Information Systems Security Officer
Information Systems Security Officer Program Summary: KBR's Mission Engineering Division delivers complex technical solutions and expert support to the U.S. Department of War, specializing in modeling and simulation, cyber transformation, air vehicle mission integration, and lifecycle support. As a trusted partner with a proven history in mission technology, KBR collaborates closely with clients to develop innovative and effective solutions. With a strong ethical framework, KBR prioritizes data security, privacy, and responsible information management to ensure mission success. Job Summary: KBR is seeking a Information Systems Security Officer (ISSO) for Government information systems in support of a Program Management Activity (PMA). The job does not offer remote work; all work will be done onsite. Travel for the position will be Roles and Responsibilities:
- Perform extensive assessments of systems and networks within a networking environment or enclave to identify deviations from acceptable configurations, enclave policy, or local policy
- Conduct both passive evaluations (compliance audits) and active evaluations (vulnerability assessments)
- Establish and maintain strict program control processes to mitigate risk and support system certification and accreditation
- Provide support across multiple areas, including:
- Process support and analysis support
- Coordination support
- Security certification test support
- Security documentation support
- Investigations and software research
- Introduction and release of new software
- Emerging technology research, inspections, and periodic audits
- Assist in implementing required government security policies (e.g., RMF, NISPOM, JSIG) and recommend appropriate process tailoring
- Perform in-depth analyses to validate existing security requirements and recommend additional security controls and safeguards
- Support formal Security Test and Evaluation (ST&E) activities by:
- Conducting pre-test preparations
- Participating in security tests
- Analyzing test results
- Preparing required reports
- Periodically review system audits and monitor corrective actions until all findings are fully resolved
- Bachelor's degree in Computer and Architecture Information Systems Management or a related field from an accredited college or university, or equivalent experience, is required
- Five (5) to twelve (12) or more years of combined experience performing related duties
- An Associate's degree plus an additional nine (9) to sixteen (16) years of relevant experience may be substituted for a Bachelor's degree
- A high school diploma plus an additional thirteen (13) to twenty (20) years of relevant experience may be substituted for a Bachelor's degree
- A minimum of two (2) years of experience with mid-sized client/server systems in systems analysis, software design, software development, and system administration
- Experience with DoD M 5205.07 Series, Risk Management Framework (RMF), and Joint SAP Implementation Guide (JSIG) requirements
- Knowledge of quality assurance, quality control, and independent verification and validation (IV&V) techniques
- Experience working independently and as part of a team to research data and develop analytical techniques and methodologies
- Experience managing secure Information Systems (IS) and databases, including implementing and maintaining cross-domain solutions
- Current Information Assurance Manager (IAM) Level I certification in accordance with DoD 8570.01-M, or the ability to obtain IAM Level I certification within six (6) months
- Ability to successfully undergo a government security investigation and meet eligibility requirements for access to classified information; active Secret clearance required
- Implement the Risk Management Framework (RMF) in accordance with NIST SP 800 and the Joint Special Access Program Implementation Guide (JSIG)
- Participate in the development and maintenance of System Security Plans (SSPs) and Contingency Plans for all assigned systems
- Draft, maintain, and manage security artifacts, including System Security Checklists, Privacy Impact Assessments (PIAs), Plans of Action and Milestones (POA&Ms), and Authority to Operate (ATO) documentation
- Develop and manage POA&Ms for identified vulnerabilities and ensure compliance through monthly and quarterly updates
- Maintain an inventory of all assigned Information Security Systems
- Develop Assessment and Authorization (A&A) deliverables, including SSPs, Security Assessment Reports (SARs), Contingency Plans (CPs), and POA&Ms for review and approval by the Authorizing Official
- Monitor and conduct Security Control Assessments to ensure controls meet security requirements outlined in the SSP, NIST SP 800-53, and JSIG
- Effectively communicate technical security information to non-technical personnel
- Coordinate with organizational leadership to ensure timely compliance with security and regulatory requirements
- Develop waivers and exceptions for identified information system vulnerabilities
Recommended Jobs
Front End Supervisor/Department Area Supervisor
Department Area Supervisor - dd's Discounts POSITION OVERVIEW: The Department Area Supervisor assists the Store Manager in managing and controlling the operations of the store to ensure that co…
Executive and Administrative Coordinator
Koreatown Immigrant Workers Alliance Executive and Administrative Coordinator Based in Los Angeles, CA About KIWA KIWA is a multiracial worker center, with roots in the Korean democr…
Solution Sales Expert - Supply Chain Management - Business Network (West)
We help the world run better At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and w…
Senior Scientific Business Systems Analyst
Locations: Boston, MA North Chicago, IL San Diego, CA **This role will require regular on-site presence (3 - 4 days / week) at client site(s)** **This role is not eligible for relocation …
Chief, Hospital and Business Applications - Hybrid Telework
Job Description and Duties Under the general direction of an Information Technology Manager II, the Information Technology Manager I manages three (3) Information Technology Supervisor IIs and pro…
Housekeeper. WorldMark Solvang Resort
We Put the World on Vacation Travel + Leisure Co. is the world’s leading vacation ownership and travel membership company, with a dynamic and growing portfolio of resort, travel club, and lifestyl…
Channel Sales Manager - Anthropic
Deloitte is currently seeking candidates for our Channel Sales national role focused on our Anthropic alliance. The Anthropic Channel Sales Manager will have strong project management skills, attentio…
Sr. Director, Acceptance Risk Solutions Lead
Job Description As the Head of Acceptance Risk & Security Solutions Management in North America, you will own the strategy, prioritization, commercialization, and revenue delivery for Visa’s accept…
Analyst - BCG Vantage, Organization Design, Operating Model, and Cost Transformations - Los Angeles
Analyst - BCG Vantage, Organization Design, Operating Model, and Cost Transformations - Los Angeles, United States of America Locations : Dallas | Chicago | Los Angeles Who We Are Boston Co…
Engineer I
POSITION SUMMARY Respond and attend to guest repair requests. Communicate with guests/customers to resolve maintenance issues. Perform preventive maintenance on tools and kitchen and mechanica…