Jobs
>
Arlington

    Senior Information System Security Officer - Arlington, United States - Keen Logic

    Default job background
    Description

    Position: ISSO III
    KeenLogic is seeking to hire an Information System Security Officer (ISSO) to join our team at the Drug Enforcement Administration. The ISSO is the component official assigned by the Authorizing Official or other senior management to ensure the appropriate operational security posture is maintained for an information system or program. The ISSO also serves as the principal advisor to the Authorizing Official and Information System Owner on all matters (technical and otherwise) involving the security of the information system.
    The Cloud Information Systems Security Officer (ISSO) will work with government and industry customers to provide cyber security expertise for a Cloud Infrastructure (CI) program. The Cloud Information System Security Officer (ISSO) is responsible for the overall handling of information assurance expertise for a large, complex IT infrastructure program. Systems are deployed using a public cloud service provider(s) and/or on-premises cloud service provider to deliver advanced capabilities to the Federal government using IaaS, PaaS, and SaaS service models.

    This is a full-time position offering Fortune 500-level benefits, PTO, 401k, and Life Insurance, and monthly reimbursement for travel. This position follows a 3x2 schedule, 3 days a week onsite and 2 days of remote work. Core work hours are 9:00am-2:30pm, with core start times between 6:00-9:00am.Required Qualifications:

    • Active Secret clearance
    • Must be eligible for Top-Secret clearance
    • Master's degree from an accredited college or university or equivalent (documented formal training) in Information Technology, and 8 years overall experience with a minimum of 5 years of documented relevant work experience performing any combination of Information SPAA, Cybersecurity, System Administration, or Engineering
    • Education Substitution:
      • Any combination of certificates such as Microsoft's MCSE, or Cisco's CISM, CISA, CSSP, CCNA, CCDA, or CCNP, may be considered equivalent to 2 years of general experience/information technology experience
      • Certificates under the DoD IAM, IAT, IASAE, or CSSP Levels I, II or III may be considered equivalent to 2 years of information security experience
    • 5+ years of relevant experience as ISSO, Security Analyst, Security Engineer, DevSecOps Security, or Cloud Security Engineer/Analyst
    • Familiarity with program security responsibilities to include, but not limited to the NIST RMF, audit log reviews, system monitoring, SPAA processes, FISMA requirements, vulnerability & compliance scanning, continuous monitoring activities, security testing and evaluation, and security policies
    • Highly specialized knowledge and expertise in one or more vertical disciplines such as law enforcement, anti-terrorism, biological science, banking, transportation, or other such disciplines as required to define/establish the functional or business direction of an enterprise, agency, or inter-agency requirement
    Job Duties:
    • Create the Body of Evidence (BOE), Security Control Traceability Matrix (SCTM), and other cyber security program artifacts while working toward RMF-compliant security control inheritance
    • Apply knowledge of commercial and classified government cloud environments to strategize and conduct rigorous cyber security assessments on a developmental CI platform-as-a-service
    • Support CI assessment and authorization (A&A) events as the senior cyber security expert
    • Providing subject matter expertise and consulting on security related matters for enterprise information system and network architectures, access problems, and implementation of security policies and procedures
    • Ensuring secure access and protecting against unauthorized access, modification, or destruction of data
    • Demonstrating a familiarity with a variety of security concepts, practices, and procedures.
    • Performing a variety of tasks and working under general supervision
    • Oversees and manages day-to-day operation of Information Systems
    • Optimizes system operation and resource utilization and performs system capacity planning/analysis while maintaining the security posture
    • Performs system security analyses on client networks and systems; provides guidance, training, research, and recommendations on client networks and IS; performs security audits, evaluations, and risk assessments of complex operational systems and facilities and provides recommendations for remediating detected vulnerabilities; conduct security and internal control reviews of sensitive systems
    • Conducts specific technical reviews to support non-standard operational requirements and systems; design, develop, and maintain unique security tools and techniques for conducting security assessments; provide advanced technical computer and communications security assistance; provide expert assistance and recommendations in the field of Information Assurance and Cybersecurity
    • Conducts security assessments, security authorizations, and evaluations of applications and systems processing sensitive or classified information; develops requirements and specifications for reviewing and approving procurement requests, major systems development activities, telecommunications and teleprocessing hardware and software, and hardware and software encryption techniques on the basis of security concerns; and assesses technology to ensure that security vulnerabilities are identified and remediated
    • Develops and maintains IT security documentation, including system security plan, risk assessment, Plan of Action, and Milestones (POA&M), contingency plan, incident response plan, IT security policies and procedures, etc.
    • Assisting in the identification, implementation, and assessment of common controls.
    • Assisting in developing and updating the SSP, and coordinating with the Information System Owner, any changes to the information system and assessing the security impact of those changes.
    • Ensuring systems are operated, maintained, and disposed of in accordance with policies outlined in the approved security authorization package
    • Reporting all incidents
    • Monitoring system recovery processes and ensuring the proper restoration of information system security features
    • Performing annual assessments, at a minimum, on an annual basis to ensure compliance with DEA policy and standards
    • Serving as member of Configuration Control Board (CCB) to ensure configuration management for Cybersecurity-relevant software, hardware, and firmware is maintained and documented
    • Ensuring information system security requirements are addressed during all phases of an information systems lifecycle
    • Establishing audit trails, ensuring their review, and making them available (when required)
    • Retaining audit logs in accordance with DOJ and Component policies
    • Ensuring awareness and precautionary measures are exercised to prevent introduction and/or proliferation of malicious code
    • Evaluation of the assigned information systems' security control compliance with the federal requirements and the client's monitoring strategy
    • Management of emerging and defined risks associated with the administration and use of assigned information systems
    • Coordination with the client's Cybersecurity Unit to achieve and maintain the information systems' compliance and authorization to operate (ATO)
    • Generate and interpret documentation needed to address the items detailed within the JCAM
    • Work within a team environment to provide technically sound guidance in order to adhere to the cybersecurity industry best practices and the client's monitoring strategy
    • Analyze collected information to identify vulnerabilities and potential for exploitation and effectively present the results and guidance derived from scans to system owners or other leadership, as required
    • Effectively communicate orally and in writing to track and detail the demands, efforts, and shortcomings in meeting the goals of the client's information system monitoring strategy
    • Support the integration/testing, operations, and maintenance of systems security
    • Develops, updates, and maintains internal Standard Operating Procedures for all internal assigned functions
    • Aligns business processes and information technology strategy with the conditions and circumstances of the functional environment and establishes effective performance measures
    • Coordination with the TC Cybersecurity Services Section to achieve and maintain the information systems' compliance and authorization to operate (ATO)
    Preferred Qualifications:
    • Ability to understand the technical impact of what a vulnerability means and explaining to a system owner, administrator, ISSM or CISO. This is necessary to portray the technical impact and risk associated with a vulnerability (CVE, patch, etc.) and translate into a POAM and Risk Based decision recommendation for the CO/AO to action on and make an informed decision. In essence not just proficiency in the (6) steps of RMF from a paperwork or process perspective
    • Understanding of how to use or familiarity with the SCAP tool and STIG viewer.
    • Understanding RMF Risk Management Framework Guide for information systems and organizations
    • Being able to analyze, implement and assess security controls from and operational, administrative, technical standpoint NIST REV 5 Security & Privacy Controls
    • Understanding the CIA triangle and processing, storing, and transmitting data in an environment
    • Cloud experience dealing with Cloud Architectures/Platforms and applications
    • Certs such as:
      • Microsoft Certified: Azure Administrator Associate
      • AWS Certified SysOps Administrator
      • AWS Certified Solutions Architect - Associate
      • AWS Certified Developer - Associate
      • CompTIA Cloud+
      • Certified Cloud Security Professional (CCSP)
      • AWS Certified Solutions Architect - Professional
      • Certificate of Cloud Security Knowledge (CCSK)
      • CCNA Cloud (Cisco)
      • CCNP Cloud (Cisco)
      • Fed Ramp Experience
      • AWS Solutions Architect - (Associate/Professional)
      • DevSecOps Engineer - (Associate/Professional)
      • AWS Machine Learning - (Specialty)
      • AWS Cloud Practitioner - (Foundational)
      • AWS Security (Specialty)
      • Azure Solutions Architect
      • Azure Certified Security or Network Engineer (Associate)
      • Azure AI fundamentals
      • Azure Data Fundamentals
      • Azure Data Scientist or Engineer Associate
      • Azure DevSecOps Engineer Expert

  • Security Firm

    Security Officer

    3 weeks ago


    Security Firm Arlington, United States Part time

    We are seeking a Security Officer to become an integral part of our team. The selected individual will patrol and secure assigned premises as well as identify risks to staff and patrons. · **Responsibilities**: · - Monitor premises to prevent theft, violence, or infractions of ru ...

  • HII

    Security Officer

    3 weeks ago


    HII Arlington, United States

    Requisition Number: 18976 · Required Travel: 0 - 10% · Employment Type: Full Time/Salaried/Exempt · Security Clearance: TS/SCI · Level of Experience: Mid HI · This opportunity resides with **Command, Control, Communications, Computers, Cyber, Intelligence, Surveillance and Reconn ...

  • George Mason University

    Security Officer

    23 hours ago


    George Mason University Arlington, United States

    · Arlington, VA · Fairfax, VA · Manassas, VA · Show More · Part-Time / Hourly Wage · **Opening on**: Jun 1 2024 · **Department**: Department of Police and Public Safety (Mason Police) · **Classification**: GMU Worker · **Job Category**: Part-Time / Hourly Wage · **Job Type**: Pa ...

  • George Mason University

    Security Officer

    3 hours ago


    George Mason University Arlington, United States

    **Department**:Department of Police and Public Safety (Mason Police) · **Classification**: GMU Worker · **Job Category**:Part-Time / Hourly Wage · **Job Type**: Part-Time · **Work Schedule**:Days and Nights hours/week); Call-Back Hours: Outside of normal working hours · **Locatio ...

  • MaxSent

    Security Officer

    4 days ago


    MaxSent Arlington, United States

    **Now Hiring Security Officers in Arlington, VA Night shift opportunity available.** · **DCJS License and Driver's License are required for this position.** · The Security Officer is accountable for the safety and security of the facilities they protect. Our security officers. · ...

  • ICS Security Services

    Security Officer

    3 days ago


    ICS Security Services Arlington, United States

    **Position Overview** · ICS Security has immediate openings for Unarmed Security officers in the Arlington, VA area. We have full and part time overnight shifts available. The bulk of our sites include grocery stores, shopping centers, warehouses, communities, and more. We are se ...

  • Prominence Security Inc.

    Security Officer

    2 weeks ago


    Prominence Security Inc. Washington, United States

    _**Who We Are**_: · Prominence Security is a multi-state protective services agency, with officers in MD, SC, TX, and DC. Our mission is to improve the industry with professional, pro-active officers who are ready, willing, and able to learn and grow, and become the best in the b ...

  • NMR Consulting

    Security Officer

    2 weeks ago


    NMR Consulting Washington, United States

    Position: Security Operations Officer · Location: Washington DC · Clearance: Secret · NMR Consulting is looking for staff members to support our government client located in Washington DC. This will utilize a 24/7-365 model with 4 employees during the day, 4 employees in the afte ...

  • DC MD VA Security Service

    Security Officer

    2 weeks ago


    DC MD VA Security Service Washington, United States

    FULL TIME AND PART TIME UNARMED SECURITY OFFICERS NEEDED - S/O · Compensation: Starting at 18.00$ per hour; DOE · Employment type**:CONTRACT - 1099** · We are seeking reliable and experienced Unarmed Security Officers in Washington DC area for Hotel security. Selected individuals ...

  • Security Firm

    Security Officer

    2 weeks ago


    Security Firm Washington, United States

    We are seeking a Security Officer to become an integral part of our team. The selected individual will patrol and secure assigned premises as well as identify risks to staff and patrons. · **Responsibilities**: · - Monitor premises to prevent theft, violence, or infractions of ru ...

  • Security Firm

    Security Officer

    1 week ago


    Security Firm Washington, United States

    We are seeking a Security Officer to become an integral part of our team. The selected individual will patrol and secure assigned premises as well as identify risks to staff and patrons. · **Responsibilities**: · - Monitor premises to prevent theft, violence, or infractions of ru ...

  • Night Owl Protective Services

    Security Officer

    3 weeks ago


    Night Owl Protective Services Washington, United States Part time

    Job Summary: · We are currently seeking a dedicated and reliable Security Officer to join our team. As a Security Officer, you will be responsible for maintaining a safe and secure environment for our clients, employees, and visitors. Your primary duty will be to monitor and patr ...

  • Hyatt Regency Washington on Capitol Hill

    Security Officer

    1 week ago


    Hyatt Regency Washington on Capitol Hill Washington, United States

    Summary · - Join us for this incredible opportunity at Hyatt Regency Washington, just steps away from the U.S. Capitol building. Not only will you be part of this great team, you will also be part of a company that is one of Fortune's 100 Best Companies to Work For, for several y ...

  • District of Columbia Housing Authority

    Security Officer

    3 weeks ago


    District of Columbia Housing Authority Washington, United States

    **Essential Duties and Responsibilities** · - Serves at fixed posts enforcing pertinent rules, policies and procedures governing building safety and access; · - Monitors all safety devices such as fire alarm systems, elevators, closed circuit television systems, and telephone and ...

  • Washington Protective Service LLC

    Security Officer

    1 week ago


    Washington Protective Service LLC Washington, United States

    Job Overview: · We are seeking a highly skilled and motivated Security Officer to join our team. As a Security Officer, you will be responsible for maintaining a safe and secure environment for our employees, customers, and visitors. Your primary duties will include surveillance, ...

  • DMAC Security

    Security Officer

    2 weeks ago


    DMAC Security Washington, United States Full time

    **Attention: Armed and Unarmed Officers: SO, SPO and DCJS** · DMAC Security is actively seeking a skilled individual to monitor and detect criminal activities, swiftly alerting the appropriate authorities. Your keen observation and prompt reactions play a critical role in upholdi ...

  • Next Generation Recruitment and Staffing Agency

    Security Officer-

    1 week ago


    Next Generation Recruitment and Staffing Agency Washington, United States

    We are looking for a professional Security Guard for our client located in the Washington, DC to protect our premises, assets and personnel. You will maintain a high visibility presence and prevent all illegal or inappropriate actions. The goal is to detect, deter, observe and re ...

  • 1st Class Security Services

    Security Officer

    1 week ago


    1st Class Security Services Washington, United States Part time

    **General Responsibilities and Duties-Unarmed & Armed** · - Protect Life & Property · - **MUST HAVE EXECELLENT WORK ATTENDANCE and BE ON TIME.**: · - **LOOK PROFESSIONAL AT ALL TIMES**: · - **PROVIDE EXECELLENT CUSTOMER SERVICE AND HOSPITALITY.**: · - **If working a Front Desk, t ...

  • Interactive Security Solutions

    Security Officer

    1 week ago


    Interactive Security Solutions Washington, United States

    Duties: · Observes and reports activities and incidents at an assigned client site, providing for the security and safety of client property and personnel. · Makes periodic patrols to check for irregularities and to inspect protection devices and fire control equipment. · Preserv ...


  • DC MD VA Security Service Arlington, United States

    WEEKEND; PART TIME AND FULL TIME UNARMED SECURITY OFFICERS NEEDED FOR FRIDAYS AND SATURDAYS · Compensation: Starting at 18.00$ per hour; DOE · Employment type**:CONTRACT - 1099** · We are seeking reliable and experienced Unarmed Security Officers in Arlington, VA area for Hotel s ...