Senior Cybersecurity - Information System Security Officer (ISSO)
BoeingAbout the role
Company:
Boeing Aerospace OperationsThe KC-46 Maintenance Training System (MTS) team is currently seeking a highly motivated Senior Cybersecurity – Information System Security Officer (ISSO) to join the team at McConnell AFB, Kansas.
The selected candidate will rely on Cybersecurity and Information Assurance (IA) background to be a technical leader and support the MTS network and Boeing customers. The ISSO is responsible for working with the KC-46 Special Programs Office ISSM in maintaining and implementing all Information System Security policies, standards, and directives to ensure assessment and authorization of information systems. This position will also coordinate activities at two other operating locations.
Job Description Summary:
Leads the development, implementation, and sustainment of product security and resiliency throughout the requirements, design, build, test, production, operations, and support lifecycle. Leads the development and enhancement of system requirements and architectures for product security to meet all applicable certification and customer requirements. Ensures security of facilities, equipment, tools, data, networks, and resources used for product: design, development, build, test, storage, delivery, operations, and support. Leads the definition and identification of product security requirements for suppliers of components and subsystems for integration into complex Boeing products and services. Leads coordination with governments, customers, suppliers, and industry to identify risks and improve industry and regulatory security standards and requirements for programs and interfacing systems. Leads research and development activities resulting in innovative solutions. Leads the advisement of customers on maintaining product security and certification, including security consequences of modifying products and services.
Position Responsibilities:
- Assists in the development and deployment of program information security for assigned systems to meet the program and enterprise requirements, policies, standards, guidelines and procedures
- Participates in change management activities as assigned by the ISSM, assisting stakeholders (system administrators, etc.) with the declaration and documentation of ports, protocols and services required for the information system
- Participates in remanence security risk management processes
- Execute procedures that identify and mitigate the residual risk and risk tolerance.
- Implements Risk Management Framework (RMF) processes, product development and product maintenance for assigned systems
- Performs security compliance continuous monitoring
- Participates in security assessments and audits
- Prepares and presents technical reports and briefings
- Identifies root causes, the prioritization of threats, and recommends/implements corrective action
- Provides mentoring and technical leadership within the information security program team
- Explores the enterprise and industry for the evolving state of industry knowledge and methods regarding information security standard methodologies
- Supports development of MTS information security policies, standards, guidelines and procedures will affect other operating locations
- Support Defense Federal Acquisition Regulation Supplement (DFARS) and Cybersecurity Maturity Model Certification (CMCC) requirements based on contractual requirements for KC-46 MTS
Basic Qualifications (Required Skills/Experience):
- IAM Level 2 DoD 8570.01 compliant certification (i.e. CAP, Security+ CE, CISSP, CASP, CISM, GSLC)
- 1+ years of experience in utilizing security relevant tools, systems, and applications in support of Risk Management Framework (RMF) to include: NESSUS, ACAS, DISA STIGs, SCAP, Audit Reduction, and HBSS
Preferred Qualifications (Desired Skills/Experience):
- Bachelor's degree or equivalent work or military experience
- Currently hold certification in good standing to satisfy IAM Level III (CISSP, GSLC or CISM)
- 1+ years of experience with cybersecurity policies and implementation of Risk Management Framework (RMF): e.g. DAAPM, CNSSI 1253, ICD-503, JSIG, and/or NIST SP 800 series
- 1+ years with the National Industrial Security Procedures and Operations Manual (NISPOM)
- 1+ years of experience as an information system security officer (ISSO) or information system security manager (ISSM)
- 1+ years of experience in assessing and documenting test or analysis data to show cybersecurity compliance
Drug Free Workplace:
Boeing is a Drug Free Workplace where post offer applic
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s