Senior Information Systems Security Office (ISSO)Location: MacDill FB, Tampa, FL (On-site)
Clearance: TS/SCI
Education: MA/MS (or a BA/BS plus anadditional8 years of work experience, 4 of which must be work related)
Outcomes:The successful candidate is expected to accomplish the following outcomes during the first year in the position:
- Formally track all tasks, to include assigned by, suspense, status, and comments on all assigned tasks through completion and be prepared to brief upon request.
- Develop digital continuity folders and files that include standard operating procedures, workflows and POC lists to accomplish all tasks.
- Create 2-3 products beyond the client's requirements that positively impact the client to either increase efficiency, effectiveness, or innovation.
- Establish foundation in AI/ML skills and contribute to AI/ML operationalization and modernization goals and objectives.
- Master position tasks within 60 days and exceed requirements within 90 days.
- Use government provided Generative AI tools on a day-to-day basis to accelerate tasks, research, documentation, analysis, planning, reporting, and problem solving.
- Make recommendations on process improvements and practices that improve quality, speed and/or efficiency.
Responsibilities:The Senior Information Systems Security Officer (ISSO) supports Secretary of the Air Force, Office of Competition (SAF/OC) Mission Partner Capabilities Office (MPCO) (CDMX/CDO) providing onsite ISSO process support in support of MPCO Information Systems Security Managers (ISSMs) where MPCO Information Systems are located, which may include: Hampton, VA, Tampa, FL; Hickham, Hawaii; Molesworth, UK. Primarily, the Senior ISSO provides cybersecurity assessment support, STIG and ACAS vulnerability scan coordination, and Enterprise system security documentation development.
Per PWS section 1.5.9.1 Circuit Management (COMSEC Support), responsibilities include but are not limited to:
- Provide onsite ISSO support to MPCO Information System Security Managers (ISSMs) where MPCO Information Systems are located, which may include: Hampton, VA, Tampa, FL; Hickham, Hawaii; Molesworth, UK.
- Assist the MPCO in coordination of cybersecurity-related processes and activities for MPCO Information Systems and related interfaces. The processes include, but are not limited to, Risk Management Framework (RMF) and system authorization, Cyber Incident Handling, System Life Cycle Management Processes (e.g., Engineering Change and Configuration Management), Vulnerability Management, Malware Protection, Security Assessments/Evaluations/Reviews, Continuous Monitoring, Department of Defense Information Network (DODIN) Connection Approval Process, and Cyber Security Service Provider (CSSP).
- Work with the Cyberspace Capabilities Branch and other MPCO Divisions to provide iterative innovation proposals to be implemented quarterly, by proposing best practices, innovative technology, and/or process improvements that would support the overarching objective of managing the Branch's daily operations more efficiently and effectively across the MPCO Enterprise. Proposals may include methods for increasing mission capability, enhancing customer experience and improving coordination across the geographically-dispersed enterprise. The Contractor shall provide cost/benefit analysis proposals for Government review for any recommended efforts that require resources external to their organization.
- Support and document cybersecurity assessments, security impact analysis and system authorization of MPCO Information Systems. The format of the documentation will be determined based on the applicable DoW, Air Force and Multi-National directives and guidance. The documentation shall be submitted electronically to the MPCO or to the appropriate repository per the MPCO ISSM guidance.
Qualifications:The candidate must have the following qualifications:
- Minimum of ten(10) years of related work experience.
- Minimum of six (6) specificwork-relatedexperience in support of a DoWcomponent.
- Minimum of three (3) years as a staff action officer (e.g. DoW Staff. Service Staff, CCMD staff, Joint Staff, or equivalent) and may be included in years of technical experience above.
- Experience supporting technical security of military systems with at least two of which include experience in coalition operations and at least multi-level security solutions supporting coalition environments or bilateral military information sharing efforts.
- Experience with the following processes: Risk Management Framework (RMF) and system authorization, Cyber Incident Handling, System Life Cycle Management Processes (e.g. Engineering Change and Configuration Management), Vulnerability Management, Malware Protection, and Security Assessments/Evaluations/Reviews, Continuous Monitoring, DODIN Connection Approval Process, and Cybersecurity Service Provider (CSSP).
- Good verbal and written communication.
- Certifications required:
- IAM Level II certification (i.e. CAP, CASP+CE. CISM, CISSP, GSLC, or CCISO) (mandatory)
- CEH desirable.
- Shall comply with DoW established Directive 8140.
The following qualifications are desired:
- Knowledge of Generative AI tools and methods (desired).
- CompTIA Network+ (desired).
- CompTIA Security+ (desired).
Travel: Local travel and/or occasional long-distance travel may be required,
Other Requirements:We seek:- Highly motivated self-starters
- Resourceful individuals with extraordinary intellectual capability and the ability to rapidly learn and apply new concepts.
- Individuals who have a "let me try" attitude and are resilient, present an opinion/position, justify it, and then accept whatever decision is made and charge forward.
- Individuals who view criticism as an opportunity to improve ("let me try again")
- Individuals who think and create, enhancing the company with a steady flow of fresh ideas, perspective, and energy.
Direct Inquiries and Resumes to our Talent Management Team:Yashira Santiago
Andrew Ackley
Gabrial Mira
Mitchell Jimenez
Gemini Industries Inc.Telephone: (813) 286 - 4777