Information System Security Officer (ISSO) jobs in United States
cer-icon
Apply on Employer Site
company-logo

Canvas · 19 hours ago

Information System Security Officer (ISSO)

Canvas is seeking an Information System Security Officer (ISSO) to ensure compliance with information security policies and standards. The ISSO will conduct risk assessments, assist in managing security responsibilities, and ensure that security documentation is maintained and accessible.

Data IntegrationManagement ConsultingProfessional ServicesTechnical Support
check
Growth Opportunities
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Follow information security policies, methods, standards, Federal Information Security Management Act (FISMA/National Institutes of Standard and Technology (NIST) standards and practices to organizational information systems, IT reference materials and interpret regulations
Conduct risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities, rules, and protection needs tailored through the Risk Management Framework (RMF)
Assist the ISSM in meeting their duties and responsibilities. The ISSO shall assume ISSM responsibilities in the absence of the ISSM
Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the security authorization package
Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties
Report all security-related incidents to the ISSM
Conduct periodic reviews of information systems to ensure compliance with the security authorization package
Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
Monitor system recovery processes to ensure security features and procedures are properly restored and function correctly
Ensure all IS security-related documentation is current and accessible to properly authorized individuals
Ensure audit records are collected, reviewed, and documented (to include any anomalies)

Qualification

DoD 8140 certificationCybersecurity requirementsRisk Management FrameworkInformation security conceptsSecurity compliance processesCustomer interactionCommunication skillsPresentation capabilities

Required

Familiarity with security compliance processes and an understanding of the steps involved in supporting an Authority to Operate (ATO) lifecycle
Familiarity with researching applicable regulations, standards, and security requirements and summarize findings to support secure system operations
Basic understanding of information security concepts, including common tactics and techniques used by malicious actors, and awareness of approaches to mitigate vulnerabilities
Bachelor's in an applicable discipline
U.S. citizenship with an active SECRET clearance, and eligibility for TOP SECRET upgrade
Must have a DoD 8140 certification (Security+)

Preferred

Knowledge and expertise in Cybersecurity requirements, network technologies, and computer security as applied to Department of Defense (DoD) networks
Experience developing SOPs and SSPs
Excellent verbal and written communication skills along with customer interaction and presentation capabilities required

Company

Canvas

twittertwitter
company-logo
Canvas provides technical business and engineering solutions for customers in the federal and commercial markets.

Funding

Current Stage
Late Stage
Company data provided by crunchbase