Information Systems Security Officer
BAE Systems
**Job Description**
BAE Systems Federal customer is seeking an Information Systems Security Officer (ISSO) who will be responsible for ensuring the confidentiality, integrity, and availability of automated information systems, and providing support during Assessment and Authorization (A&A) activities. The position will provide oversight and monitoring of all A&A activities as well as tracking and monitoring of statistics related to meeting Federal and agency compliance requirements. The best candidate will also have the ability to roll up their sleeves and assist with infrastructure enhancements.
Job Responsibilities
+ ISSO will drive the ATO (Authority To Operate) process for a new system from start to finish working with System Owner, Technical Teams, Infrastructure Teams, Systems Teams, ISSMs, Security Assessors, PM, CM etc.
+ Create risk acceptance and waiver requests and submit for approval to OCIO.
+ Manage to create and maintain Plan of Actions and Milestones (POA&Ms) and working aggressively for their closures working with appropriate resources.
+ Ensure OCFO systems maintain a passing score in IACS (JCAM and Continuum) system.
+ Create and maintain system security documentation to include FIPS 199, System Security Plan, Contingency Plan, Security Control Assessment, etc.
+ Create monthly account audits and review audit logs to ensure current documentation is available for yearly OCFO consolidated audits.
+ Create Contingency Planning documentation and conduct required training and conduct required incident response reporting.
+ Review monthly continuous monitoring reports submitted to the Vulnerability Management Group and collaborate with System Engineer as needed.
+ Perform daily Information Security Vulnerability Monitoring alerts (all must be researched & respond as to if they are applicable to the different software/services/platforms...etc. that exist in the system accreditation boundary).
+ Advise management of new security, regulations or policies within DHS and monitor NIST guidance that may effect ongoing system management.
+ Ensure all system users and people with security responsibilities receive their annual awareness training. Review and validate user access rights.
+ Approve PAR and RAR requests for system users. Ensure all system users sign the Rules of Behavior (ROB) before being granted access.
+ Participate in the Change Request (CR) process (i.e., reviewing/approving change requests and conducting impact analyses). Support Change Control Boards as required. Review/deactivate unused accounts.
+ Perform monthly reviews of FedRAMP COntinuous Monitoring data for SaaS systems.
+ Apply deep expertise in the Risk Management Framework (RMF) and System Development Life Cycle (SDLC) to guide programs throughout system authorization and acquisition lifecycles
+ Develop system documentation.
+ Assist with system infrastructure monitoring and enhancements, including appropriate software installations that comply with approvals and specifications.
**Required Education, Experience, & Skills**
+ Bachelors degree and 5 years of related experience (education requirement may be substituted with an additional 4 years experience)
+ Ability to obtain and maintain DHS suitability
**Preferred Education, Experience, & Skills**
+ Current DHS Suitability
+ Cybersecurity and risk management certifications
+ Experience advising on system architecture
+ Understanding or infrastructure patching operations
**Pay Information**
Full-Time Salary Range: $118095 - $200762
Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20 hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.
**Information Systems Security Officer**
**121106BR**
EEO Career Site Equal Opportunity Employer. Minorities . females . veterans . individuals with disabilities . sexual orientation . gender identity . gender expression
Confirmar seu email: Enviar Email
Todos os Empregos de BAE Systems