ironquill.tech/board

$ cat jobs/information-system-security-officer-isso-nxtkeycorporation-d8b8a2f7269d.json

Information System Security Officer / ISSO

Nxtkeycorporation·Worldwide·Washington, US·mid
Apply on smartrecruiters → Get AI match score →
NXTKey provides commercial and government entities with the horsepower to drive their business machine faster and more efficiently to successful outcomes. To support our customers needs; we excel at providing Cyber Security, Enterprise Information Management, ICT Consulting, Development, Project Management and Business Process Services and Solutions. Information System Security Officer / ISSO duties include: Perform Certification & Accreditation (C&A), System Assessment & Authorization (SA&A) as part of NIST SP 800-37 Risk Management Framework (RMF) system and application accreditation Prepare Vulnerability Scanning test plans, coordinate testing, and conduct scans using Nessus, Foundstone, WebInspect, Hailstorm and other scan applications Evaluation of the assigned information systems’ security control compliance with the federal requirements and the client’s monitoring strategy Management of emerging and defined risks associated with the administration and use of assigned information systems Coordination with the client’s Cybersecurity Unit to achieve and maintain the information systems’ compliance and authorization to operate (ATO) Ensuring systems are operated, maintained, and disposed of in accordance with policies outlined in the approved security authorization package Performing annual assessments to ensure compliance with the client’s policies and standards Serve as a member of the Configuration Control Board (CCB) to ensure configuration management for Cybersecurity-relevant software, hardware, and firmware is maintained and documented Ensuring information system security requirement are addressed during all phases of information systems lifecycle Establishing audit trails, ensuring their review, and making them available while retaining audit logs in accordance of DOJ and component policies Generate and interpret documentation needed to address the items detailed within the GRC tool Work within a team environment to provide technically sound guidance orde