Specialist, Information System Security III

DirectViz Solutions, LLC

$108K — $130K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's or master's degree in a related field plus relevant experience (10 years for bachelor's, 8 years for master's, or 15 years for high school diploma/GED)
  • Experience with STIG assessments, SCAP benchmarks/EvaluateSTIG, ACAS, eMASS, and POA&M development
  • Demonstrated ability to communicate risk-reduction recommendations to stakeholders
  • IAM level III certification (CISM, CISSP, GSLC, CCISO) is required
  • Must possess a SECRET security clearance.

Responsibilities

  • Perform and support all phases of the RMF lifecycle and Navy A&A activities
  • Develop, maintain, and update RMF authorization packages in eMASS
  • Conduct STIG assessments and vulnerability assessments using various tools
  • Track POA&Ms and corrective actions
  • Provide cybersecurity guidance for Navy radar and data-distribution systems
  • Assess security controls and identify deficiencies
  • Communicate recommendations to Government and technical stakeholders
  • Coordinate authorization activities and support audits and inspections.

Benefits

  • Collaborative and supportive team environment
  • Opportunities for professional development and certifications
  • Engagement in mission-critical projects for the Department of the Navy
  • On-site location in Virginia Beach/Dam Neck
  • Challenging work with complex problem-solving opportunities.
Full Job Description
Title: Information Systems Security III

Clearance: Secret

Location: VA Beach/Dam Neck (on-site)

Position Summary

DVS is seeking a senior-level Specialist, Information System Security III to provide advanced ISSE/ISSO and RMF engineering support for Department of the Navy information systems. This position leads and performs complex A&A, continuous monitoring, security assessment, vulnerability management, and risk-reduction activities and provides cybersecurity guidance for mission-critical Navy radar and data-distribution systems.

Key Responsibilities
  • Perform and support all phases of the RMF lifecycle and Navy A&A activities.
  • Develop, maintain, review, and update comprehensive RMF authorization packages in eMASS.
  • Perform STIG assessments using SCAP benchmarks and EvaluateSTIG.
  • Conduct vulnerability assessments using ACAS and analyze findings for operational and cybersecurity risk.
  • Develop, manage, and track POA&Ms and corrective actions.
  • Develop and maintain SSPs, SARs, SCTMs, and related authorization artifacts.
  • Complete and support RMF Step 5 authorization activities in the ISSE capacity.
  • Assess security control implementation and identify control deficiencies.
  • Communicate risk-reduction recommendations to Government and technical stakeholders.
  • Provide senior cybersecurity engineering guidance for system architecture, configuration, boundary protection, and proposed technical changes.
  • Coordinate ATO, IATT, IATO, authorization renewal, annual review, and continuous monitoring activities.
  • Support cybersecurity audits, inspections, assessments, and Government data calls.
  • Coordinate with system owners, engineers, administrators, laboratory personnel, and cybersecurity stakeholders to resolve authorization and compliance issues.


Minimum Qualifications
  • Degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information Systems, Information Technology, Computer/Electrical/Electronics Engineering, Software Engineering, Computer Science, Mathematics with a concentration in Computer Science, or an equivalent discipline.
  • Qualifying bachelor's degree plus 10 years of experience
  • Qualifying master's degree plus 8 years of experience
  • High school diploma/GED plus 15 years of experience
  • Demonstrated experience with STIG assessments, SCAP benchmarks/EvaluateSTIG, ACAS, eMASS, POA&M development, RMF Step 5 authorizations in an ISSE capacity, and communicating risk-reduction recommendations to stakeholders.
  • Certifications: IAM level III: CISM, CISSP, GSLC, CCISO.
  • SECRET Clearance Required.


If you thrive on solving complex problems and building meaningful connections, we'd love to hear from you. Join our team and make an impact today!

Physical and Mental Qualifications:
  • Maintain focus and awareness throughout scheduled working hours.
  • Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard.
  • Lift and move objects weighing up to 15 pounds as needed.
  • Exhibit excellent verbal and written communication skills, with a strong command of the English language.
  • Demonstrate the ability to work independently while also collaborating effectively as part of a team.
  • Quickly learn and retain routine tasks and processes.
  • Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities.
  • Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request.
  • Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS).


Similar Jobs

More Jobs at DirectViz Solutions, LLC

  • Specialist, Information System Security III
    $108K — $130K *
    Virginia Beach, VA 23464 (Virginia Beach City County)
    Information Technology
    In-Person
  • ServiceNow Architect
    $120K — $145K *
    Alexandria, VA 22304 (Alexandria City County)
    Enterprise Technology
    In-Person
  • ServiceNow Trainer
    $95K — $115K *
    Alexandria, VA 22304 (Alexandria City County)
    Education, Government & Non-Profit
    In-Person
  • Senior ServiceNow Developer
    $110K — $130K *
    Alexandria, VA 22304 (Alexandria City County)
    Enterprise Technology
    In-Person
  • Program Manager
    $110K — $130K *
    Washington, DC 20011 (District Of Columbia County)
    Education, Government & Non-Profit
    In-Person

More Information Technology Jobs

Find similar Specialist, Information System Security III jobs: