Procession Systems
Procession Systems

60 Procession Systems Information Systems Security Officer Jobs Hiring Near You

We are seeking a highly motivated Information Systems Security Officer (ISSO) who will be responsible for implementing cybersecurity, Risk Management Framework (RMF), and continuous monitoring ...

Candidates should have demonstrated career experience as an Information System Security Officer (ISSO) or Information System Security Engineer (ISSE) and experience with the Federal Authority to ...

We are seeking an Information System Security Officer (ISSO) Team Lead to support a key client in Washington DC. This individual will provide expert level guidance and leadership in implementing ...

About the Company Procession Systems is seeking a Technical Recruiter to join our team in Reston, VA. As a Technical Recruiter, you will be responsible for full-cycle recruitment, including sourcing ...

Provide subject matter expertise and consulting on security related matters for enterprise information system and network architectures, access problems, and implementation of security policies and ...

next page

Showing results 1-20

4275 Information Systems Security Officer

Procession Systems

Washington, DC • On-site

Full-time

Re-posted 22 days ago


Job description

4275 Information Systems Security Officer
4275 | Top Secret
Job Description:
OVERVIEW:
We are seeking a mid-level ISSO for our mission critical customer in Washington, DC. You will work as part of a highly talented team providing security compliance expertise on high priority projects.
GENERAL DUTIES:
  • Developing, maintaining, and assessing Security Assessment & Authorization (SA&A) packages resulting in an authority to operate (ATO) for IT systems.
  • Creating and maintaining SSPs and supporting documentation in accordance with agency guidelines and directives. This includes writing implementation statements, creating supporting documentation (e.g., contingency Plans, Incident Response Plans, Account Management Plans, etc.), and performing self-assessments, while working with system stakeholders.
  • Develop, coordinate, test, and train personnel on Incident Response Plans and Contingency Plans.
  • Ensuring that information systems are accredited, maintain their ATO, and are being continuously monitored.
  • Performing risk assessments for government systems, to include cloud-based systems.
  • Performing security control assessments to include collecting supporting artifacts/evidence and interviewing system owner/owner representatives.
  • Having an in-depth knowledge of the Risk Management Framework (RMF).
  • Maintaining and tracking system POA&Ms.
  • Conducting vulnerability management and analysis.
  • Reviewing and analyzing government policy.
  • Improving on processes and procedures and making recommendations to improve the security posture of the agency's IT systems and applications.

REQUIRED QUALIFICATIONS:
  • Bachelor's in Computer Science, or other related analytical, scientific, or technical discipline
  • 4+ years' experience with NIST, FISMA, and Security Assessment & Authorization.
  • Knowledgeable on various security-related NIST publications (e.g., SP 800-53r5, SP 800-53A, SP 800-18r1, etc.)
  • In-depth knowledge of information security principles, methodologies, and best practices.
  • Experience in conducting risk assessments and implementing security controls.
  • Proficiency in using security tools and technologies, such as firewalls, intrusion detection systems, SIEM, and vulnerability management tools.
  • Knowledge of incident response procedures.
  • Obtain a CI Poly.

DESIRED QUALIFICATIONS:
  • Certifications: CISSP
  • FedRAMP and Cloud experience (e.g., Azure, AWS, Oracle (OCI))
  • Hands-on experience using a Governance, Risk, and Compliance tool, such as CSAM or eMASS.
  • Ability to conduct gap analysis on non-federated vendor audit results, such as SOC Type 2, HIPAA comparison review and analyst against NIST SP 800-53 Revision 5 security controls.
  • Ability to accurately manage complex workstreams, comprehend the application of the RMF, and understand the application of security controls across the interface, application, operating system, network, and database layers of modern information systems. Understand the applicable artifacts used as evidence to assess compliance.
  • Experience with multiple tools providing security functions such as vulnerability management (e.g., Nessus), configuration management (e.g., BigFix, SCCM, ePO), endpoint protection (e.g., antivirus, ATP), data loss prevention, and intrusion detection software and hardware.
  • Ability to evaluate data flows, network diagrams, and logical security boundaries.
  • Familiarity with the use of data analysis tools, including the use of Microsoft Excel or PowerBI to combine data from multiple sources.

CLEARANCE:
  • Top Secret minimum

Job Details
City : Washington
State : District of Columbia

Procession Systems logo

About Procession Systems

Sourced by ZipRecruiter

Procession Systems, based in Reston, Virginia, United States, is an industry leader operating in the Information Technology Services sector. Established to address complex business and technology challenges, the company delivers innovative tech solutions for government entities, primarily focusing on systems integration and software development. Procession Systems takes pride in their commitment to quality, responsiveness, and results, geared towards improving public sector services and saving taxpayer dollars.

Industry

Recruiting and staffing services

Company size

11 - 50 Employees

Headquarters location

Reston, VA, US

Year founded

2016

Social media