Senior Information Systems Security Officer ISSO

Nissint Technologies, LLC

Senior Information Systems Security Officer ISSO

Hanover, MD
Full Time
Paid
  • Responsibilities

    Benefits:

    Company Paid Health Insurance

    Company Funded HSA

    Flexible schedule

    Paid time off

    Signing bonus

    Training & development

    Tuition assistance

    At Nissint Technologies, you'll work on high-impact, cutting-edge projects with a skilled team of developers, delivering custom software solutions to the Intelligence Community. We offer a flexible, supportive environment with competitive compensation, professional growth opportunities, and a strong emphasis on work-life balance, ensuring you can thrive both personally and professionally.

    This job presents an exciting opportunity to collaborate with a group of talented professionals dedicated to providing critical infrastructure and advanced capabilities that enable secure, mission-critical operations across multiple agencies and domains. It encompasses a wide range of services designed to ensure seamless communication, robust cybersecurity, and efficient collaboration at various levels. Your role will be pivotal in safeguarding sensitive information and maintaining operational resilience against evolving cyber threats, and will focus on cross-domain collaboration while fostering coordinated efforts to protect national interests and execute intelligence missions effectively.

    Responsibilities

    Prepare System Security Plans and assist with obtaining Authorizations to Operate

    Develop, review, and incorporate key risk-management accreditation artifacts such as system architecture, risk assessments, plan-of-action, data flows, hardware, and software lists.

    Collaborate with Information Systems Security Managers and Designated Accreditation Authorities to ensure systems are properly accredited and maintained.

    Ensure all package submissions meet necessary approval standards

    Implement continuous monitoring techniques to evaluate and maintain the system's security posture.

    Oversee the implementation of software patches and updates to maintain a strong security stance.

    Create tasking for developers and system administrators regarding necessary changes and patching activities.

    Enforce and implement information systems security policies, standards, and methodologies.

    Utilize vulnerability scanning tools to identify and document compliance issues.

    Review Audit Logs weekly to monitor system activity and ensure security compliance.

    Perform regular data transfers between specified locations.

    Maintain and report on the current status of assessments, authorizations, and any associated issues.

    Understand the privileged access process and support personnel with new requests and extensions.

    Requirements

    10 years of ISSO experience

    One of the following security baseline certifications:

    CAP, CND, Cloud+, GSLC, Security+ CE, HCISPP

    Experience with ICD 503/NIST 800-53 certification and accreditation process

    Experience with The Risk Management Framework

    Experience with Developing and maintaining SSPs

    Experience with IAVA review and handling

    Experience with Interpreting Security Scan results

    Experience with Interfacing with System Administrators and Software Engineers

    Experience with Task tracking systems

    Understanding of Public Key Infrastructure-based authentication

    Understanding of A variety of security policies, especially within the IC

    Understanding of fundamentals of technical security risk assessment

    Understanding of Understands how to perform analysis of alternatives

    Knowledge of current security tools

    Knowledge of Hardware/software security implementation

    Knowledge of Communication protocols (HTTPS, JMS)

    Knowledge of Encryption techniques/tools (PKI, TLS)

    Able to clearly communicate ideas and status updates to management and other stakeholders