DNI (Delaware Nation Industries) · 2 months ago
Information Systems Security Officer - 201810
Delaware Nation Industries is collaborating with the Oklahoma City Air Logistics Complex to provide on-site cybersecurity support services. The Information Systems Security Officer will maintain an Authority to Operate for all systems and applications, ensuring compliance with NIST Risk Management Framework and conducting security assessments and documentation.
Business DevelopmentConsultingInformation ServicesInformation TechnologySoftware
Responsibilities
Document and maintain controls, appendices, and document attachments under NIST SP 800-53 Rev. 4 & 5 for all DSS and IDM systems and sub-systems
Document and maintain inheritable common controls catalog for to document controls offered to applications or systems hosted on multi-cloud platform
Ensure common controls are available for all hosted systems to inherit and maintain
Assist in the development and maintenance of System Security Plans (SSP) and security controls assessments, and organizational policy
Update the SSP and server documentation and provide the ISSO to update security artifacts and the baseline documents
Update POA&Ms throughout the POA&M lifecycle till closure for all system controls
Provides high-level functional systems analysis, design, integration, documentation, and implementation advice on moderately complex cybersecurity problems that require an appropriate level of knowledge of the subject matter for effective implementation
Serves as the IT security POC for assigned systems to ensure information systems comply with applicable policies
Ensures security activities are implemented throughout the entire SDLC, including during system changes and modifications
Provides audit support by developing the appropriate responses to audit questionnaires and remediation recommendations of audit report findings
Coordinates with appropriate stakeholders and system owners to ensure all NIST 800-53 controls are properly implemented and assessed during the steps of the ATO lifecycle
Ability to conduct an analysis of the NIST SP 800-53 rev. 5 controls and identify controls that can be automated
Ensures all systems are operated, maintained, and disposed of IAW documented security policies and procedures, including but not limited to Assessment & Authorization (A&A)
Supports the development and maintenance of all security documentation such as the System Security Plan, Privacy Impact Assessment, Configuration Management Plan, Contingency Plan, Contingency Plan Testing, POA&Ms, and incident reports
Qualification
Required
An active security clearance is REQUIRED
A Security+ Certification is REQUIRED
Company
DNI (Delaware Nation Industries)
The DNI family consists of tribally owned companies featuring multiple HUBZone and SBA 8(a) Certified companies operating as federally recognized prime contractors providing state-of-the-art Enterprise IT services, Cybersecurity services, Research and Development, Construction, Management, and Professional services to federal and commercial clients.
Funding
Current Stage
Late StageRecent News
2024-02-18
Company data provided by crunchbase