Information System Security Officer
Gdit
Public Trust: BI Full 6C (T4)
Requisition Type: Regular
Your Impact
Own your opportunity to work alongside federal civilian agencies. Make an impact by providing services that help the government ensure the well being and support of U.S. citizens.
Job Description
Job Description:
GDIT is seeking an Information Systems Security Officer (ISSO) to join our team supporting the U.S. Environmental Protection Agency (EPA) Office of Land and Emergency Management (OLEM) Office of Superfund and Emergency Management (OSEM) Analytical Services Branch (ASB). As the ISSO, you will develop and implement an information security program to ensure the operational security of a critical mission-support system. You will update, maintain, and drive procedures and policies designed to protect the system from both internal and external threats. The system is currently hosted in an AWS Cloud environment.
Performance shall include:
- Identify cyber security vulnerabilities and assist with the implementation of appropriate mitigations or countermeasures
- Conduct and support, when assessed or audited, periodic reviews of the information system to ensure compliance with the security and privacy authorization package (currently NIST 800-SP53 Rev. 4/5)
- Coordinate changes to the system infrastructure or software to ensure continued compliance with security and privacy requirements
- Coordinate the response to the annual continuous monitoring assessment audit, and ensure the system’s continued Authorization to Operate (ATO)
- Ensure audit evidence is collected, reviewed, and documented, including any risk exceptions
- Identify and notify the program manager when changes occur that might affect the authorization determination for the information system
- Provide analysis of systems, hardware, software, and maintenance needs
- Provide document review and updates of all security- and privacy-related documentation
- Routinely review Tenable scan results and coordinate with team members to ensure vulnerabilities are addressed within the target remediation timeframes.
- Routinely review Splunk reports to detect security threats, anomalous activities, unauthorized access, or other malicious behavior.
- Develop, coordinate and conduct training and tabletop exercises related to continuity of operations, contingency planning, incident handling and response, awareness, disaster recovery, etc.
- Coordinate with other EPA organizational entities to ensure compliance with EPA and other federal requirements, specifications, and reporting
- Prepare reports on the status of system security and privacy, vulnerabilities, and responses to other customer inquiries and data calls
What You’ll Need to Succeed:
- Education: Masters or Bachelor's degree in Computer Science, Information Security, Cyber Security, or relevant discipline
- Required Experience: Eight (8) years of related experience. Without a master’s degree, ten (10) years of related experience is required.
- Required Technical Skills
- Prior performance in roles such as system administration, networking administration, or ISSO
- Knowledge of NIST SP-800-53, Rev 4 and Rev 5
- Familiarity with system security and privacy within cloud environments (AWS, specifically)
- Demonstrated experience with risk management and auditing
- Certifications
- CISSP, CISA, CISM, and/or cloud-based security certification (e.g. CCSP, COMPTIA Cloud+, or equiv)preferred.
- Clearance Required: Position of Trust or greater (can be obtained after starting)
- Excellent verbal and written communications skills, including the ability to communicate complicated technical and security concepts to both technical and non-technical stakeholders.
- Knowledge of and experience with Environmental Protection Agency (EPA) security policies and procedures, while not required, would be advantageous.
Work Requirements
Years of Experience
8 + years of related experience
* may vary based on technical training, certification(s), or degree
Certification
Travel Required
None
$165k - $195k
...Information System Security Officer (ISSO), Senior (On-Prem & Cloud) Location US-VA-Chantilly ID 2026-4020 Category IT / Cyber Security / Network Systems Position Type Full-Time Remote No Clearance Required...SuggestedFull timeRemote work$140k - $160k
...Dark Wolf is seeking an I nformation System Security Officer (ISSO) to lead a collaborative team to develop, manage, and maintain information system security Assessment and Authorization (A&A) packages. This could include supporting the planning, executing, and monitoring...SuggestedFull timeFor contractorsFlexible hours$108k
This position requires office presence of a minimum of 5 days per... ...Sector is a trusted provider of secure, IP enabled, cloud-based,... ...provide realistic, innovative information security solutions to... ...expertise to support information systems security, security control assessments...SuggestedFull timeContract workTemporary workFor contractorsWork at officeLocal areaRelocation$124.22k - $131.01k
...Department of Defense Secret security clearance is required at time... ...requirements for access to classified information. Due to the nature of work... ...Engineer supports the system security design effort, security... ...
