CGS Federal (Contact Government Services)
Information Systems Security Officer (ISSO)
CGS Federal (Contact Government Services), Atlanta, Georgia, United States, 30383
Information Systems Security Officer (ISSO)
Base pay range: $92,213.33/yr - $125,146.66/yr Employment Type: Full-Time, Experienced Department: Information Technology Location: Herbert Hoover Building, Washington, DC (client site) CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Department of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM. Responsibilities include security assessment and information system security oversight activities in accordance with NIST 800-53 that support RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government’s most dynamic problems with cutting-edge technology. We offer an environment that supports professional growth through various learning opportunities. Responsibilities
Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades Maintain responsibility for managing cybersecurity risk from an organizational perspective Identify organizational risks, prioritize those risks, and maintain a risk registry for escalation to senior leadership Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies Provide configuration management recommendations for information system security software, hardware, and firmware and coordinate changes with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO) Maintain vulnerability scanning tool compliance (e.g., HBSS or ACAS) and patch management (e.g., IAVM) to ensure patches are applied and compliance is maintained Support security authorization activities, including transitioning from DIACAP to DoC RMF compliance Provide subject matter expertise for cyber security and trusted system technology Apply advanced technical knowledge to develop solutions to complex problems Research, write, review, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices Conduct research and write risk assessment reports including risk thresholds, evaluation, and scoring Support analysis of findings and provide expert technical guidance for mitigation strategies Qualifications
Bachelor’s Degree Minimum five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar in ATO package development and security documentation (requirements, control assessment, STIG/IAVA compliance, SOPs, test results) eMASS experience Professional security certification such as CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher Strong desktop publishing skills using Microsoft Word and Excel Experience with industry writing styles and ability to multi-task in a deadline-oriented environment Preferred/Ideally
CISSP, CASP, or similar certificate Master’s Degree in Cybersecurity or related field Strong initiative, detail orientation, organizational skills, and analytical thinking Ability to work well independently and as part of a team Excellent work ethic and commitment to quality Our Commitment: CGS strives to simplify and enhance government processes through technology and skilled personnel. We offer a comprehensive benefits package including Health, Dental, Vision, Life Insurance, 401(k), Flexible Spending Accounts, Paid Time Off, and holidays. CGS is an Equal Opportunity Employer. Applicants are considered without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. For more information, visit: https://www.cgsfederal.com or contact: info@cgsfederal.com
#J-18808-Ljbffr
Base pay range: $92,213.33/yr - $125,146.66/yr Employment Type: Full-Time, Experienced Department: Information Technology Location: Herbert Hoover Building, Washington, DC (client site) CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Department of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM. Responsibilities include security assessment and information system security oversight activities in accordance with NIST 800-53 that support RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government’s most dynamic problems with cutting-edge technology. We offer an environment that supports professional growth through various learning opportunities. Responsibilities
Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades Maintain responsibility for managing cybersecurity risk from an organizational perspective Identify organizational risks, prioritize those risks, and maintain a risk registry for escalation to senior leadership Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies Provide configuration management recommendations for information system security software, hardware, and firmware and coordinate changes with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO) Maintain vulnerability scanning tool compliance (e.g., HBSS or ACAS) and patch management (e.g., IAVM) to ensure patches are applied and compliance is maintained Support security authorization activities, including transitioning from DIACAP to DoC RMF compliance Provide subject matter expertise for cyber security and trusted system technology Apply advanced technical knowledge to develop solutions to complex problems Research, write, review, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices Conduct research and write risk assessment reports including risk thresholds, evaluation, and scoring Support analysis of findings and provide expert technical guidance for mitigation strategies Qualifications
Bachelor’s Degree Minimum five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar in ATO package development and security documentation (requirements, control assessment, STIG/IAVA compliance, SOPs, test results) eMASS experience Professional security certification such as CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher Strong desktop publishing skills using Microsoft Word and Excel Experience with industry writing styles and ability to multi-task in a deadline-oriented environment Preferred/Ideally
CISSP, CASP, or similar certificate Master’s Degree in Cybersecurity or related field Strong initiative, detail orientation, organizational skills, and analytical thinking Ability to work well independently and as part of a team Excellent work ethic and commitment to quality Our Commitment: CGS strives to simplify and enhance government processes through technology and skilled personnel. We offer a comprehensive benefits package including Health, Dental, Vision, Life Insurance, 401(k), Flexible Spending Accounts, Paid Time Off, and holidays. CGS is an Equal Opportunity Employer. Applicants are considered without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. For more information, visit: https://www.cgsfederal.com or contact: info@cgsfederal.com
#J-18808-Ljbffr