Title:Information Systems Security Officer (ISSO)
Key Responsibilities:- Architect, develop and implement out-of-the-box cyber solutions to meet warfighter needs and ensure end-to-end security
- Serve as a cybersecurity advisor to the Government
- Analyze customer requirements and identify the need for cybersecurity solutions
- Develop and maintain a deep understanding of the organization's overall technology landscape
- Create and maintain documentation for systems, enclaves, applications, including design documents, implementation guides, standard operating procedures, and approval paperwork
- Oversee implementation of RMF, NIST SP 800-53, and STIG requirements, ensuring alignment with DoD security mandates
- Perform vulnerability assessments, support remediation of scan findings and IAVAs, and manage incident response workflows and recovery operations to maintain hardened security posture
- Support security documentation, security control assessments, and continuous monitoring in alignment with FISMA
- Loading and managing cryptographic keys for High Assurance Internet Protocol Encryptors (HAIPE)
- Provide expert guidance in support of cyber audits, ATO packages, and continuous compliance processes
- Engage with customers to better define the problem space and vision to determine capabilities and priorities for prototypes
- Work across multiple technology stacks, gaining hands-on experience with various languages, frameworks, and tools to support a broad range of applications
Required Qualifications:- Security Clearance: Active TS/SCI, eligible for SAP
- Education: BS degree in Computer Science or Information Systems. Other degrees will be considered with relevant work experience.
- One or more of the following certifications (must be current): CISM, CISSO, FITSP-M, GCIA, GCSA, GCIH, GSLC, GICSP, CISSP, CISSP-Associate, CISSP-ISSMP
- At least four (4) years of experience applying the DoD Risk Management Framework (RMF), including: NIST SP 800-53, DISA STIGs, SCAP and IAVAs, FISMA
- Experience managing cybersecurity projects in cloud environments (AWS, Azure, or VMware)
- Experience supporting ATO processes, POA&Ms, and cyber strategy development in federal or military environments
- Knowledge of Linux and Windows Operating Systems
- Knowledge of networking architecture and devices and supporting infrastructure, including IDSs, firewalls, and CDSs
- Experience with Kubernetes and containerization
- Strong passion for conducting independent research, tackling complex problems, and continuously learning and adopting new technologies
- Excellent communication and collaboration skills
- Strong problem-solving and analytical skills
- Ability to work in a fast-paced environment and meet deadlines
Desired Qualifications:- At least eight (8) years of experience analyzing, assessing, and implementing corrective actions based on vulnerability scanning and penetration testing results
- At least eight (8) years of experience supporting defensive cyber operations for DoD, including incident handling, reporting, system defense, and information recovery
- Knowledge of Cybersecurity Process and Approval for Special Access Programs (SAPs)
- DevSecOps experience integrating security measures throughout the entire SDLC
- Familiar with air-gapped Kubernetes deployments using Helm charts and Zarf
- Proficient in using GitLab for version control, CI/CD pipelines, and collaboration
- Experienced in leveraging Agile Software Development methodologies for efficient and iterative project management
- High level of curiosity and investigative mindset with an attention to detail, a tenacity of thought, the flexibility to adapt to new challenges, and the resiliency to overcome short-term hurdles by staying focused on the team's deliverables
Work Environment:- Location: Colorado Springs, CO (On-site)
- Travel Requirements: Minimal
- Working Hours: Standard, 40 hours per week (Full-time)
Compensation:- For Colorado only, the salary range for this position is approximately $104,000 - $120,000. The offered rate will be based on the selected candidate's knowledge, skills, abilities and/or experience and in consideration of internal parity.
Other Compensation:KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short term incentives, long term incentives, or discretionary payments for exceptional performance.
KBR BenefitsKBR offers a selection of competitive lifestyle benefits which could include 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development.
If you're excited about making a significant impact in the field of space defense and working on projects that matter, we encourage you to apply and join our team at KBR. Let's shape the future together.