- Location
- Huntsville, AL,US, US
- Type
- Full-time
- Department
- Administration
- Experience
- 5+ years
- Clearance
- Required
- Source
- Eightfold
Description
MTSI is currently seeking to hire an Information Systems Security Officer (ISSO) to join the team in Huntsville, Alabama. The ISSO will collaborate closely with the ISSM and ISO to monitor information system(s), maintain security controls, and ensure compliance with authorization documentation. Responsibilities also include implementing configuration management across authorization boundaries, assessing the security impact of those changes, and making recommendations to the ISSM. Responsibilities Assist the ISSM in meeting their duties and responsibilities. Prepare, review, and update authorization packages. Ensure approved procedures are in place for clearing, sanitizing, and destroying hardware and media. Notify the ISSM of any changes that may affect the authorization determination of the information system(s). Conduct periodic reviews of information systems to verify compliance with the security authorization package. Coordinate changes or modifications to hardware, software, or firmware of the system with the ISSM and AO/DAO prior to implementation. Monitor system recovery processes to verify proper restoration of security features and procedures. Maintain current and accessible IS security-related documentation for authorized personnel. Collect, review, and document audit records, including any anomalies. Attend technical and security training relevant to assigned duties (e.g., operating system, networking, security management). Execute the cybersecurity portion of the self-inspection, including providing security coordination and review of system assessment plans. Identify cybersecurity vulnerabilities and assist in implementing countermeasures. Prepare reports on the status of security safeguards applied to computer systems. Perform ISSO duties to support both in-house and external customers. Conduct security impact analysis activities and report them to the ISSM for all configuration management changes within the authorization boundaries. Required Experience Bachelor’s degree in a technical field (e.g. Information Technology, Information Assurance, Computer Science, or related discipline) is highly desired. Minimum 5 years of relevant experience with demonstrated performance in roles such as System Administrator, Network Administrator, or ISSO. Required Certifications In accordance with DoW Directive 8570/8140 IAT, a minimum of a Level II certification (e.g. Security+, SSCP, CySA+, GSEC, CND, or GICSP). A computing environment or technical certification is encouraged (e.g. MCSA, Cisco CCNA, Linux+, etc.). Required Clearance Active Secret Clearance cleared for TS 2 years of experience with Special Access Programs (SAP) is highly desired. Desired Qualifications System IT/SA experience with IT systems is highly desired. Strong understanding of cybersecurity principles, practices, and industry standards. Experience, or knowledge with the A&A process, Configuration Management, Continuous Monitoring, Vulnerability Management, Patch Management, eMASS (or similar), ACAS (or similar), POA&Ms, STIGs, Evaluate-STIG and/or SCAP, SIEM software, Control SOPs, RMF, NIST SP 800-53, Security Plans, JSIG, NIST, FIPS, HW/SW list, PPS, Network Diagrams/Topologies is highly desired. Experience with DCSA, MDA, or DIA is highly desired. #LI-AT1