York Space Systems is seeking an experienced Information System Security Officer (ISSO) to support AWS GovCloud IL5 and applicable AWS IL6 environments. The ISSO will assist the Information System Security Manager (ISSM) with authorization, security-control implementation, continuous monitoring, vulnerability management, and maintenance of the cybersecurity posture for assigned authorization boundaries.
The candidate must understand DoD Risk Management Framework (RMF) requirements and possess sufficient AWS cloud knowledge to evaluate security configurations, analyze evidence, identify risk, and collaborate with technical and government stakeholders.
This role will be fully on-site in our Grand Forks, North Dakota office.
Key Responsibilities- Support RMF, IATT, ATO, and continuous-monitoring activities for cloud environments and Space Vehicle systems.
- Coordinate with the ISSM, system owners, administrators, engineers, assessors, and government stakeholders.
- Develop and maintain SSPs, SCTMs, POA&Ms, SOPs, contingency plans, configuration documentation, and assessment evidence.
- Evaluate AWS shared-responsibility requirements, inherited controls, Customer Responsibility Matrices, and DoD Cloud Computing SRG requirements.
- Review cloud security configurations involving IAM, networking, encryption, logging, monitoring, backups, and vulnerability management.
- Analyze evidence from CloudTrail, Config, Security Hub, Guard Duty, Cloud Watch, Systems Manager, Inspector, and AWS Backup.
- Support Space Vehicle authorization packages by reviewing applicable architectures, interfaces, hardware, software, firmware, and security-control documentation.
- Assess vulnerability scans, audit logs, compliance results, and technical findings; coordinate remediation with administrators and engineers.
- Review DISA STIGs, SRGs, SCAP results, system inventories, change requests, and security impacts across assigned authorization boundaries.
- Evaluate relevant interfaces and data flows among cloud environments, ground systems, Space Vehicles, and mission components.
- Support incident response, data-transfer requirements, media protection, and Configuration Control Board activities.
- Lead System level change request through formalized Configuration Control boards (CCB)
- Notify the ISSM of security incidents, unauthorized changes, control deficiencies, or other conditions affecting authorization or operational risk.
- Other Duties as Assigned.
This role will not have direct reports.
QualificationsRequired for the Role- Five or more years of information assurance, cybersecurity, or RMF experience supporting the U.S. Government or a government contractor.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; equivalent experience may be considered.
- Experience developing DoD authorization documentation and maintaining eMASS packages.
- Working knowledge of DoD RMF, CNSSI 1253, NIST SP 800-53, NIST SP 800-53A, and applicable cybersecurity requirements.
- Experience with DISA STIGs, SCAP, STIG Viewer, and ACAS/Tenable Nessus or comparable tools.
- Familiarity with AWS architecture, IAM, networking, encryption, logging, monitoring, and the shared-responsibility model.
- Experience with AWS security services, inherited controls, Splunk, or other SIEM tools.
- Ability to interpret cloud and Space Vehicle technical evidence and communicate remediation requirements.
- Security+ or another qualification satisfying applicable DoD 8140/DCWF requirements.
- Active Secret clearance with eligibility to obtain and maintain Top Secret clearance and required program access.
- Strong communication, documentation, risk-analysis, and independent task-management skills.
- Willingness to work full-time in office in Grand Forks, ND.
Preferred for the Role- Experience supporting AWS GovCloud IL5, classified AWS IL6, or Space Vehicle authorization packages.
- Experience supporting multiple authorization boundaries, ATOs, or IATTs.
- Familiarity with spacecraft, flight software, firmware, payloads, ground systems, or mission interfaces.
- Experience supporting DCSA, SDA, Space Force, or comparable DoD programs.
- CISM, AWS Certified Security - Specialty, or comparable certification.
Key Benefits- 100% employer-paid medical, dental, and vision insurance (subject to spousal surcharge).
- Company holidays, floating holidays, and sick time.
- Unlimited PTO.
- Generous 401(k) match.
How To ApplyInterested candidates are encouraged to apply by clicking the "Apply" link at the top of the page. York Space Systems will be accepting applications on a rolling basis until the position is closed.