Talent.com
Information System Security Engineer
Information System Security EngineerJones Networking • Washington, District of Columbia, United States
[error_messages.no_longer_accepting]
Information System Security Engineer

Information System Security Engineer

Jones Networking • Washington, District of Columbia, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Position Title : ISSO

Location : Washington, DC

Industry : Government Contracting

ISSO Position Summary :

Our client is seeking a talented ISSO to join their team. This position will support the Assistant Secretary for Administration (ASA) under guidance from the CIO's Information System Security Manager (ISSM). The candidate will ensure a portfolio of 4 systems are in compliance with applicable NIST standards, and provide standard ISSO services. The candidate will also work closely with the other ISSOs supporting the client customers to provide leadership and mentoring and ensure consistent delivery of ISSO services.

ISSO Key Responsibilities :

  • Ensure applicable cybersecurity policies are implemented for systems and information system-related physical security also under purview.
  • Maintain operational security posture consistent with current security policy.
  • Report actual or suspected computer-security incidents to DOT CSIRC within time frames established by DOT Incident Response policy for incident types in accordance with US-CERT.
  • Distribute cybersecurity notices and advisories to appropriate personnel and that vendor-issued security patches are expeditiously installed.
  • Serve as primary security to system owners, common control providers, and users.
  • Serve as focal point for cybersecurity incident reporting and subsequent resolution.
  • Assisting ISSM in reviewing contracts for information systems under the Component's control to ensure that cybersecurity is appropriately addressed in contract language.
  • Ensure all security-related SDLC documentation meets all identified security needs.
  • Maintain Security Assessment and Authorization (SA&A) documentation for information systems under purview according to DoT Cybersecurity Policy and Compendium.
  • Ensure selection of NIST SP 800-53 baseline security controls are appropriate for system based on FIPS 199 security categorization, NIST SP 800-53 guidance, and supplemental DOT policy specified in DoT Cybersecurity Compendium.
  • Assist System Owner, Information Owner, and ISSM in recording all known security weaknesses of assigned information systems in POA&Ms IAW DoT policy and procedures.
  • Track all security education and awareness training conducted for personnel and contractors, as required by DoT Cybersecurity Policy and Compendium.
  • Provide security advice to AO and System Owner on all matters (technical and otherwise) involving security of the information system.
  • Ensure required updates are performed to key documents in accordance with NIST SP 800-37 for continuous monitoring.
  • Identify changes to systems that may impact security controls, perform security impact assessment of proposed changes, report any change in risk posture, and provide recommendations for risk mitigation.
  • Ensure proper backup procedures exist for assigned information systems and that procedures are performed and tested in accordance with System Security Plan.
  • Assist System Owner and ISSM to ensure external connections to / from DoT information systems and networks are provided by an approved DoT Trusted Internet Connection Access Provider (TICAP) or DoT-approved Managed TIC Provider Service (MTIPS).
  • Ensure audit logs are captured, maintained, and analyzed as required by NIST SP 800- 53 and any supplemental Departmental Cybersecurity Policy and the Compendium.
  • Ensure DoT enterprise information security management system (CSAM or its successors) accurately contains required information system inventory, categorization, POA&Ms and other security metrics required by DoT CIO through this policy.
  • Complete mandatory annual specialized information security training.
  • ISSO Required Skills : 8+ years of experience in IT Security
  • Certified Information Systems Security Professional (CISSP) certification.
  • Understanding of NIST 800.53 and its applicability to IT Systems.
  • Expertise with Risk Management Framework, FEDRAMP and FISMA.
  • Understanding authentication in the cloud environment.
  • Experience with continuous monitoring of a cloud system
  • Experience working on assessments with third party assessments organization (3PAO)
  • AWS / Azure associate certified

ISSO Compensation and benefits : $120,000

Company-supported medical, dental, vision, life, STD, and LTD insurance

Benefits include 10 federal holidays and PTO.

401(k) with company matching

Flexible Spending Accounts for commuter, medical, and dependent care expenses

Tuition Assistance

[job_alerts.create_a_job]

Information System Security Engineer • Washington, District of Columbia, United States

[internal_linking.similar_jobs]
Information System Security Engineer (ISSE)

Information System Security Engineer (ISSE)

Tla Llc • Washington, DC, United States
[job_card.full_time]
TLA is seeking an Information System Security Engineer (ISSE).This is a critical role responsible for designing, developing, implementing, and maintaining secure information systems and networks.Th...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information System Security Manager (ISSM)

Information System Security Manager (ISSM)

KBR • Bethesda, MD, United States
[job_card.full_time]
Information System Security Manager (ISSM).Information System Security Manager (ISSM).KBR’s National Security Solutions team provides high‑end engineering and advanced technology solutions to our c...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Lead Security Engineer - Cyber Security

Lead Security Engineer - Cyber Security

Relativity • Washington, DC, United States
[job_card.full_time]
As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...[show_more]
[last_updated.last_updated_30] • [promoted]
Information Security Engineer

Information Security Engineer

ISACA • Washington, DC, United States
[job_card.full_time]
The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Systems Security Manager

Information Systems Security Manager

Slope • Washington, DC, United States
[job_card.full_time]
Anduril Industries is a defense technology company with a mission to transform U.By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the def...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information System Security Manager (ISSM), Public Sector

Information System Security Manager (ISSM), Public Sector

Scale AI, Inc. • Washington, DC, United States
[job_card.full_time]
Our Security team works on operational issues at the leading edge of machine learning technology.You will join a creative and solutions‑oriented team collaborating with internal teams at Scale and ...[show_more]
[last_updated.last_updated_30] • [promoted]
Infrastructure Security Engineer

Infrastructure Security Engineer

Wounded Warrior Project • Washington, DC, United States
[job_card.full_time]
We know these are some of the things people look for in a job.If you're the kind of person who believes that honoring and empowering our nation's veterans is more than just a cause - that it's a ca...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Security Engineer

Information Security Engineer

Arnold & Porter Llp • Washington, DC, United States
[job_card.full_time]
The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information System Security Manager (ISSM)

Information System Security Manager (ISSM)

The Johns Hopkins University Applied Physics Laboratory • Laurel, MD, United States
[job_card.full_time]
Do you love solving problems while enabling impactful research to operate securely?.Are you passionate about making meaningful contributions to national security cyber missions?.Do you like collabo...[show_more]
[last_updated.last_updated_30] • [promoted]
Information Security Engineer

Information Security Engineer

InsightSoftware • Washington, DC, United States
[job_card.full_time]
We believe an actionable business strategy begins and ends with accessible financial data.With solutions across financial planning and analysis (FP&A), accounting, and operations, we transform how ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Systems Security Engineer (ISSE)

Information Systems Security Engineer (ISSE)

Synergy Ecp • Columbia, Maryland, United States, 21044
[job_card.full_time]
Information Systems Security Engineer (ISSE).Founded in 2007 and headquartered in Columbia, Maryland, Synergy ECP is a leading provider of cybersecurity, software and systems engineering and IT ser...[show_more]
[last_updated.last_updated_30]
Information Security Engineer

Information Security Engineer

Palantir Technologies • Washington, DC, United States
[job_card.full_time]
Palantir builds the world's leading software for data-driven decisions and operations.By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving ...[show_more]
[last_updated.last_updated_30] • [promoted]
Security Engineer

Security Engineer

SAIC • Washington, DC, United States
[job_card.full_time]
Minimum Clearance Required : None.Clearance Level Must Be Able to Obtain Public Trust.We are seeking a skilled Security Engineer with extensive experience in vulnerability remediation at the operati...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Systems Security Manager

Information Systems Security Manager

Via Logic LLC • Bethesda, MD, United States
[job_card.full_time]
Leidos’ High Fidelity Simulation Business Area is responsible for architecting and implementing large-scale System of Systems solutions in support of world class simulation, training, and analysis ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior InfoSec Engineer & RMF / NIST Security Leader

Senior InfoSec Engineer & RMF / NIST Security Leader

C2 Labs, Inc. • Washington, DC, United States
[job_card.full_time]
A tech solutions provider based in Washington is seeking an experienced Information Assurance Engineer / Security Manager to lead the development and management of security infrastructure.The ideal...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Systems Security Manager

Information Systems Security Manager

Georgia Tech • Arlington, VA, United States
[job_card.full_time] +1
Georgia Tech prides itself on its technological resources, collaborations, high-quality student body, and its commitment to building an outstanding and diverse community of learning, discovery, and...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
FISMA Information Security Engineer – Public Trust (Hybrid)

FISMA Information Security Engineer – Public Trust (Hybrid)

Peyton Resource Group • Bethesda, MD, United States
[job_card.permanent] +1
FISMA Information Security Engineer – Public Trust (Hybrid).FISMA Information Security Engineer to bridge technical security controls and federal compliance requirements. Immediate need to support t...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Systems Security Engineer

Senior Systems Security Engineer

AnaVation LLC • Washington, DC, United States
[job_card.full_time]
Senior System Security Engineer.Be Challenged and Make a Difference.In a world of technology, people make the difference. We believe that by investing in great people, great things will happen.At An...[show_more]
[last_updated.last_updated_variable_days] • [promoted]