Information Systems Security Officer
hace 1 día
ISSO
Employment Type: Full-Time, Experienced
Department: Information Technology
CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you’ll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.
Skills and attributes for success:
- Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades.
- Maintain responsibility for managing cybersecurity risk from an organizational perspective.
- Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.
- Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.
- Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).
- Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.
- Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.
- Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes.
- Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.
- Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems.
Qualifications:
- Bachelor’s Degree.
- A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.
- eMASS experience.
- Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.
- Strong desktop publishing skills using Microsoft Word and Excel.
- Experience with industry writing styles such as grammar, sentence form, and structure.
- Ability to multi-task in a deadline-oriented environment.
Ideally, you will also have:
- CISSP, CASP, or a similar certificate is preferred.
- Master's Degree in Cybersecurity or related field.
- Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.
- Demonstrated ability to work well independently and as a part of a team.
- Excellent work ethic and a high commitment to quality.
Our Commitment:
Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client’s specific needs. We are committed to solving the most challenging and dynamic problems.
For the past seven years, we’ve been growing our government contracting portfolio, and along the way, we’ve created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work.
Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come.
We care about our employees. Therefore, we offer a comprehensive benefits package.
Health, Dental, and Vision
Life Insurance
401k
Flexible Spending Account (Health, Dependent Care, and Commuter)
Paid Time Off and Observance of State/Federal Holidays
Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disabilit
-
Chief Information Security Officer
hace 4 días
28223 Pozuelo de Alarcón, Madrid provincia, España IMDEA Software Institute A tiempo completoThe IMDEA Software Institute (Madrid Institute for Advanced Studies in Software Development Technologies) is a non-profit research institute promoted by the Regional Government of Madrid, Spain. The Institute’s goal is to perform the research of excellence required to devise methods that enable the cost-effective development of software products with...
-
Information Security Controls Management
hace 2 semanas
Boecillo, Valladolid provincia, España GMV A tiempo completoIf you dream of being a spy, but you've never liked Martini.... Your place is at GMV! We are expanding our **Information Security team** to take on projects in **sectors **such as: Banking, public administration, telecommunications, automotive, etc... Where we carry out**_ compliance and risk analysis, implementation and maintenance of Management Systems,...
-
SQL Dba
hace 1 día
Alburquerque, Badajoz provincia, España Contact Government Services, LLC A tiempo completoSQL DBA / Systems Analyst Employment Type: Full Time, Mid-level Department: Information Technology CGS is seeking a SQL DBA / Systems Analyst to join our team supporting a wide-ranging technical support initiative for a large Federal agency. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth...
-
Information Security Engineer, Product Security
hace 2 semanas
Málaga, Málaga provincia, España Google A tiempo completo**Minimum qualifications**: - Bachelor's degree in Computer Science, a related technical field, or equivalent practical experience. - Experience in security assessment and security domain. - Experience in code reviews. **Preferred qualifications**: - Experience in security testing and pen testing. - Experience in consulting. - Excellent communication...
-
Relativity Senior Systems Administrator
hace 1 día
Alburquerque, Badajoz provincia, España Contact Government Services, LLC A tiempo completoRelativity Senior Systems Administrator Employment Type: Full Time Department: Legal/IT We are seeking a Relativity Sr. Systems Administrator to join our team! You will handle a variety of projects to support and improve the organization’s network systems. Here at CGS, we offer an environment in which our employees feel supported, and we encourage...
-
Senior Systems Administrator
hace 1 día
Alburquerque, Badajoz provincia, España Contact Government Services, LLC A tiempo completoSenior Systems Administrator Employment Type: Full Time, Senior-level Department: Legal/IT CGS is seeking a Senior Systems Administrator to join our team supporting a wide-ranging technical support initiative for a large Federal agency. Skills and attributes for success: - This individual will manage the archiving of Relativity databases. To that end...
-
Service Desk Agent
hace 1 día
Alburquerque, Badajoz provincia, España Contact Government Services, LLC A tiempo completoService Desk Agent Employment Type: Full-Time, Mid Level Department: Information Technology CGS is seeking a Remote Service Desk Technician who will be responsible for answering calls, logging the calls in the ticketing system, and providing the customers with rapid and accurate answers and information. This will require the individual to possess an IT...
-
Senior Information Security Analyst
hace 1 semana
Málaga, Málaga provincia, España Ebury A tiempo completoEbury is a hyper-growth FinTech firm, named in 2021 as one of the top 15 European Fintechs to work for by AltFi. We offer a range of products including FX risk management, trade finance, currency accounts, international payments and API integration. **Senior Information Security Analyst** **Location: Ebury Malaga - 4 days in the office and 1 day from home...
-
Third Party Risk Analyst
hace 1 semana
Alicante provincia, España Barclay Simpson A tiempo completoInformation Security Third Party Risk Analyst required for market-leading law firm that are undertaking an Information Security Third-Party Risk programme. The role will be focused on assisting with general supply chain information risk management. The Supply Chain Information Risk team is responsible for highlighting and making informed recommendations in...
-
Jira Lead Administrator
hace 1 día
Alburquerque, Badajoz provincia, España Contact Government Services, LLC A tiempo completoJira Lead Admin Employment Type: Full-Time, Mid Level Department: Information Technology Skills and attributes for success: - Create custom projects in Atlassian tool suite for complex workflows to meet business needs. - Provide advanced configuration of the Atlassian suite of tools to promote CI/CD. - Create and maintain Jira and Confluence...