Location: 700 Army Navy Drive, Arlington, VA
However, can move between Sterling, Arlington, Lorton, & remote
3 days onsite and 2 days remote
Clearance: Secret or Top Secret
Salary: 145k - 150k w2
Rate: 70/hr to $75/hr 1099
Description:
The ISSO is the component official assigned by the Authorizing Official or other senior management for ensuring the appropriate operational security posture is maintained for an information system or program. The ISSO also serves as the principal advisor to the Authorizing Official and Information System Owner on all matters (technical and otherwise) involving the security of the information system.
The Forensics Information Systems Security Officer (ISSO) will work with government and industry customers to provide cyber security expertise endpoints.
The Forensics Information System Security Officer (ISSO) is responsible for providing Incident Response and Forensic (IRF) Trusted Advisor services for the Office of Forensic Science. Key services include Cybersecurity Incident and Breach Response, forensic analysis of compromised assets, malware reverse engineering, and ultimately identification and remediation of compromised assets.
Duties:
Functional Responsibilities:
The candidate may perform any or all the following:
·Assisting in the identification, implementation, and assessment of the common controls.
·Assisting in developing and updating the SSP, and coordinating with the Information System Owner, any changes to the information system and assessing the security impact of those changes.
·Ensuring systems are operated, maintained, and disposed of in accordance with policies outlined in the approved security authorization package.
·Reporting all incidents.
·Monitoring system recovery processes and ensuring the proper restoration of information system security features.
·Performing annual assessments, at a minimum, on an annual basis to ensure compliance with DEA policy and standards.
·Serving as member of Configuration Control Board (CCB) to ensure configuration management for Cybersecurity-relevant software, hardware, and firmware is maintained and documented.
·Ensuring information system security requirements are addressed during all phases of an information systems lifecycle.
·Establishing audit trails, ensuring their review, and making them available (when required)
·Retaining audit logs in accordance with DOJ and Component policies; and
·Ensuring awareness and precautionary measures are exercised to prevent introduction and/or proliferation of malicious code.
· Evaluation of the assigned information systems’ security control compliance with the federal requirements and the client’s monitoring strategy
· Management of emerging and defined risks associated with the administration and use of assigned information systems
· Coordination with the client’s Cybersecurity Unit to achieve and maintain the information systems’ compliance and authorization to operate (ATO)
· Generate and interpret documentation needed to address the items detailed within the CSAM
· Work within a team environment to provide technically sound guidance order to adhere to the cybersecurity industry best practices and the client’s monitoring strategy
· Analyze collected information to identify vulnerabilities and potential for exploitation and effectively present the results and guidance derived from scans to system owners or other leadership, as required
· Effectively communicate orally and in writing to track and detail the demands, efforts, and shortcomings in meeting the goals of the client’s information system monitoring strategy
·Support the integration/testing, operations, and maintenance of systems security
·Develops, updates, and maintains internal Standard Operating Procedures for all internal assigned functions
·Aligns business processes and information technology strategy with the conditions and circumstances of the functional environment and establishes effective performance measures
· Coordination with the TC Cybersecurity Services Section to achieve and maintain the information systems’ compliance and authorization to operate (ATO)
Required Qualifications:
·Master’s degree from an accredited college or university or equivalent (documented formal training) in Information Technology, and eight (8) years overall experience with a minimum of five (5) years of documented relevant work experience performing any combination of Information SPAA, cybersecurity, system administration, or engineering.
o Education Substitution
§ Any combination of certificates such as Microsoft’s MCSE, or Cisco’s CISM, CISA, CSSP, CCNA, CCDA, or CCNP, may be considered equivalent to two (2) year of general experience / information technology experience. Certificates under the DoD IAM, IAT, IASAE, or CSSP Levels I, II or III may be considered equivalent to two (2) years of information security experience.
·Secret clearance: must be eligible for a Top-Secret clearance, if requested.
·Minimum of five (5) years of relevant experience as ISSO, security analyst, or security engineer. Familiarity with program security responsibilities to include, but not limited to the NIST RMF, audit log reviews, system monitoring, SPAA processes, FISMA requirements, vulnerability & compliance scanning, continuous monitoring activities, security testing and evaluation, and security policies.
Preferred Qualifications:
· GIAC Certified Forensic Examiner (GCFE)
· GIAC Battlefield Forensics & Acquisition (GBFA)
· GIAC iOS and MacOS Examiner (GIME
· GIAC Advanced Smartphone Forensics (GASF)
· CHFI: Computer Hacking Forensic Investigator
· CFCE: Certified Forensic Computer Examiner
· CSFA: Cyber Security Forensic Analyst
· Must have a minimum of Secret Clearance
Job Type: Full-time
Pay: $145,000.00 - $155,000.00 per year
Benefits:
Schedule:
Ability to commute/relocate:
License/Certification:
Work Location: Hybrid remote in Arlington, VA 22202
Click the checkbox next to the jobs that you are interested in.
Capacity Management Skill
Capacity Planning Skill
Information Systems Security Officer (ISSO)
Choisys Technology, Herndon, VA
Information Security Systems Officer (ISSO)
Fusion Technology LLC, Chantilly, VA