Talent.com
Information System Security Engineer
Information System Security EngineerJones Networking • Washington, District of Columbia, United States
[error_messages.no_longer_accepting]
Information System Security Engineer

Information System Security Engineer

Jones Networking • Washington, District of Columbia, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Position Title : ISSO

Location : Washington, DC

Industry : Government Contracting

ISSO Position Summary :

Our client is seeking a talented ISSO to join their team. This position will support the Assistant Secretary for Administration (ASA) under guidance from the CIO's Information System Security Manager (ISSM). The candidate will ensure a portfolio of 4 systems are in compliance with applicable NIST standards, and provide standard ISSO services. The candidate will also work closely with the other ISSOs supporting the client customers to provide leadership and mentoring and ensure consistent delivery of ISSO services.

ISSO Key Responsibilities :

  • Ensure applicable cybersecurity policies are implemented for systems and information system-related physical security also under purview.
  • Maintain operational security posture consistent with current security policy.
  • Report actual or suspected computer-security incidents to DOT CSIRC within time frames established by DOT Incident Response policy for incident types in accordance with US-CERT.
  • Distribute cybersecurity notices and advisories to appropriate personnel and that vendor-issued security patches are expeditiously installed.
  • Serve as primary security to system owners, common control providers, and users.
  • Serve as focal point for cybersecurity incident reporting and subsequent resolution.
  • Assisting ISSM in reviewing contracts for information systems under the Component's control to ensure that cybersecurity is appropriately addressed in contract language.
  • Ensure all security-related SDLC documentation meets all identified security needs.
  • Maintain Security Assessment and Authorization (SA&A) documentation for information systems under purview according to DoT Cybersecurity Policy and Compendium.
  • Ensure selection of NIST SP 800-53 baseline security controls are appropriate for system based on FIPS 199 security categorization, NIST SP 800-53 guidance, and supplemental DOT policy specified in DoT Cybersecurity Compendium.
  • Assist System Owner, Information Owner, and ISSM in recording all known security weaknesses of assigned information systems in POA&Ms IAW DoT policy and procedures.
  • Track all security education and awareness training conducted for personnel and contractors, as required by DoT Cybersecurity Policy and Compendium.
  • Provide security advice to AO and System Owner on all matters (technical and otherwise) involving security of the information system.
  • Ensure required updates are performed to key documents in accordance with NIST SP 800-37 for continuous monitoring.
  • Identify changes to systems that may impact security controls, perform security impact assessment of proposed changes, report any change in risk posture, and provide recommendations for risk mitigation.
  • Ensure proper backup procedures exist for assigned information systems and that procedures are performed and tested in accordance with System Security Plan.
  • Assist System Owner and ISSM to ensure external connections to / from DoT information systems and networks are provided by an approved DoT Trusted Internet Connection Access Provider (TICAP) or DoT-approved Managed TIC Provider Service (MTIPS).
  • Ensure audit logs are captured, maintained, and analyzed as required by NIST SP 800- 53 and any supplemental Departmental Cybersecurity Policy and the Compendium.
  • Ensure DoT enterprise information security management system (CSAM or its successors) accurately contains required information system inventory, categorization, POA&Ms and other security metrics required by DoT CIO through this policy.
  • Complete mandatory annual specialized information security training.
  • ISSO Required Skills : 8+ years of experience in IT Security
  • Certified Information Systems Security Professional (CISSP) certification.
  • Understanding of NIST 800.53 and its applicability to IT Systems.
  • Expertise with Risk Management Framework, FEDRAMP and FISMA.
  • Understanding authentication in the cloud environment.
  • Experience with continuous monitoring of a cloud system
  • Experience working on assessments with third party assessments organization (3PAO)
  • AWS / Azure associate certified

ISSO Compensation and benefits : $120,000

Company-supported medical, dental, vision, life, STD, and LTD insurance

Benefits include 10 federal holidays and PTO.

401(k) with company matching

Flexible Spending Accounts for commuter, medical, and dependent care expenses

Tuition Assistance

[job_alerts.create_a_job]

Information System Security Engineer • Washington, District of Columbia, United States

[internal_linking.related_jobs]
Information System Security Engineer (ISSE)

Information System Security Engineer (ISSE)

Tla Llc • Washington, DC, United States
[job_card.full_time]
TLA is seeking an Information System Security Engineer (ISSE).This is a critical role responsible for designing, developing, implementing, and maintaining secure information systems and networks.Th...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cleared Information System Security Engineer (ISSE)

Cleared Information System Security Engineer (ISSE)

Northstrat • Columbia, MD, US
[job_card.full_time]
Northstrat is seeking an experienced and driven Information Systems Security Engineer (ISSE).The candidate will perform system or network designs that encompass multiple enclaves, to include those ...[show_more]
[last_updated.last_updated_30] • [promoted]
Lead Security Engineer - Cyber Security

Lead Security Engineer - Cyber Security

Relativity • Washington, DC, United States
[job_card.full_time]
As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...[show_more]
[last_updated.last_updated_30] • [promoted]
Information Security Engineer

Information Security Engineer

ISACA • Washington, DC, United States
[job_card.full_time]
The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Infrastructure Security Engineer

Infrastructure Security Engineer

Wounded Warrior Project • Washington, DC, United States
[job_card.full_time]
We know these are some of the things people look for in a job.If you're the kind of person who believes that honoring and empowering our nation's veterans is more than just a cause - that it's a ca...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information System Security Engineer

Information System Security Engineer

Fusion Technology • Washington, DC, US
[job_card.full_time]
Fusion Technology is a performance-driven HUBZone Small Business concern residing in the heart of the beautiful mountainsides of West Virginia, steps away from the Federal Bureau of Investigation&#...[show_more]
[last_updated.last_updated_30] • [promoted]
Information Security Engineer

Information Security Engineer

Arnold & Porter Llp • Washington, DC, United States
[job_card.full_time]
The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information System Security Manager (ISSM)

Information System Security Manager (ISSM)

The Johns Hopkins University Applied Physics Laboratory • Laurel, MD, United States
[job_card.full_time]
Do you love solving problems while enabling impactful research to operate securely?.Are you passionate about making meaningful contributions to national security cyber missions?.Do you like collabo...[show_more]
[last_updated.last_updated_30] • [promoted]
Information Security Engineer

Information Security Engineer

InsightSoftware • Washington, DC, United States
[job_card.full_time]
We believe an actionable business strategy begins and ends with accessible financial data.With solutions across financial planning and analysis (FP&A), accounting, and operations, we transform how ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Cloud Information System Security Officer

Senior Cloud Information System Security Officer

MANTECH • Washington, Washington, D.C., US
[job_card.full_time]
Senior Cloud Information System Security Officer (ISSO).Responsibilities include, but are not limited to : .Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of ...[show_more]
[last_updated.last_updated_variable_hours] • [promoted] • [new]
Information System Security Engineer (ISSE)

Information System Security Engineer (ISSE)

GCyber • Arlington, VA, US
[job_card.full_time]
Information System Security Engineer, .The ISSO will be responsible for maintaining compliance, ensuring operational security posture, and coordinating security documentation and activities ac...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Security Engineer

Information Security Engineer

Palantir Technologies • Washington, DC, United States
[job_card.full_time]
Palantir builds the world's leading software for data-driven decisions and operations.By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving ...[show_more]
[last_updated.last_updated_30] • [promoted]
Information Systems Security Engineer Level 1 (ISSE 1)

Information Systems Security Engineer Level 1 (ISSE 1)

ARSIEM • Columbia, MD, US
[job_card.full_time]
At ARSIEM Corporation we are committed to fostering a proven and trusted partnership with our government clients.We provide support to multiple agencies across the United States Government.ARS...[show_more]
[last_updated.last_updated_variable_hours] • [promoted] • [new]
Information Systems Security Manager

Information Systems Security Manager

Georgia Tech • Arlington, VA, United States
[job_card.full_time] +1
Georgia Tech prides itself on its technological resources, collaborations, high-quality student body, and its commitment to building an outstanding and diverse community of learning, discovery, and...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Cyber Security Engineer - InfoSec Specialist

Senior Cyber Security Engineer - InfoSec Specialist

Astrion • Washington, District Of Columbia, United States
[job_card.full_time]
Salary : $120,000 - 150,000 per year.We require an active DoD SECRET security clearance and the ability to maintain it.Candidates should possess a strong background in technical IT and cybersecurity...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information System Security Eng (ISSE) III

Information System Security Eng (ISSE) III

Global Resource Solutions, Inc. • Washington, DC, US
[job_card.full_time]
Global Resource Solutions, Inc.GRS) is seeking an enthusiastic, motivated, detail orientated, and talented individual for the position of Information System Security Engineer III.The Information Sy...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior InfoSec Engineer & RMF / NIST Security Leader

Senior InfoSec Engineer & RMF / NIST Security Leader

C2 Labs, Inc. • Washington, DC, United States
[job_card.full_time]
A tech solutions provider based in Washington is seeking an experienced Information Assurance Engineer / Security Manager to lead the development and management of security infrastructure.The ideal...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
System Security Engineer

System Security Engineer

Guidehouse • Bethesda, Maryland, USA
[job_card.full_time]
Ability to Obtain Public Trust.Develop a framework to streamline the SA&A process.Strategies should include reducing meetings automating tasks leveraging existing information and conceptualizin...[show_more]
[last_updated.last_updated_variable_days] • [promoted]