Senior Information Systems Security Officer
LeidosAbout the role
Looking for a rewarding career challenge?
Unleash your potential at Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customer’s success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business. With Leidos, you will enjoy competitive benefits such as four or more weeks of Paid Time Off, Flexible Schedules, Discounted Stock Purchase Plans, Unlimited Education and Training Support, Parental Paid Leave, and more!
Are you ready to work on projects that can potentially change the world? Join us at Leidos, where your most important work is ahead! If this sounds like a place you can thrive, keep reading!
The Leidos National Security Sector is thrilled to announce our recent win of a large contract providing technical, engineering and system administration services in support of an exciting and interesting customer mission. We are seeking an experienced Senior Information Systems Security Officer to work at our customer site in Columbia, MD.
Primary Responsibilities:
- Provides aid to the program, organization, system, or enclave’s information assurance program.
- Lends assistance for proposing, coordinating, implementing, and enforcing information systems security policies, standards, and methodologies.
- Maintains operational security posture for an information system or program to ensure information systems security policies, standards, and procedures are established and followed.
- Assists with the management of security aspects of the information system and performs day-to-day security operations of the system.
- Evaluates security solutions to ensure they meet security requirements for processing classified information.
- Performs vulnerability/risk assessment analysis to support certification and accreditation.
- Provides configuration management (CM) for information system security software, hardware, and firmware.
- Manages changes to system and assesses the security impact of those changes.
- Prepares and reviews documentation to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements Traceability Matrices (SRTMs).
- Assists security authorization activities in compliance with Information System Certification and Accreditation Process (NISCAP) and DoD Risk Management Framework (RMF).
- Manage system requirements and derived requirements to ensure the delivery of production systems that are compatible with the defined system architecture(s) – Department of Defense Architecture Framework (DoDAF), Service-oriented Architecture (SOA), etc
- Assist with the development of system requirements, functional requirements, and allocation of the same to individual hardware, software, facility, and personnel components
- Coordinate the resolution of action items from Configuration Control Board (CCB) meetings, design reviews, program reviews, and test reviews that require cross-discipline coordination
- Generate alternative system concepts, physical architectures, and design solutions
- Define the methods, processes, and evaluation criteria by which the systems, subsystems and work products are verified against their requirements in a written plan
- Review and provide input to program and contract work breakdown structure (WBS), work packages and the integrated master plan (IMP)
- Derive from the system requirements an understanding of stakeholder needs, functions that may be logically inferred and implied as essential to system effectiveness
- Participate in establishing and gaining approval of the definition of a system or component under development (requirements, designs, interfaces, test procedures, etc.) that provides a common reference point for hardware and software developers
- Develop derived requirements for Information Assurance Services (Confidentiality, Integrity, Nonrepudiation, and Availability); Basic Information Assurance Mechanisms (e.g., Identification, Authentication, Access Control, Accountability); and Security Mechanism Technology (Passwords, cryptography, discretionary access control, mandatory access control, hashing, key management, etc.)
- Review and/or approve system engineering documentation to ensure that processes and specifications meet system needs and are accurate, comprehensive, and complete
- Assess each risk to the program and determine the probability of occurrence and quantified consequence of failure in accordance with an approved risk management plan
- In conjunction with system stakeholders, plan the verification eff
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s