Jobs and Careers
CS

Cyber Security Specialist- Information Systems Security Officer- ISSO

CSA
San Diego, United Statesfull_timeVerifiedPosted 11 Oct 2023
💰 $115,000/yr($95,000/yr$115,000/yr)

About the role

CSA is seeking a Cyber Security Specialist- Information Systems Security Officer- ISSO to be based onsite in San Diego, California.

Responsibilities

  • Provide on-site CS/IA technical expertise in a broad array of areas, including Account Management, CS and Information Systems security policy, Incidents and Spillages, and IS Assessment and Authorization (A&A) utilizing the Risk Management Framework (RMF).
  • Conduct risk analyses from vulnerability, compliance scans, or other audit activity.
  • Coordinate/lead along with the Government CS lead and the Program of Record (PoR) PM assigned with Authority to Operate (ATO efforts and make recommendations to improve the processes.
  • Develop and/or assist in the development of, but not limited to, IS Security Plans (SP), Security Assessment Plan (SAP), Security Assessment Report (SAR), Risk Assessment, Plan of Action and Milestones (POAM), System Specific Policies and Procedures, Configuration Management Plans (CMP), Contingency of Operations Plan (CP), Test Results, Business Impact Analyses (BIA), and the Security Impact Analyses (SIA).
  • Support security testing and analysis of Information Management/Information Technology (IM/IT) capability requests (applications, systems, networking devices) being introduced to the Navy Enterprise.
  • Support the performance of security testing and evaluation of applications against applicable security criteria using common tools, including ACAS (Assured Compliance Assessment Solution), SCAP (Security Content Automation Protocol) Compliance Checker, and DISA (Defense Information (STIGs).
  • Produce security testing reports, including Security Risk Assessment Reports detailing the findings noted during testing.
  • Assist programs with completing security documentation to meet assessment and authorization requirements.

Qualifications

  • Ability to obtain and maintain an Active U.S. Government Secret Clearance.  Be able to pass a security investigation and meet eligibility requirements for access to classified information.
  • 6 years of related experience.
  • Navy Cyber Security Workforce (CSWF) baseline certification at IAM Level I or a higher level certification is required. 
  • Acceptable certifications include Security+ CE, CAP, CND, GSLC, Cloud+, and HCISPP. 
  • Computing Environment (CE) certification may be required at the task order level.
  • IA Contractor Training and Certification and Computing Environment (CE) certification may be required at the task order lever.
  • Electronic documentation, system admin, network admin and database admin
  • Experience with the Navy Account Process utilizing Navy SAAR document
  • Experience with Incident and Spillage tracking
  • Experience executing the DoN Risk Management Framework.
  • Supporting the security Assessment and Authorization/ATO process.
  • Experience with reviewing, comprehending and documenting findings from ACAS (Assured Compliance Assessment Solution) Reports.
  • Experience with SCAP (Security Content Automation Protocol).
  • Experience with performing cyber security risk assessments and identifying, verifying, and consolidating specific vulnerabilities, causes, analysis of alternatives and identification of appropriate corrective actions from each risk assessment conducted.
  • Experience with evaluation of Security Technical Implementation Guides (STIGs) to determine applicability to systems and assets.
  • Functional expertise with Microsoft Office suite of products, including Word, Excel, PowerPoint, Visio, and Project.

Preferred Qualification

  • BA or BS degree from an accredited institution in related field (e.g., Management Information Systems, Information Technology, Computer Science, Math, Business, Engineering, or Physical Science, etc.)
  • Prior experience with DoD Information Assurance Certification and Accreditation Program (DIACAP).
  • Experience with eMASS and/or Vulnerability Remediation Asset Manager (VRAM) would be beneficial.
  • IT project management experience supporting Navy or DoD network systems.
  • Excellent oral and written communication skills, including drafting, reviewing, and editing technical graphs, briefs, or documents.
  • Evidence of being detail oriented with strong critical thinking in areas of IT process analysis / process improvement.
  • Possesses Good Team Skills having the ability to coordinate and work well with others.
The annual base salary range for this position is $95,000 - $115,000. Please note that the salary information is a general guideline only. CSA considers factors such as (but not limited to) scope and responsibilities of the position, candidate’s work experience, education/ training, key skills as well as market and business considerations when extending an offer. Actual compensation within that

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

CSA

View company profile →