Information Systems Security Officer (ISSO) - Aurora, CO jobs in United States
cer-icon
Apply on Employer Site
company-logo

ICR, Inc. · 1 week ago

Information Systems Security Officer (ISSO) - Aurora, CO

ICR, Inc. is a company focused on information security, and they are seeking an Information Systems Security Officer (ISSO) to oversee day-to-day security operations. The role involves managing security compliance, conducting audits, and ensuring the integrity of information systems in accordance with internal and customer requirements.

CommunitiesEmployee BenefitsEmploymentMilitary
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Oversee day-to-day information system security operations including hardware and software implementations
Carry out technical administration of IS in accordance with internal ICR and customer security requirements, primarily Risk Management Framework (RMF)
Auditing of the IS
Primary point of contact for data transfers
Upkeep, monitor, analyze, and respond to network and security events
Document compliance actions within the approved automated compliance tracking system or develop a plan of actions and milestones (POA&M) with the Information Systems Security Manager (ISSM) to address non-compliance in the allotted time frame
Ensure systems are operated, maintained, and disposed of in accordance with internal security policies and practices outlined in the security plan
Ensure configuration management (CM) for security-relevant IS software, hardware, and firmware is maintained and documented in accordance with baseline
Ensure all information system security-related documentation is current and accessible to properly authorized individuals
Ensure records are maintained for workstations, software, servers, routers, firewalls, network switches, telephony equipment, etc. throughout the information system's life cycle
Evaluate proposed changes or additions to the information system, and advise the ISSM of their security relevance
Assist and conduct security IS education
Participate in internal/external security audits/inspections; performs risk assessments
Inform ISSM on technical IS security matters
Assist in conduct of investigations of computer security violations and incidents, reporting as necessary to both the Contractor Program Security Officer (CPSO) and Program Managers
Ensure proper protection and / or corrective measures have been taken when an incident or vulnerability has been discovered
Communicate, implement and manage a formal Information Security / Information Systems Security Program together with ISSM and CPSO
Implement and enforce Information Security Policies and Procedures together with ISSM and CPSO
Review and oversee RMF Package authorizations together with ISSM and CPSO
Willingness to travel in support of Continuous Monitoring and Assessment of Deployed systems, annual assessment reviews, and as needed to support Customer requirements

Qualification

TS/SCI clearanceDoD 8570 IAM Level IRisk Management FrameworkInformation Assurance toolsICD 503/JSIGRMF database repositoriesAuditing experienceInvestigation experienceInformation systems configurations

Required

Current TS/SCI within the last five years and the ability obtain a Polygraph
DoD 8570/8140 IAM Level I certification or Higher
Knowledgeable of multiple vendor operating systems security requirements
Hands on experience with industry standard Information Assurance tools
Experience with obtaining and maintaining system ATOs leveraging the RMF process
Hands on auditing and investigation experience
U.S. Citizenship required
Security Clearance Level: TS/SCI w/Poly
Work: Onsite Full-time: The work associated with this position will be performed onsite at a designated ICR facility

Preferred

Hands on experience with ICD 503/JSIG
Experience working in environment supporting IC and/or DoD customers
Experience implementing new and complex technologies at multiple classification levels within large enterprise environments
Have and maintain a DoD 8570 IAM Level I certification
Experience with RMF database repositories (eMass, ServiceNow, Xacta)
Ability to understand information systems equipment configurations (switches, routers, IDS, firewalls, servers, storage arrays, etc...)
Preferred Bachelor's degree from an accredited college in a related discipline, or equivalent experience/combined education, with 2 years of professional experience

Benefits

Company equity
Retirement plan
Company-paid health care benefits
Flexible paid time off policy
Opportunity for a raise and bonus during the year

Company

ICR, Inc.

twittertwittertwitter
company-logo
We will be the first to identify and solve the Intelligence and Defense Communities’ toughest engineering and operational problems by establishing a true partnership with our Customers.

Funding

Current Stage
Late Stage
Company data provided by crunchbase