Job DescriptionDescription We need a highly motivated and experienced ISSO to support our cybersecurity initiatives and ensure the confidentiality, integrity, and availability of our information systems. The successful candidate will play a critical role in maintaining the security posture of our organization's IT infrastructure and ensuring compliance with applicable regulations and standards. The ISSO will work closely with the government client in establishing, certifying, and maintaining classified networks in support of the customer's intelligence enterprise.
Key Responsibilities:- Develop, implement, and maintain security policies, procedures, and controls in accordance with organizational objectives and regulatory requirements
- Conduct risk assessments and vulnerability assessments to identify and mitigate security risks
- Manage Risk Management Framework (RMF) activities in accordance with NIST and customer policies and procedures
- Monitor and analyze security alerts and incidents to identify potential threats and respond appropriately
- Enforce security controls and manage the deployment of security technologies such as firewalls, intrusion detection/prevention systems (IDS/IPS), and endpoint protection software
- Lead incident response efforts and coordinate with relevant stakeholders to resolve security incidents
- Prepare and maintain security documentation, including system security plans (SSPs), risk assessments, and security assessment reports (SARs)
- Conduct regular security audits and assessments to ensure compliance with industry standards and best practices
- Provide security training and awareness programs for staff to promote a culture of security within the organization
- Collaborate with IT and business units to implement security measures and ensure secure systems development and deployment
Qualifications- Bachelor's degree in Computer Science, Information Security, or a related field; experience can be substituted for the Bachelor's degree
- Minimum of 7 years of experience in information security, with at least 2 years as an Information Systems Security Officer or a similar role
- Strong knowledge of security frameworks and standards such as NIST, ISO 27001, and CIS Controls
- Hands-on experience with security technologies, including firewalls, IDS/IPS, SIEM, and endpoint protection
- Professional security certifications such as CISSP, CISM, CISA, or equivalent are highly preferred
- Knowledge of NIST and DoD policies and procedures
- Excellent analytical, problem-solving, and decision-making skills
- Strong communication and interpersonal skills, with the ability to effectively communicate technical information to non-technical stakeholders
- Ability to work independently and manage multiple tasks and projects simultaneously
Desired:- Professional security certifications such as CISSP, CISM, CISA, or equivalent are highly preferred
- Qualified at the IAM Level II for the DoD Information Assurance Workforce
- CompTIA Security+ or higher
Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.
Overview SAIC accepts applications on an ongoing basis and there is no deadline.