues in a clear, concise manner to both technical and non-technical audiences.

To Apply for this Position:

You must have the Minimum Qualifications in your resume to be selected as a candidate.

The salary range provided is a good faith estimate representative of all experience levels. E&M considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.

Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.

This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.?

E&M anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require E&M to shorten or extend the application window.?

Similar Jobs

More Jobs at E&M Technologies, Inc.

  • OSINT Analyst
    $75K — $95K *
    Colorado Springs, CO 80918 (El Paso County)
    Aerospace & Defense
    In-Person
  • Senior ICAM Engineer
    Chantilly, VA 20152 (Loudoun County)
    Information Technology
    In-Person
  • ICAM Architect
    Chantilly, VA 20152 (Loudoun County)
    Aerospace & Defense
    In-Person

More Information Technology Jobs

Find similar Information Systems Security Officer jobs: