Lancesoft logo

ISSO Specialist

Lancesoft
  • Lexington, MA
  • Quick Apply
30+ days ago

Job Description

This job is with Encode, Inc a fully owned subsidiary of Lancesoft

Develops and maintains an IS security program and policies for an assigned area of responsibility. Develops and oversees operational IS security implementation policy and guidelines. Monitors all available resources that provide warnings of system vulnerabilities or ongoing attacks. Monitors system recovery processes to ensure security features and procedures are properly restored and functioning correctly. Responsible for security assessments, tests, and reviews;ensuring proper measures are taken when an IS incident or vulnerability affecting classified systems or information is discovered. Ensures the application of configuration management policies and procedures for authorizing the use of hardware/software are followed. Ensures systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the SSP. Develops and updates the SSP, manages and controls changes to the system, and assesses the security impact of those changes. Ensures user activity monitoring data is analyzed, stored, and protected in accordance with the ITPSO policies and procedures.Develops and maintains POA&Ms in order to identify IS weaknesses, resources and timelines for corrective actions, and mitigate actions. Ensures all users have the requisite security clearances and authorization and are aware of their security responsibilities.
Enable Skills-Based Hiring No
Qualification Assessment
Must Have
Admin
System Auditing
4 years
Certification
Current DoD 8570 IAT Level II Certification (GSEC, Security+ Client, SSCP, CCNA-Security)
Yes
Experience
Regulatory & Compliance
4 years
Government Policy/Regulations
STIGs/SCAP
4 years
Security
Assessing Security Controls (CS105.16)
4 years
Assessment and Authorization
4 years
Authorizing Systems (CS106.16)
4 years
Categorization of the System (CS102.16)
4 years
Continuous Monitoring (CS200.16)
4 years
Implementation of Controls (CS104.16)
4 years
Monitoring Security Controls (CS107.16)
4 years
NIST 800-53
4 years
NIST SP 800-37
4 years
Risk Management Framework (RMF)
4 years
Selecting Security Controls (CS103.16)
4 years
Nice to Have
Degree Level
Bachelor's Degree
Yes
Security
HBSS
0 years
NIST 800-171
0 years
Background/Need
The team is in need of an additional ISSO candidate to continue work within the Cyber Security Team.
Virtual/Work from Home
Onsite
Other information relevant to the job requirement?
This role is supporting Air Force Programs and 
prefers candidates with mid-level experience:
* Assist and Support necessary compliance activities (e.G., ensure that system security configuration guidelines are followed, compliance monitoring occurs).
* Continuously validate the organization against policies/guidelines/procedures/regulations/laws to ensure compliance.
* Ensure that plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
* Promote awareness of security issues among management and ensure sound security principles are reflected in the organization's vision and goals.
* Track audit findings and recommendations to ensure that appropriate mitigation actions are taken.
* Recommend resource allocations required to securely operate and maintain an organization's cybersecurity requirements.
* Provide technical documents, incident reports, findings from computer examinations, summaries, and other situational awareness information to key stake holders. Recognize a possible security violation and take appropriate action to report the incident, as required.
* Assist the Program Managers and the Information System Security Manager (ISSM) in the development and maintenance of System Security Plans (SSP) and associated artifacts such as the Plan of Action & Milestones (POA&M), Risk Assessment Report, and Continuous Monitoring Strategy.
* Ensure systems are operated, maintained, and disposed of in accordance with organization security policies and procedures.
* Conduct network, system, and application vulnerability scanning, configuration assessment, and remediation.
* Lead and align information technology (IT) security priorities with the security strategy.
* Prepare for and participate in periodic organization compliance assessments. Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program.

Education and Certifications:
-BS degree is preferred but not required
-Security Plus is the minimum 8570 certification requirement.

-A TS clearance with SCI eligibility is required. Candidate may be required to pass a CI polygraph. You MUST discuss this with eligible candidates and please do not submit anyone that is not willing to participate in this. Supplier must validate SCI eligibility prior to submittal.

-Interview process will consist of a phone screen followed by an extensive zoom interview with the team members.

-This position is 100% onsite due to the nature of the work.

-The role will be onsite working primarily in a closed space. There is some flexibility on the work schedule (9/80 or 4/10 type schedules).
Level of Effort
Full-Time Basis
Will this position materially impact the conduct or direction of a research program(s)?
No
What level of clearance is required?
Top Secret

Work Location:
Lexington
MA
USA
02421

Numbers & Facts

LocationLexington, MA
IndustryStaffing/Employment Agencies
Company Size2,000 to 2,499 employees
Year Founded2000
Websitehttp://www.lancesoft.com/

About Company

We are a $125 Million, NMSDC-certified Minority & Woman owned Workforce Solutions Company headquartered in the DC metro area with presence across US with global presence - Canada, Mexico, India, UK, Malaysia, Indonasia, Hongkong, Singapore, UAE. We are specialized in providing Workforce Solutions, SOW project delivery, Engineering Solutions, Creative Services. We currently support 100+ Fortune companies globally and across multiple industry segments. We are currently supporting several massive programs across industry segment nationally/globally (Intel, Ally, AMD, QUALCOMM, Morgan Stanley, Kraft/ Mondelez, MNP, Amdocs, Dell, SanDisk, Medtronic, Becton Dickinson, GE, Lockheed Martin, UTC, L-3 Communications, Caterpillar, BMW, Mercedes Benz, National Grid, Dominion, Energy Future Holdings, PSEG, 3M, Fidelity, Aetna, Humana, Johnson & Johnson, Pfizer, Merck etc). 

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender, identity, national origin, disability, or protected veteran status.

Skills

  • Access Authorizationunmatched
  • Air Forceunmatched
  • CCNA - Cisco Certified Network Associateunmatched
  • Candidate Screeningunmatched
  • Change Controlunmatched
  • Change Managementunmatched
  • CompTIA Security+unmatched
  • Computer Securityunmatched
  • Configuration Managementunmatched
  • Corrective Actionunmatched
  • Data Analysisunmatched
  • DoD Directive 8140unmatched
  • DoD Directive 8570unmatched
  • GSEC - GIAC Security Essentials Certificationunmatched
  • Government Policiesunmatched
  • Government Regulationsunmatched
  • IAT - Information Assurance Technicalunmatched
  • Internet Securityunmatched
  • Maintain Complianceunmatched
  • Network Systemsunmatched
  • Operations Planningunmatched
  • Operations Security (OPSEC)unmatched
  • Policy Developmentunmatched
  • Policy Implementationunmatched
  • Procedure Developmentunmatched
  • Protective Servicesunmatched
  • Regulationsunmatched
  • Regulatory Complianceunmatched
  • Resource Managementunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • Risk Management Framework (RMF)unmatched
  • SSCP - Systems Security Certified Practitionerunmatched
  • Security Analysisunmatched
  • Security Clearanceunmatched
  • Security Monitoringunmatched
  • Security Policyunmatched
  • Systems Administration/Managementunmatched
  • Systems Analysisunmatched
  • Systems Maintenanceunmatched
  • Technical Writingunmatched
  • Testingunmatched
  • Vulnerability Scannersunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder