Mid Information Systems Security Officer (ISSO)

A
Arlo Solutions LLCInformation Technology Consulting Services
Fully RemoteFull-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Experience
Minimum of two (2) years of relevant experience

Requirements

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field OR additional four (4) years of experience
  • Strong understanding of Risk Management Framework (RMF) processes and security control assessments, including experience with categorization, control selection, implementation, and assessment
  • Minimum of two (2) years of relevant experience in cybersecurity, information assurance, or a related field
  • Experience in IT controls validation and familiarity with Federal Information System Controls Audit Manual (FISCAM) guidelines
  • Experience in incident response, continuous monitoring, and vulnerability management
  • Proficiency in using security assessment tools and platforms such as eMASS (Enterprise Mission Assurance Support Service)
  • Familiarity with continuous monitoring processes and tools
  • Experience with incident response processes and tools
  • Knowledge of cybersecurity frameworks and standards, such as NIST, ISO 27001, and CIS Controls

Responsibilities

  • Produce all required DOD compliance documentation for RMF, Audit Response and Remediation, Cyber Task Orders, Required Scorecards, Privacy documentation, and other compliance requirements as detailed in the DSCA CYBR Service Catalog.
  • Draft and coordinate cybersecurity-related documentation to meet required standards, controls, and metrics.
  • Support all steps of the RMF process (Steps 0-6) required to gain and maintain DOD Information Network (DODIN) and agency commercial network authority to operate.
  • Assist in categorization, control selection, implementation, and tailoring support, as well as support of assessments from the ISSO role.
  • Prepare and validate controls in eMASS packages for assessment and review.
  • Ensure that control requirements are well-defined and that necessary documentation and evidence are gathered for validation and assessment.
  • Work in the DOD GRC tool Enterprise Mission Assurance Support Service (eMASS) to support control validation.
  • Conduct continuous monitoring of information systems to detect vulnerabilities, threats, and security incidents.
  • Utilize security tools and technologies to perform regular scans, assessments, and analysis of system vulnerabilities.
  • Assist in the detection, analysis, and response to cybersecurity incidents.
  • Provide weekly vulnerability compliance reporting to ISSMs.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now