Information System Security Officer - Hanscom Air Force Base, MA, United States - IC-CAP

    IC-CAP
    IC-CAP Hanscom Air Force Base, MA, United States

    2 weeks ago

    Default job background
    Technology / Internet
    Description
    Information System Security Officer (ISSO) 2:

    Position Description:
    The ISSO is responsible for ensuring the appropriate operational security posture is maintained for an information system and as such, works in close collaboration with the ISSM and ISO
    The position shall have the detailed knowledge and expertise required to manage the security aspects of an information system and, in many organizations, is assigned responsibility for the day-to-day security operations of a system
    This also will include physical and environmental protection, personnel security, incident handling, and security training and awareness
    It will be required to work in close coordination with the ISSM and ISO in monitoring the information system(s) and its environment of operation to include developing and updating the authorization documentation, implementing configuration management across authorization boundaries
    This will include assessing the security impact of those changes and making recommendation to the ISSM
    The primary function is working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense (OSD) and Military Compartments efforts
    The position will provide "day-to-day" support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities

    Performance shall include:

    • Assist the ISSM in meeting their duties and responsibilities
    • Prepare, review, and update authorization packages
    • Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media
    • Notify ISSM when changes occur that might affect the authorization determination of the information system(s)
    • Conduct periodic reviews of information systems to ensure compliance with the security authorization package
    • Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
    • Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
    • Ensure all IS security-related documentation is current and accessible to properly authorized individuals
    • Ensure audit records are collected, reviewed, and documented (to include any anomalies)
    • Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties
    • Execute the cyber security portion of the self-inspection, to include provide security coordination and review of all system assessment plans
    • Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them
    • Prepare reports on the status of security safeguards applied to computer systems
    • Perform ISSO duties in support of in-house and external customers
    • Conduct security impact analysis activities and provide to the ISSM on all configuration management changes to the authorization boundaries

    Education and Experience:

    • Bachelor's degree
    • MANDATORY: 2-5 years related experience, especially in developing RMF packages or bodies of evidence; Prior performance in roles such as System/Network Administrator or ISSO; SAP experience; TRAINING:
    • DoD M IAM Level II (in lieu of IAT Level II)

    Combatting Trafficking in Persons (CTIP) Security Clearance:

    • DoD Approved Clearance and Poly