Why This Role Stands Out
Leverage your extensive cybersecurity expertise to safeguard critical national defense systems at the Pentagon, gaining invaluable experience with the Risk Management Framework and cutting-edge security tools. This on-site role offers a unique opportunity to make a significant impact within a highly reputable organization while developing your skills in a dynamic, fast-paced environment.
Quick Overview
Job Description
Full Req: Overview: Leidos is seeking an experienced Information System Security Officer (ISSO) / Security Impact Assessment (SIA) professional to support a government customer onsite at the Pentagon. The position will support Risk Management Framework (RMF) activities for the 844CS National Military Command Center (NMCC). The role requires strong initiative, organization, communication, customer service, and the ability to operate in a fast-paced environment.
Responsibilities
- Run and review Evaluate STIG scans and manually validate STIG checklists.
- Analyze vulnerability scans and STIG results to identify critical open vulnerabilities requiring remediation.
- Work with system owners and work centers to close, mitigate, or document vulnerabilities through POA&Ms.
- Identify risks and impacts and recommend appropriate mitigation strategies.
- Provide remediation recommendations based on DoW and Air Force guidance and directives.
- Validate system hardware/software inventories against system assets.
- Create and maintain SOPs and Work Instructions.
- Create and track POA&Ms throughout the System Impact Assessment lifecycle.
- Create Remedy tickets to track STIG implementation.
- Complete monthly application STIG status reports and POA&M updates.
- Complete and validate STIG/SRG checklists for RMF on a quarterly basis.
- Provide management status reports and document system changes.
- Develop and maintain POA&Ms and support remediation activities.
- Support continuous monitoring and POA&M activities.
Required Qualifications
- Bachelor's degree or equivalent work experience and certifications.
- Current DoD 8570 IAT II certification, including GSEC, Security+, SCNP, or SSCP.
- 8-10 years of cybersecurity experience.
- Familiarity with the DoD STIG process.
- Excellent verbal and written communication skills.
- Familiarity with ACAS, eMASS, and XACTA.
Desired Qualifications
- Nessus experience.
- Systems administration experience.
- Experience with CCRI scoring.
- Security Control Knowledge and Self-Assessment experience.
- Experience obtaining an ATO and taking a system through the full RMF process.
Schedule: Dayshift; core support hours are 0600-1800.
Similar jobs
- SY
Senior Linux Systems Administrator [$214k/yr+] TS/SCI-FS Poly with Security Clearance
NewSYSTOLIC
Annapolis Junction, MD🇺🇸$214k/yrHybridYesterdayScrumAgileConfluence+1Technology - RI
PLM Administrator
NewRadiant Industries
El Segundo🇺🇸13 hours agoSQLCADCompliance+5 - PR
Salesforce Administrator
NewProArch
Atlanta, Georgia🇺🇸Remote16 hours agoSalesforceAgileTechnology - HA
Associate, Systems Engineer
NewHarris Corporation
Salt Lake City, UT🇺🇸HybridYesterdayTechnology - SP
Video & Voice Systems Administrator
NewSpaceX
Memphis, TN🇺🇸On-siteYesterdayCADInventory ManagementProcurementTechnology - LT
Lead, Systems Engineer with Security Clearance
NewL3Harris Technologies
Melbourne, FL🇺🇸HybridYesterdayAWSAgileTerraformTechnology