Cybersecurity Analyst / Information Systems Security Officer (ISSO)
Core
Ensure systems are operated, maintained, and disposed of in accordance with security policies; conduct vulnerability management, risk assessments, and RMF compliance activities for control systems and IT components.
Role type
Cybersecurity Analyst / Information Systems Security Officer (ISSO)
Builds
Secure control systems and IT infrastructure for national security and intelligence communities
Domain
National Security / Defense / Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Vulnerability management, Risk Management Framework (RMF) implementation, Security policy application, Patch management, Configuration management, Asset management, Security auditing, Network scanning, Compliance documentation
Preferred skills
Agile Lifecycle management, Security control assessment, POA&M management, eMASS/XACTA documentation, IAVM experience
Technologies
DoDRMF Rev.4/5, NIST standards, DISA STIG, eMASS, XACTA
Responsibilities
Convert accreditation packages from DoDRMF Rev. 4 to Rev. 5, Compile and track vulnerabilities and mitigation results, Apply security policies to meet system objectives, Establish and maintain security configuration baselines, Implement RMF Assessment requirements, Perform asset management and inventory maintenance, Mitigate security deficiencies identified during testing, Conduct network and host-based scans to identify vulnerabilities, Develop and execute security control assessment procedures, Ensure vulnerabilities are documented in POA&M, Advise ISSM of compliance issues and status
Seniority
Mid-level, hands-on IC