Jobs and Careers
MA

Information System Security Officer (ISSO)

Maximus
United Statesfull_timeVerifiedPosted 8 Jan 2024
💰 $140,000/yr($62,500/yr$140,000/yr)

About the role

Job Description Summary

Maximus is looking for a Senior Information Systems Security Officer (ISSO) to join its team in Arlington, VA. What You Will Do: • Verify data security access controls based on the Joint Special Access Program Implementation Guide (JSIG).• Implement media control procedures and continuously monitor for compliance.• Verify data security access controls and assign privileges based on need-to-know.• Investigate all suspected cybersecurity incidents in accordance with Departmental directives and applicable Risk Management Implementation Plans (RMIPs).• Apply and maintain required confidentiality controls and processes.• Verify authenticator generation and verification requirements and processes.• Execute media sanitization (i.e., clearing, purging, or destroying) and reuse procedures.• Execute processes and procedures for protecting CUI, SAP, SCI, and PII.• Responsible for creation and management of Body of Evidence (BOE)• Maintain privilege access control logs• Creation and management of Interconnection Security Agreements (ISA)• Ensure JSIG compliance of application within multiple accredited boundaries• Track vulnerabilities by creating Plan of Action and Milestones (POA&M)• Manage the configuration and documentation contained in the program's instance of Enterprise Mission Assurance Support Services (eMASS).• Maintain and manage continuous monitoring of DoD STIG compliance• Enforce the continuous monitoring strategy using tools such as Splunk, Oracle Cloud Control, ACAS reports, scripts to perform database/application user/privilege review, etc.• Code Reviews for database and application development and configuration management activities, established by the Change Management Plan and Change Management Working Group.• Demonstrate a detailed ability to analyze events or test results and prepare a POA&M.• Demonstrate the ability to integrate project management, configuration management, continuous monitoring, and POA&M processes.• Demonstrate a detailed ability to prepare reports identifying the results of compliance and performance tests.• Develop and implements information assurance/security standards and procedures.• Coordinate, develop, and evaluate security programs for the organization. Review information assurance/security solutions to support customer requirements.• Identify, report, and resolve security violations.• Establishes and satisfies information assurance and security requirements based upon the analysis of user, policy, regulatory, and resource demands• Perform vulnerability/risk analysis of computer systems and applications during all phases of the system development life cycle.Required Skills & Qualifications: • Active TS/SCI clearance with ability to obtain CI Poly• Minimum Education Required: Bachelor's Degree or 5+ years IT experience• Candidates must have a CompTIA Security+ certification• 2+ years of experience as a Cyber or Security Analyst for one or more federal information systems• Strong familiarity with RMF, as established by the Federal Information Security Management Act (FISMA), and National Institute of Standards and Technology (NIST) FIPS 199/200 and Special Publications.• Experience with the Federal Risk and Authorization Management Program (FedRAMP).Desired Skills & Qualifications: • Certified Information Systems Security Professional (CISSP), or ability to obtain certification within six months of hiring. Alternatively, an existing CompTIA Advanced Security Professional (CASP+) certification is acceptable.• Experience in reviewing proposed change requests related to system design/configuration and performing security impact analysis.• Experience in reviewing monthly vulnerability scan reports and tracking and addressing weaknesses in POA&Ms as needed.• Experience with vulnerability scanning and assessments.#techjobs #clearance #DISACESO

Job Summary

Maximus TCS (Technology and Consulting Services) Internal Job Profile Code: TCS039, T3, Band 6

MAXIMUS Introduction

Since 1975, Maximus has operated under its founding mission of Helping Government Serve the People, enabling citizens around the globe to successfully engage with their governments at all levels and across a variety of health and human services programs. Maximus delivers innovative business process management and technology solutions that contribute to improved outcomes for citizens and higher levels of productivity, accuracy, accountability and efficiency of government-sponsored programs. With more than 30,000 employees worldwide, Maximus is a proud partner to government agencies in the United States, Australia, Canada, Saudi Arabia, Singapore and the United Kingdom. For more information, visit https://www.maximus.com.

EEO Statement

EEO Statement: Active military service members, their spouses, and veteran candidates often embody the core competencies Maximus deems essential, and bring a resiliency and dependability t

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Maximus

View company profile →