ISSO

Saliense Consulting LLC

$110K — $130K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of relevant experience in information security
  • Proficient in RMF and NIST Cybersecurity Framework
  • Deep understanding of federal information security policies and best practices
  • Expertise in vulnerability and risk assessment, network security, and product evaluation
  • Strong familiarity with NIST SP 800-53 special publications
  • Knowledgeable about FISMA and IT audit requirements

Responsibilities

  • Act as an information security expert in vulnerability and risk assessments
  • Design and implement solutions for sensitive information security
  • Evaluate customer systems for security improvements
  • Create and update system security documentation and contingency plans
  • Conduct testing and audit log reviews of security measures
  • Evaluate security products and recommend upgrades to enhance security posture

Benefits

  • Comprehensive health insurance options
  • 401(k) plan with company match
  • Professional development opportunities
  • Flexible work environment
  • Paid time off including holidays and vacation days
Full Job Description
The Information System Security Officer (ISSO) supports work performed under the contract possessing a substantial level of knowledge of federal information system security policy, industry best practices, security control assessments, Plan of Action and Milestones (POA&M) management, system authorizations, configuration management, and system analysis. Responsible for designing and implementing solutions for protecting the confidentiality, integrity, and availability of sensitive information.

Responsibilities:

  • Serves as a recognized information security expert in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation.
  • From a technical perspective the Information System Security Officer is responsible for designing and implementing solutions for protecting the confidentiality, integrity, and availability of sensitive information.
  • Provides technical evaluations of customer systems and assists with making security improvements.
  • Participates in the design of information system business impact analysis, system categorization, contingency plans, privacy documents, and other system security documentation to maintain appropriate levels of protection and meet requirements for minimizing operational impact to the enterprise.
  • Conducts testing and audit log reviews to evaluate the effectiveness of current security measures.
  • Conducts security product evaluations, and recommends products, technologies, and upgrades to improve the customer's security posture.


Requirements:

  • 5+ years of relevant experience
  • Experience with RMF and applying the NIST Cybersecurity Framework.
  • Possesses substantial knowledge of federal information system security policy, industry best practices, security control assessments, Plan of Action and Milestones (POA&M) management, system authorizations, configuration management, and system analysis
  • Experience designing and implementing solutions for protecting the confidentiality, integrity, and availability of sensitive information. - A technical expert providing technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation.
  • Experience designing and implementing solutions for protecting the confidentiality, integrity, and availability of sensitive information.
  • Experience using JCAM highly preferred, not required.
  • Solid understanding and application of NIST Special Publications including SP 800-53
  • Solid understanding of FISMA audit requirements.
  • Solid understanding of IT audit requirements.
  • Ability to work with cooperatively and at a technical level with developers, engineers, and managers on system teams.
  • Knowledge of computer networking concepts, protocols, and network security methodologies.
  • Knowledge of risk management processes and tools (e.g., methods and tools for assessing and mitigating risks).
  • Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy in a federal environment.
  • Knowledge of current and past cybersecurity threats and vulnerabilities.

Similar Jobs

More Jobs at Saliense Consulting LLC

  • Cyber Information Assurance Lead
    $108K — $130K *
    Alexandria, VA 22304 (Alexandria City County)
    Education, Government & Non-Profit
    In-Person
  • AIGS Program Manager
    $110K — $130K *
    Remote
    Education, Government & Non-Profit
    Remote in Arlington, VA
  • AIGS Program Manager
    $110K — $130K *
    Arlington, VA 22204 (Arlington County)
    Education, Government & Non-Profit
    In-Person
  • Program Manager
    $110K — $130K *
    Arlington, VA 22204 (Arlington County)
    Information Technology
    In-Person
  • Security Operations Lead
    $110K — $130K *
    Alexandria, VA 22304 (Alexandria City County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar ISSO jobs: