The One 23 Group · 1 month ago
Information System Security Officer II - Mid-Level
The One 23 Group is dedicated to excellence in government services, serving clients in the Department of Defense and federal sectors. They are seeking an Information System Security Officer II to provide cyber security management and oversight for maintaining compliance with federal standards.
Information Technology & Services
Responsibilities
Applies specialized knowledge of sensitive system Cybersecurity requirements and Privacy Act requirements
Applies specialized knowledge and experience with the implementation of the NIST Special Publication (SP) 800 family of publications, particularly those associated with NIST’s Risk Management Framework and the Federal Risk and Authorization Management Program (FedRAMP)
Applies specialized knowledge and experience with evaluating system, network, or infrastructure security controls against requirements such as FISMA, Federal Information Processing Standards (FIPS, and NIST guidelines
Applies knowledge of DHS Information Security Policy Directives and Handbooks is preferred
Applies knowledge and experience with standard IA concepts, practices, and procedures. Working independently to solve problems quickly and completely
Applies specialized experience with three (3) of the four (4) following criteria is required
Vulnerability scanning execution, assessment, and analysis
Operating system and network knowledge (i.e., Local Area Networks [LAN] and Wide Area Networks [WAN])
Information security and assurance principles (e.g., Defense-in-depth) and associated supporting technologies
Application security, database security, and network security
Possess ability to assess and weigh current and evolving security threats in an operational environment
Possess good oral and written communication skills
Team player who can collaborate with multiple stakeholders to arrive at the best solution
Qualification
Required
Applies specialized knowledge of sensitive system Cybersecurity requirements and Privacy Act requirements
Applies specialized knowledge and experience with the implementation of the NIST Special Publication (SP) 800 family of publications, particularly those associated with NIST's Risk Management Framework and the Federal Risk and Authorization Management Program (FedRAMP)
Applies specialized knowledge and experience with evaluating system, network, or infrastructure security controls against requirements such as FISMA, Federal Information Processing Standards (FIPS), and NIST guidelines
Applies knowledge and experience with standard IA concepts, practices, and procedures. Working independently to solve problems quickly and completely
Applies specialized experience with three (3) of the four (4) following criteria is required: Vulnerability scanning execution, assessment, and analysis; Operating system and network knowledge (i.e., Local Area Networks [LAN] and Wide Area Networks [WAN]); Information security and assurance principles (e.g., Defense-in-depth) and associated supporting technologies; Application security, database security, and network security
Possess ability to assess and weigh current and evolving security threats in an operational environment
Possess good oral and written communication skills
Team player who can collaborate with multiple stakeholders to arrive at the best solution
Master's degree and 4 years of Cybersecurity & Federal Information Security Modernization Act (FISMA) experience, or a Bachelor's Degree and 5 years of Cybersecurity & FISMA experience or a total of 7 years of Cybersecurity & Federal Information Security Modernization Act (FISMA) experience
Must be a US citizen with ability to obtain/maintain a Top Secret clearance
Possesses one (1) of the following professional security certifications or can be obtained within six (6) months of hire: Certified Information System Security Professional (CISSP), CompTIA Advanced Security Practitioner (CASP), Certified Information Systems Auditor (CISA), Certified Ethical Hacker (CEH), Systems Security Certified Practitioner (SSCP), Certified Information Security Manager (CISM), GIAC Information Security Professional (GISP), GIAC Security Leadership (GSLC)
Preferred
Applies knowledge of DHS Information Security Policy Directives and Handbooks is preferred
Company
The One 23 Group
Defining Excellence in Government Service We are The One 23 Group – your strategic partner in navigating the complexities of government operations.
Funding
Current Stage
Growth StageCompany data provided by crunchbase