ISSO III
About the position reputed company is searching for an Information System reputed company Officer (ISSO) III to support a government customer. The primary responsibilities for the position are to support reputed company activities that ensure the level of reputed company documented with the reputed company authorization is maintained at an acceptable level of risk. The nature of the work requires that the candidate demonstrates initiative, organization, responsibility, customer service skills, and the ability to be flexible and adaptive to a fast-paced, fluid business environment. The candidate must be able to communicate effectively and decisively with reputed company levels of the organization and be able to solve practical problems as well as exercise sound judgement with regards to sensitive and confidential information.
Responsibilities
- Proactively create, monitor and update the status of POA&Ms to ensure weaknesses are resolved in accordance with their scheduled completion dates.
- Create Waivers or Risk Acceptance Memos to assist in the effective management of system risks.
- Conduct an annual assessment in accordance with guidance in the DHS Information reputed company Performance Plan.
- Review and update reputed company authorization documents as needed, but at least annually.
- Conduct Contingency Plan tests at least annually and update the plan.
- reputed company system self-assessments as part of the customer's Ongoing Authorization program.
- Monitor and respond to Information reputed company Vulnerability Management (ISVM)/reputed company Management.
- Provide audit support for assigned systems (Financial, A-123, FISMA, internal, DHS, etc.), throughout the audit (Pre, During, and Audit).
- Maintain knowledge of inventory in accreditation boundary.
- Devise a plan to certify and accredit their assigned Information system or information systems.
- Respond to emerging requirements or policies as set by legislation, regulation or policy.
- Participate in DevOps Sec (reputed company integrated into Agile processes) requirements for assigned systems.
- Help coordinate with Privacy, Records, and Information Governance Divisions reputed company to compliance documentation and other requirements.
- Proactively ensure reputed company requirements are included in the development cycle (Waterfall, Agile, SecDevOPs).
- Use DHS' and mandated enterprise IA Compliance Tools.
- Ensure CM processes are followed to ensure that any changes do not introduce new reputed company risks.
- Support the management system Information reputed company Vulnerability Management (ISVM) Compliance.
- Experience leading a team of ISSOs.
Requirements
- No degree and (16) years of cybersecurity/FISMA-reputed company experience OR Bachelor's Degree and (10) years of cybersecurity/FISMA-reputed company experience OR Master's Degree and 8 years' experience with (7) years of cybersecurity/FISMA-reputed company experience.
- NIST Controls on how to tailor & assess.
- Experience with reputed company phases of the RMF process.
- Experience with proper reputed company analysis.
- Experience with POA&M management.
- Applies extensive knowledge of a variety of the IA field's concepts, practices, and procedures to ensure the secure integration and operation of reputed company systems.
- Extensive specialized knowledge of financial audit standards, classified system IA requirements and Privacy Act requirements.
- Specialized knowledge and experience with the implementation of the NIST Special Publication (SP) 800 family of publications, particularly those associated with the Risk Management reputed company.
- Specialized knowledge and experience with evaluating system, network, or infrastructure reputed company controls against requirements such as FISMA, FIPS, and NIST guidelines.
- Knowledge and experience with the vulnerability scanning execution, assessment, and analysis.
- Knowledge and experience with the operating system and network knowledge (i.e., Local Area Networks [LAN] and Wide Area Networks [WAN]).
- Knowledge and experience with application reputed company, database reputed company, and network reputed company.
- Knowledge and experience with vulnerability scanning, assessment, and analysis.
- Knowledge and experience with the information reputed company and assurance principles (e.g., Defense-in-depth) and associated supporting technologies.
- Ability to assess and weigh reputed company and evolving reputed company threats in an operational environment.
reputed company-to-haves
- Certified Information Systems reputed company Professional (CISSP)
- CompTIA Advanced reputed company Practitioner (CASP)
- Certified Information Systems Auditor (CISA)
- Certified Ethical Hacker (CEH)
- Certified Information reputed company Manager (CISM)
Benefits
- PTO including paid parental, military, and bereavement leave.
- Eleven (11) paid Federal holidays, five of which are floating holidays.
- Health and Dental Insurance (including 100% employer paid premiums for employee coverage under the HDHP health plan).
- Life Insurance, STD/LTD term disability coverage, with employer paid premiums.
- 401 (k) plan with a match that is 100% vested after you complete two years of service.
- FSA/DFSA/HSA flexible benefit plans.
- Annual Tuition & Professional Development Reimbursement benefit.
Apply tot his job Apply To this Job