Sr ISSO with Security Clearance

Washington, Washington DC

Salary Details: $145000.00 - 180000.00 a year

MicroSys LLC
Apply for this Job
7500 Iron Bar Lane Suite 205 Gainesville, Virginia 20155 INFORMATION SYSTEMS SECURITY OFFICER, SR. (ISSO, SR.) Job Description SECURITY CLEARANCE: Active Top Secret with ability to obtain TS/SCI. LOCATION: Washington, D.C.
The primary location for performance of this task order will be at Government facilities (CONUS) in
the Washington, D.C. (National Capital Region) over the life of this TO. However, with prior written
acknowledgement and agreement this may include teleworking in support of the FBI mission when
appropriate. COMPENSATION RANGE: $145,000 - $180,000.
Final compensation will be determined, but not limited to, through a holistic view of the individual
taking into account experience, expertise, education, certifications, ability to work in a team
environment, customer interface capabilities, etc HOURS OF OPERATION:
You will be required to perform the services specified in this task order between the operating
hours of 6:00 AM and 6:00 PM (ET) Monday through Friday except on Federal holidays or when
the Government facility is closed. PROGRAM DESCRIPTION:
MicroSys is providing Information Security as a Service (ISaaS) to the
Department of Justice (DOJ), Federal Bureau of Investigation (FBI). The scope consists of the
following areas: 1) Information Systems Security Engineering; 2) Information Systems Security
Management; and 3) Information Systems Security Maintenance. As part of that mission, the OCIO
provides cybersecurity strategy, training and services to the FBI enterprise. TASKS:
Information Systems Operations:
Services to support IS Security performed by the Information System Security Officer (ISSO) at a
minimum, shall consist of to the following activities:
• Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for each IS
• Provide liaison support between the system owner and other IS security personnel
• Ensure that selected security controls are implemented and operating as intended during all phases of the IS lifecycle
• Ensure that system security documentation is developed, maintained, reviewed, and updated on a continuous basis Your Trusted Technology Partner Telephone: Facsimile: , 7500 Iron Bar Lane Suite 205 Gainesville, Virginia 20155
• Conduct required IS vulnerability scans according to risk assessment parameters.
• Develop Plan of Action and Milestones (POAMs) in response to reported security vulnerabilities
• Manage the risks to ISs and other FBI assets by coordinating appropriate correction or mitigation actions, and oversee and track the timely completion of (POAMs)
• Coordinate system owner concurrence for correction or mitigation actions
• Monitor security controls for FBI ISs to maintain security Authorized To Operate (ATO)
• Upload all security control evidence to the Governance, Risk, and Compliance (GRC) application to support security control implementation during the monitoring phase
• Ensure that changes to an FBI IS, its environment, and/or operational needs that may affect the authorization status are reported to the system owner and IS Security Manager (ISSM)
• Ensure the removal and retirement of ISs being decommissioned in coordination with the system owner, ISSM, and ISSR JOB DESCRIPTION:
ISSO, Sr
Responsibilities:
• Knowledgeable with Systems Development Lifecycle (SDLC) methodologies and continuous monitoring activities
• Extensive experience analyzing information technology and system risk in complex environments and articulating results (verbal/reports) to all levels of management.
• Demonstrated experience conducting information system security controls assessments (SCAs) and appling standard auditing techniques during system security controls assessments, including the proper interpretation of the control requirements, determining if the artifacts provided are sufficient, and recommending remedial actions to the customer to ensure compliance
• Demonstrated experience writing information system security documentation (SSPs, POA&Ms, PTAs, PIAs, CMPs, CPs and IRPs).
• Extensive knowledge and experience with information security standards, policies and practices - NIST (800-53 rev4), FISCAM , FISMA, DOD, DCID, FBI, etc.
• Ability to research and address information security issues as required, being an authority on the subject.
• Proven ability to multi-task and deliver on-time with the highest quality
• Must have excellent written communication skills as the candidate's job will include written interaction with senior- level executives.
• Well versed with using vulnerability assessment tools (NESSUS, AppDetective, etc.) and analyzing the results generated from these assessments. Minimum/General Experience: Your Trusted Technology Partner Telephone: Facsimile: , 7500 Iron Bar Lane Suite 205 Gainesville, Virginia 20155
• B.S. degree required (B.S. degree may be substituted for 4 years of work experience, preferably in IT) plus 5 years of IT Security related experience (with min. 2 years of FISMA experience).
• 7+ years of experience serving as an ISSO at a cleared facility.
• 9+ years of professional experience in cybersecurity or computer science related field.
• 7+ years of experience directly performing Assessments and Authorizations, knowledge of specific NIST guidelines including FIPS-199 and Special Publications 800-53, 800-18, 800- 30, 800-37, 800-60.
• Familiarity with the use and operation of security tools including Tenable Nessus and/or Security Center, IBM Guardium, HP WebInspect, Network Mapper (NMAP), and/or similar applications.
• Hold At least one of the following certifications: o Certified Information Systems Security Professional (CISSP), or o CISM or o Global Information Security Professional (GISP), or o the CompTIA Advanced Security Practitioner (CASP) or o other certifications exemplifying skill sets such as those described in DoD Instruction 8570.1 Information Assurance Management (IAM) Level III proficiency o OR candidates must be able to obtain within 6 months of starting on a contract.
• Knowledge of information security engineering, design concepts and principles.
• Ability to handle stress and work well under pressure, Ability to use MS Office, Ability to use PC, Analytical and Critical Thinking Skills, Interpersonal and People Skills, Listening Skills, Multi-tasking Ability, Oral and Written Communication Skills
• Education: A Bachelor's and advanced degree in Computer Science, Cybersecurity, or other cyber discipline is preferred; plus minimum 7 years' experience, or equivalent education/experience. OPPORTUNITY
This is a tremendous opportunity for experienced Cyber Security Engineers to further their hands
on technical skills in full life cycle security engineering in a highly technical environment using
excellent state of the art technologies. This program is of significant size, scope, and complexity
that will allow the selected individual to expand and grow their career. THE COMPANY
Founded in 2002, MicroSys is "Golden Rule" driven Federal Cyber Security
and Systems Engineering 8(m) EDWOSB headquartered in Gainesville, Virginia. We integrate
people, processes, and technology to delivery value driven IT solutions to our customers
nationwide. Our focus is enabling the United States Government, specifically focused in the
Intelligence Community; Homeland Security & Law Enforcement; and Armed Forces, to meet their
mission-critical objectives through the use of highly advanced and cost-effective technology
solutions. Your Trusted Technology Partner Telephone: Facsimile: , 7500 Iron Bar Lane Suite 205 Gainesville, Virginia 20155
At MicroSys, we value our employees. So much so we developed an entire methodology around
helping our employees grow themselves and their careers (MicroSys Employee Growth Strategy or
MEGS). Taking great care of each employee is highly important at MicroSys and it's why we have
a tremendously high retention rate. If you're tired of being just another number and want to work for a company that truly watches out
for its employees on an individually basis then strongly consider MicroSys. MicroSys provides a very thorough benefits program, which includes the following: Medical/Health Insurance Vision Insurance Dental Insurance Life Insurance Life and AD&D Insurance Short-Term Disability Insurance Long-Term Disability Insurance Retirement Plan 529-College Savings Program Paid Time Off (PTO) - o Years 1-3 15 days (120 hours) per calendar year o Years 4-7 20 days (160 hours) per calendar year o Years 7+ 25 days (200 hours) per calendar year Paid Holidays Parking/Metro Reimbursement Direct Deposit Section 125 Employee Bonus Program Employee Referral Bonus Your Trusted Technology Partner Telephone: Facsimile:
Date Posted: 18 May 2024
Apply for this Job