Cyber Security Specialist/ISSO en undefined
undefined · Arlington, Estados Unidos De América · Onsite
- Professional
- Oficina en Arlington
Cyber Security Specialist
Information Systems Security Officer (ISSO)
Apogee Research brings cutting-edge research into practice for the DoD community. We blend agility with rigor to develop new technologies and transition them into operational use. Founded in 2012, Apogee Research brings together cross-discipline teams to solve difficult and often deemed impossible problems across a range of different technical domains. At Apogee Research we work hard, we get things done, and we do it together.
Apogee Research is seeking an experienced, highly motivated, and organized Information System Security Officer (ISSO) with a demonstrated capability of working within executive-level DoD multi-level security environments.
The ISSO reports directly to the Sr. ISSM and provides comprehensive information systems security support. This position will be responsible for our systems security by ensuring that operational security is maintained for the assigned information systems. This position requires working knowledge of secure Government enterprise level information systems and networks, isolated standalone networks, security policies, technical security safeguards, and operational security measures.
The candidate must have a strong working knowledge of NIST SP 800-53 Rev 4/5, NIST SP 800-171, DoD STIG Overlays, and other USG IS/Security-related policies. The ISSO will interface daily with government personnel regarding system security and their requirements. The ISSO will review audit logs and vulnerability scans, prepare for inspections, support program events, manage system hardware and software baselines, prepare and submit system change requests, and perform other duties as assigned. This is an excellent opportunity for an energetic and experienced ISSO who is conscientious, detail-oriented, and enjoys working with a close-knit team. This position can be scoped to meet the capabilities of the right candidate with competitive compensation matched to the key responsibilities of the role.
This job requires final TOP SECRET security clearance. We will only accept candidates that currently have a final TOP SECRET security clearance. All applicants must be a US CITIZEN. This position is full-time, in-person and located in our Arlington, Virginia office.
Key Responsibilities
- Ensure users follow established information security policies and procedures to protect, operate, maintain, and dispose of systems and data in accordance with internal security policies and Department of Defense (DoD) regulations.
- Interpret, review, maintain information Systems Security Plans (SSPs), Security Control Traceability Matrix (SCTM), Risk Assessment Reports, Security Control Assessment Reports, and authorizations in accordance with DoD mandated policies.
- Participate in and support assessments of various classified and Controlled Unclassified Information networks.
- Troubleshoot user accounts and network issues, perform backups, assist with Assured File Transfers, ensure the integrity of security configurations, and the removal of decommissioned information systems.
- Identify information systems vulnerabilities, recommend and or implement countermeasures for controlled and secure network resources.
- Develop a comprehensive Risk Management Framework (RMF) package including SSPs, Enterprise Sub-System packages, Information Continuous Security Monitoring Plans, and Body of Evidence to support system authorization in coordination with Program Managers, Information Systems Security Manager, and Government Customer Security Control Accessors.
- Review and analyze system audit logs to identify anomalous activity and potential threats to controlled and secure network resources.
- Conduct and monitor cyber awareness and information systems training sessions for company employees.
- Perform security audits on all systems assigned to validate proper use.
- Ensure information systems documentation (i.e., training records, user agreements, system baseline, SSPs etc.) are kept current.
- Coordinate with program stakeholders, the ISSM, Contract Program Security Officer (CPSO)/Facility Security Officer (FSO) IT Manager and team members to define, implement and maintain an acceptable information systems security posture.
- Provide support to the ISSM in reporting, responding to, and investigating security violations and incidents.
- Participate in and support incident response drills and change configuration board.
- Develop and maintain a Plan of Action and Milestones (POA&M) for all security related vulnerabilities and provide recommendations to the ISSM on correcting vulnerabilities associated with required security controls.
Requirements for Position
- Must have active TS clearance and be SCI Eligible at time of appointment
- Bachelor’s Degree and 4+ years as an ISSO or system administrator (additional experience is considered in lieu of degree).
- Full-Time, In-Person.
- Have and maintain CompTIA Security+ or CompTIA CySA+.
- Experience with auditing information systems.
- Self-starter, highly motivated, able to multi-task and meet tight deadlines. A strong candidate must have the ability to work well under pressure and deal with changing priorities.
- Must have excellent work habits, including a willingness to work the hours necessary to get the job done.
- Excellent communication skills (oral and written), ability to work in a team environment, and must work well with others.
- Effective at problem-solving and proven ability to cope with conflict, stress and crisis situations.
Strongly Preferred
- Experience configuring Red Hat, other Linux distributions and Windows based operating systems to conform to selected Security Technical Implementation Guides.
- Knowledge and experience with technical and configuration standards relating to information system security; prefer experience configuring Windows Server operating systems, thin client architecture, system virtualization and other related peripherals.
- Experience with certification/authorization requirements as outlined in the NISPOM, RMF JISG, ICD 503, NIST SP 800-53 Rev 4/5, NIST SP 800-171, DoD STIG Overlays, and other USG IS/Security-related policies.
About Apogee Research
Apogee Research offers a comprehensive benefits package that includes health, dental, vision, life, and disability insurance, FSAs, paid vacation, sick leave, and paid holidays. Conveniently located in Arlington, VA, we are a short walking distance from the Ballston Metro station. We offer the choice of paid garage parking or a contribution towards a transit account.
Apogee Research, LLC is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, parental status, military service, or other non-merit factors