Unknown Company

(603) Information System Security Officer (ISSO) III

philadelphia, pa • Posted 2 weeks ago
Onsite Contract General

(603) Information System Security Officer (ISSO) IIIPhiladelphia, PACompany SummaryArlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions.

Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future.Position DescriptionThe Information System Security Officer (ISSO) III will support Naval Surface Warfare Center Philadelphia Division (NSWCPD) as a contractor through Arlo Solutions, serving as a key cybersecurity professional for NSWCPD Code 104. This key personnel position is responsible for coordinating cybersecurity processes and activities for assigned systems, ensuring compliance with all applicable policies, and managing security controls implementation throughout the Risk Management Framework (RMF) lifecycle.Location: Philadelphia, PAClearance: Active SecretResponsibilities and/or Success FactorsCybersecurity Compliance and Policy ImplementationAssist the Information System Security Managers (ISSM) in executing their duties and responsibilitiesEnsure compliance with all NAVSEA, DON, and DoD cybersecurity policiesEnsure relevant cybersecurity policy and procedural documentation is current and accessibleCoordinate cybersecurity processes and activities for assigned systemsReport changes in system security posture to the ISSM Security Assessment and Authorization (A&A) ManagementMaintain and report Assess Only (AO) and Assessment and Authorization (A&A) status to Program Managers, Information System Owners, and ISSMsProvide oversight of Security Plans for assigned systems throughout their lifecycleManage and maintain Plan of Actions and Milestones (POA&M), tracking vulnerabilities through remediationAssist with identification of security control baselines and applicable overlaysCoordinate the validation of security controls with Navy Qualified Validators (NQV)Perform Risk Management Framework (RMF) Standard Operating Procedure (SOP) reviewsAdjudicate findings from Package Submitting Officer (PSO) System Security ManagementRegister and maintain systems in Enterprise Mission Assurance Support Service (eMASS)Plan and coordinate security control testing during Risk Assessments and Annual Security ReviewsMaintain vulnerability data in Vulnerability Remediation Asset Manager (VRAM)Participate in change control and configuration management processesEnsure execution of Continuous Monitoring requirements as defined in system strategiesReview all data produced by Continuous Monitoring activities and update eMASS records as necessaryCorrelate findings from non-RMF vulnerability assessments to RMF controls for holistic risk assessment Cybersecurity Analysis and ReportingPerform analysis of logs, events, and reporting from various data collection toolsAssess impacts from observed risks and report via the Cybersecurity Program chain of commandPresent data to management in a comprehensive and cohesive mannerDevelop reports and produce procedural documentation as requiredEvaluate system administrator, security engineer, and/or system owner proposed correctionsMinimum Qualifications Including CertificatesMust be a U.S. CitizenActive Secret security clearanceBachelor's degree in computer science, information technology, communications systems management, or equivalent STEM degree from an accredited college or universityMinimum 6 years of experience coordinating and implementing security changes, ensuring compliance with published policies, conducting cybersecurity vulnerability and threat analysis, and supporting cyber incident responseCurrent IAM-II certification (CAP, CASP+ CE, CISM, CISSP, GSLC, CCISO, or HCISPP)Desired QualificationsExperience with the DoD Information Assessment and Authorization (A&A) processFamiliarity with Risk Management Framework (RMF) implementationProficiency with eMASS, VRAM, and other DoD cybersecurity systemsExperience with NIST Special Publications and DoD/Navy cybersecurity directivesExperience with vulnerability management tools (ACAS, HBSS, etc.)Knowledge of Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs)AAP StatementWe are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.

(603) Information System Security Officer (ISSO) III in philadelphia at Unknown Company

Typical pay
$34,060–$39,520

For context, most security guards earn between $34,060–$39,520 a year according to Bureau of Labor Statistics wage data. What this particular role pays is set by the employer — check the description above.

This position is listed as contract and onsite.

Back to Job Search