logo inner

Senior Cyber Security Specialist - ISSO Lead

Spatial Front, IncWashington D.c., United StatesRemote, Onsite
This job is no longer open
ApplyJob Type
Full-timeDescription

Project Overview:


The Senior Cyber Security Team Lead/ISSO (Lead/ISSO) ensures cyber security compliance per contract requirements for a federal civilian client located in Washington DC.  The Lead/ISSO role leads and manages a small Security team that provides core security functions for a number of authorization boundaries.  The Lead/ISSO is an integral part of the contract and works closely on a daily basis with the Security Engineering Team, Operations Team, and other resources to ensure IT security is in compliance with Agency requirements.

 The Lead/ISSO is the primary role identifying, tracking, and advising on IT security risk for the contract.  

Summary of Major Job Functions:


This position is focused on leading a small cybersecurity team on tasks that include access management, security documentation (SSPPs, FIPS 199, PTAs, BIAs, CPs, and SIAs), scanning & vulnerability management, POA&M management, and inventory management.

Primary Responsibilities:


  • Ensuring that the cybersecurity practices implemented via the program are in compliance with Agency and contract requirements.
  • Identifying and implementing areas for process improvement within the team for security related responsibilities.
  • Documenting team processes and procedures.
  • Assigning security related work to team members and other resources and tracking that work to completion.
  • Writing SSPPs, FIPS 199s, PTA, BIAs, CPs, and SIAs for a variety of IT systems.
  • Ensuring authorization boundaries are in compliance with continuous monitoring requirements.
  • Review documentation completed by direct and non-direct reports to ensure compliance with Agency requirements.
  • Review IT changes to evaluate them for compliance with security requirements.
  • Overseeing and executing access management processes including authorization, implementation, and recertification. 
  • Overseeing and executing vulnerability management processes including scanning, analysis, tracking, and closure.
  • Managing POA&Ms to include writing the mini projects (action plans and milestones) and tracking them to completion.  
  • Working with technical resources to ensure that the boundary inventories are accurate and updated as required.
  • Work with cross-functional teams to scope, plan, conduct and document annual contingency plan testing.
  • Participate in incident response activities.
  • Serve as a subject matter expert regarding NIST security documentation, Agency security policy, and Executive Orders on security.
  • Function as a SME and liaison for internal and external security audits and assessments.
  • Preparing slides and briefings related to security.
  • Complete ad hoc security tasks as needed.

Requirements

  • 5-8 Years of relevant experience.
  • Experience with NIST security requirements 
  • Writing security documents.
  • Team organization and management.
  • Meeting planning and facilitation.
  • POA&M management.
  • Vulnerability management.
  • Experience with taking systems through the A&A process resulting in the award of a full ATO.
  • Excellent verbal and written communication skills.
  • The ability to track multiple workstreams simultaneously. 

Education/Experience:


  • Bachelor’s degree in computer science, Cyber Security or related discipline.
  • Minimum 5-8 years of relevant work experience.
  • Experience managing teams/direct reports.
  • Experience briefing upper level management on security issues.
  • Experience with process analysis and improvement.
  • Experience with analyzing vulnerabilities to identify false/positives.
  • Experience creating scan profiles and running web scans.
  • Experience with GRC tools, Jira, Google Apps, web and OS scanning tools.
  • Experience planning, managing, and running contingency plan testing.
  • Experience with incident response activities.
  • At least two (2) of the following:
  • ISC2 Certified System Security Professional (CISSP)
  • CompTIA Security+
  • ISC2 Certified Authorized Professional (CAP)

Additional Requirements:


  • Ability to pass a US Public Trust background investigation for access to the client site and computing systems. You must have lived in the US for the past three (3) years.
  • All candidates will be subject to a complete background check to include, but not limited to Criminal History, Education Verification, Professional Certification Verification, Verification of Previous Employment and Credit History.

Other Information:


  • The salary range for this position is $66,000 - $103,000 annually.
  • For information on SFI's benefits please visit http://www.spatialfront.com/pages/career.html
  • This is a full-time W-2 position.
  • Spatial Front Inc. is an Equal-opportunity Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
  • Spatial Front Inc. participates in E-Verify

Salary Description66,000 - 103,000

This job is no longer open

Life at Spatial Front, Inc

SFI effectively delivers the right Information Technology solutions and Business Support services using thoughtful analysis, strategic planning and precise execution. Our commitment to excellence in client services, product development and data management means that an attentive team of industry professionals will meet your needs in a straightforward, timely and cost effective manner. SFI is SBA 8(a) and WOSB socio-economic certified. We are also CMMI L3 appraised and ISO 9001 certified.
Thrive Here & What We Value1. Equalopportunity Employer2. Participates in EVerify3. No Agencies, Third Parties, or Corpto-Corp4. Provides Full Life Cycle Software Development /DevOps for a Federal Agency5. Offers Competitive Salary and Benefits Package6. Values teamwork, collaboration, and open communication among employees7. Spatial Front Inc. provides IT solutions to federal, state, and local governments, and the private sector8. Dynamic Team9. Rapidly expanding team10. Emphasis on innovation and collaboration
Your tracker settings

We use cookies and similar methods to recognize visitors and remember their preferences. We also use them to measure ad campaign effectiveness, target ads and analyze site traffic. To learn more about these methods, including how to disable them, view our Cookie Policy or Privacy Policy.

By tapping `Accept`, you consent to the use of these methods by us and third parties. You can always change your tracker preferences by visiting our Cookie Policy.

logo innerThatStartupJob
Discover the best startup and their job positions, all in one place.
Copyright © 2024