OverviewVTG seeks to hire an Information Systems Security Officer (ISSO) in Chantilly, VA to monitor and maintain systems security on operational systems such as malicious code eradication, configuration management, assessment and authorization of current and future systems, as well as to review and revise systems security documentation on proposed systems. ISSOs shall know how to implement common information system security practices, policies, and technologies. Additionally, ISSOs demonstrate self-motivation, initiative, sound judgement, and effective interpersonal skills, team building skills, and effective communication skills. What will you do?ResponsibilitiesProvide guidance and mentorship to junior team membersCollaborate with system stakeholders and teammates to enhance system securityCommunicate effectively with all security stakeholdersCreate, revise, or review cybersecurity documentationProactively identify opportunities for increasing customer value and engagementAct as a Data Transfer Agent between systems of varying security domainsInventory, track, and control removable media and portable electronic devicesAdvise stakeholders on NIST SP 800-37 Risk Management Framework (RMF) workflows and requirementsReview SIEM and RMF workflow tools to advise ISSM on system security baselines and authorization statusesAdvise system stakeholders on acceptable use and applicable cybersecurity policy or regulationProperly report and document security incidents and response actionsDo you have what it takes?Basic RequirementsClearance: Active TS/SCI with PolygraphCurrently hold or obtain and maintain DoD 8570 IAT-3 certification within 6 months of starting the position Applicants should possess education and experience at the appropriate level for the position.
Education relevant to computer engineering, information security, information management, and/or computer science.
Experience relevant to information technology security, information systems security, information assurance engineering, and systems administration.Bachelor’s degree + 6 years of experience OR High School/GED + 10 years of experience OR Associate’s degree + 8 years of experience OR Master’s degree + 4 years of experienceAdditional RequirementsKnowledge of and experience with ICD 503 and NIST SP 800-37 Risk Management workflowsThorough understanding and application of network security principles, practices, and implementationsWorking knowledge of cross-functional integration of information systems into a physical security environmentWorking knowledge of system functions, security policies, technical security safeguards, and operational security measuresUnderstanding of system methodologies including but not limited to client server, web hosting, web content servers, policy servers, directory servers, firewalls, WAN, LAN, switches, and routersFamiliarity with detecting and preventing computer security compromises in a networked environmentWorking knowledge of configuration management; system maintenance; and integration testingProficient in the use of tools used to prevent and/or negate malicious codeUnderstanding of Commercial-Off-the-Shelf (COTS) tools that scan at the physical layer of all removable and fixed media types including but not limited to: (CDs, hard drives, thumb drives, Zip/Jazz, etc.)Ability to explain in clear language Intelligence Community Directive (ICD) 503Ability to support evidentiary forensics and preservationAbility to troubleshoot technical configurations and make recommendations on the protection of classified and sensitive dataDemonstrated ability to translate technical information and information technology jargon into plain EnglishAbility to apply a risk management philosophy when faced with security challenges and the ability to articulate the pro’s and con’s of a particular solution in a clear concise mannerDemonstrated proficiency with computer operating systems (e.g., Microsoft Windows, LINUX, UNIX, Mac OS, etc.)Analytical ability to understand complex technical configuration management documentsDemonstrated proficiency with database maintenanceStrong ability to elicit, articulate, and document information in a well-organized mannerDemonstrated ability to work independent of close supervisionDemonstrated experience with Microsoft Office SuiteWorking knowledge of all applicable customer, IC, and DoD policies, procedures and operating instructions related IT/IA/IMExcellent communication, interpersonal, and team-building skills to engender rapport with the military personnel, civilians, and other contractors at all levelsAn ability to prioritize work to meet deadlines, and to manage the workflow of the ISSO teamDemonstrated ability to correlate audit results between various systems and/or users and notify the Information Systems Security Manager (ISSM) of any discrepanciesDesired QualificationsExpertise with configuration management; system maintenance; and integration testingAbility to troubleshoot technical configurations and make recommendations on the protection of classified and sensitive dataExpert in the use of tools used to prevent and or negate malicious codeExpert in detecting and preventing computer security compromises in a networked environmentKnowledge in forensics chain of custody and evidentiary preservationDemonstrated proficiency in successfully guiding complex information systems through assessment and authorization control gatesAnalytical abilities to decipher complex technical configuration management documentsProficient in maintaining databasesThorough working knowledge of all applicable customer, IC, and DoD policies, procedures and operating instructions related to IT/IA/IMDemonstrated ability to work independent of close supervisionExpert ability to establish and maintain effective internal and external working relationships with government and contractor program managers, security professionals, and mission partnersAbility to effectively provide guidance to Assistant ISSOs and ISSOsPay Range: VTG’s estimated starting pay range is $142,000-$149,000 annually, which is a general guideline for the geographic location. When extending an offer, VTG also considers work experience, education, skill level, market considerations and may possibly include contractual requirements which may cause an offer to fall outside of this range.
Information Systems Security Officer in chantilly at Unknown Company
- Typical pay
- $32,240–$39,520
For context, most security guards earn between $32,240–$39,520 a year according to Bureau of Labor Statistics wage data. What this particular role pays is set by the employer — check the description above.
This position is listed as contract and onsite.