Vacancy expired!
Description
Job Description:
Leidos Enterprise & Cyber Solutions Defense group currently has an opening for an Information Systems Security Officer (ISSO) on the GSM-O program in support of the Joint Service Provider (JSP). The position will have a direct impact maintaining and improving the security posture of a primary IT and cybersecurity service provider to the Pentagon and DoD 4th Estate across the National Capital Region. The ISSO will provide support at one of three primary locations in Arlington, Alexandria, and Crystal City.
Clearance: An active Secret security clearance is required to start.
Certification: You must hold a current DoD 8570 IAT II Certification to qualify.
Primary Responsibilities:
Under the direction of the Government Information System Security Manager (ISSM) the ISSO specific responsibilities will include:
Establish and implement security procedures and practices in support of Customer goals and current DoD regulations.
Develop and update assessment and authorization documentation (Body of Evidence) for management and continuous monitoring of information systems.
Use knowledge of the Information System (IS) and demonstrate understanding of established Information Assurance requirements validate security policies and procedures outlined in the System Security Plan (SSP), customer policies & regulations, and ensure local policies are followed.
Initiate the authorization or re-authorization efforts and process for new or expiring systems and coordinate, schedule, and attend required meetings
Serve as the System ISSO for various JSP systems
Take corrective action to resolve problems identified and ensure systems are operated, maintained, and disposed of in accordance with established policies and procedures.
Perform security audits IAW established procedures. Develop process for the management, review, and retention of security audit data. Make decisions and implement corrective action as required to resolve audit discrepancies.
Author and review IS security-related documentation and submit to eMASS.
Provide critical thinking to ensure system security requirements are addressed during all phases of the System Development Life Cycle (SDLC).
Establish system specific recovery processes to ensure security features and procedures are properly protected and restored.
Conduct ongoing security reviews and tests of systems to verify security features and controls are functional and effective. Take corrective action to resolve identified vulnerabilities.
Provide security engineering review of proposed changes or additions to the IS (including hardware, software, or connectivity), and advise the ISSM of the security relevance.
Create and maintain processes and procedures for use by members of the ISSO team
Support the ISSO Team Lead in conducting lessons learned activities to improve the overall productivity and efficiency of the ISSO team
Required Skills: