Dhara Consulting Group - Arlington, VA

posted 4 days ago

Full-time - Mid Level
Arlington, VA
Professional, Scientific, and Technical Services

About the position

Maximus is seeking a highly skilled Senior Information Systems Security Officer (ISSO) to ensure the security and integrity of information systems in Arlington, VA. The role involves implementing and maintaining robust security measures, developing security policies, conducting audits, and staying updated on cybersecurity threats.

Responsibilities

  • Verify data security access controls based on the Joint Special Access Program Implementation Guide (JSIG).
  • Implement media control procedures and continuously monitor for compliance.
  • Investigate suspected cybersecurity incidents in accordance with Departmental directives and applicable Risk Management Implementation Plans (RMIPs).
  • Apply and maintain required confidentiality controls and processes.
  • Execute media sanitization procedures.
  • Protect Controlled Unclassified Information (CUI), Special Access Programs (SAP), Sensitive Compartmented Information (SCI), and Personally Identifiable Information (PII).
  • Create and manage the Body of Evidence (BOE).
  • Maintain privilege access control logs.
  • Create and manage Interconnection Security Agreements (ISA).
  • Ensure JSIG compliance of applications within multiple accredited boundaries.
  • Track vulnerabilities by creating Plan of Action and Milestones (POA&M).
  • Manage the configuration and documentation in the program's instance of Enterprise Mission Assurance Support Services (eMASS).
  • Maintain and manage continuous monitoring of DoD Security Technical Implementation Guide (STIG) compliance.
  • Enforce continuous monitoring strategies using tools such as Splunk, Oracle Cloud Control, ACAS reports, and scripts for database/application user/privilege review.
  • Conduct code reviews for database and application development and configuration management activities.
  • Analyze events or test results and prepare POA&Ms.
  • Integrate project management, configuration management, continuous monitoring, and POA&M processes.
  • Prepare reports identifying the results of compliance and performance tests.
  • Develop and implement information assurance/security standards and procedures.
  • Coordinate, develop, and evaluate security programs for the organization.
  • Review information assurance/security solutions to support customer requirements.
  • Identify, report, and resolve security violations.
  • Establish and satisfy information assurance and security requirements based on user, policy, regulatory, and resource demands.
  • Perform vulnerability/risk analysis of computer systems and applications during all phases of the system development life cycle.

Requirements

  • Active TS/SCI clearance with the ability to obtain CI Poly.
  • Bachelor's degree in a relevant field (e.g., Computer Science, Information Systems Management, Engineering) or 4 years of relevant work experience in lieu of a degree.
  • 8+ years of experience in cybersecurity or a related field.
  • 2+ years of experience with operating systems (e.g., Windows, Linux).
  • 2+ years of cybersecurity experience in the Department of Defense (DoD) or Intelligence community.
  • 2+ years of experience as a Cyber or Security Analyst for federal information systems.
  • 2+ years of experience with the Federal Risk and Authorization Management Program (FedRAMP).

Nice-to-haves

  • IAT level III certification (CASP+ CE, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH) or ability to obtain certification within six months of hiring.
  • Experience with Special Access Programs (SAPs) and Intelligence Community (IC).
  • Strong knowledge of cybersecurity principles, tools, and techniques.
  • Familiarity with cloud technologies, security practices, and agile methodologies.

Benefits

  • Disability insurance
  • Health insurance
  • Paid holidays
  • Paid time off
  • Retirement plan
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service