Information System Security Officer

Clearance Level
None
Category
Cyber and IT Risk Management
Location
Chantilly, Virginia
Key Skills For Success

Cybersecurity

Information System Security

It Communication

IT Security Management

NIST Risk Management Framework

REQ#: RQ222438
Public Trust: BI Full 6C (T4)
Requisition Type: Regular
Your Impact

Own your opportunity to work alongside federal civilian agencies. Make an impact by providing services that help the government ensure the well being and support of U.S. citizens.

Job Description

Job Description:

GDIT is seeking an Information Systems Security Officer (ISSO) to join our team supporting the U.S. Environmental Protection Agency (EPA) Office of Land and Emergency Management (OLEM) Office of Superfund and Emergency Management (OSEM) Analytical Services Branch (ASB). As the ISSO, you will develop and implement an information security program to ensure the operational security of a critical mission-support system.  You will update, maintain, and drive procedures and policies designed to protect the system from both internal and external threats.  The system is currently hosted in an AWS Cloud environment.

Performance shall include:

  • Identify cyber security vulnerabilities and assist with the implementation of appropriate mitigations or countermeasures
  • Conduct and support, when assessed or audited, periodic reviews of the information system to ensure compliance with the security and privacy authorization package (currently NIST 800-SP53 Rev. 4/5)
  • Coordinate changes to the system infrastructure or software to ensure continued compliance with security and privacy requirements
  • Coordinate the response to the annual continuous monitoring assessment audit, and ensure the system’s continued Authorization to Operate (ATO)
  • Ensure audit evidence is collected, reviewed, and documented, including any risk exceptions
  • Identify and notify the program manager when changes occur that might affect the authorization determination for the information system
  • Provide analysis of systems, hardware, software, and maintenance needs
  • Provide document review and updates of all security- and privacy-related documentation
  • Routinely review Tenable scan results and coordinate with team members to ensure vulnerabilities are addressed within the target remediation timeframes.
  • Routinely review Splunk reports to detect security threats, anomalous activities, unauthorized access, or other malicious behavior.
  • Develop, coordinate and conduct training and tabletop exercises related to continuity of operations, contingency planning, incident handling and response, awareness, disaster recovery, etc.
  • Coordinate with other EPA organizational entities to ensure compliance with EPA and other federal requirements, specifications, and reporting
  • Prepare reports on the status of system security and privacy, vulnerabilities, and responses to other customer inquiries and data calls

What You’ll Need to Succeed:

  • Education: Masters or Bachelor's degree in Computer Science, Information Security, Cyber Security, or relevant discipline
  • Required Experience: Eight (8) years of related experience. Without a master’s degree, ten (10) years of related experience is required.
  • Required Technical Skills
    • Prior performance in roles such as system administration, networking administration, or ISSO
    • Knowledge of NIST SP-800-53, Rev 4 and Rev 5
    • Familiarity with system security and privacy within cloud environments (AWS, specifically)
    • Demonstrated experience with risk management and auditing
  • Certifications
    • CISSP, CISA, CISM, and/or cloud-based security certification (e.g. CCSP, COMPTIA Cloud+, or equiv)preferred. 
  • Clearance Required: Position of Trust or greater (can be obtained after starting)
  • Excellent verbal and written communications skills, including the ability to communicate complicated technical and security concepts to both technical and non-technical stakeholders.
  • Knowledge of and experience with Environmental Protection Agency (EPA) security policies and procedures, while not required, would be advantageous.

Work Requirements

Years of Experience

8 + years of related experience

* may vary based on technical training, certification(s), or degree

Certification

Travel Required

None

Salary and Benefit Information

The likely salary range for this position is $124,093 - $149,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
View information about benefits and our total rewards program.

Our Identity Verification Process

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work

We are GDIT. A global technology and professional services company that delivers technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber and application development. Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.

Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans