Information Systems Security Officer
The Institute for Defense Analyses (IDA) has an immediate career opening for a Information Systems Security Officer (ISSO). This opening is located at IDA's Center for Communications Research in Princeton, New Jersey (CCRP). IDA offers a competitive salary, an excellent benefits package and a superior professional working environment. To the right individual, IDA offers the opportunity to have a major impact on key national programs while working in support of technical issues and projects.
The ISSO is responsible for ensuring the operational security of the classified and unclassified information systems (IS) at IDA Center for Communications Research located in Princeton, NJ (CCRP). The ISSO maintains System Security Plans (SSP) and related documentation, verifies that systems are operated securely, conducts periodic reviews, reports security incidents, authorizes security-relevant changes and provides security advice for the Center. Manages security-relevant processes and projects in the IT Department, including the change management process. Coordinates and manages projects across IT and security groups.
ISSO for classified and unclassified IS at CCR-P.
Maintains on-line SSPs and supporting documentation in accordance with Department of Defense, NIST and sponsoring agency guidelines.
Provides direct oversight for acquisition security vetting programs for IS procurements to include: Acquisition Security (ACQSEC), Baseline Exception Request (BER), and Procurement Authorization Request (PAR).
Coordinates penetration tests and external evaluations.
Participates in and validates monitoring, scanning and other security related activities required by the sponsor or indicated by best practices.
Manages IT change management process and tracks IT and IT security projects.
- Coordinates with sponsor personnel and other IDA units in implementing and overseeing security procedures. Responsible for coordinating IT security purchase requests, presenting to the Director of Computing for decision, and providing manager’s approval for final selections.
Advises the Information Technology group on required security configurations and assists with the development of technical security enhancements.
Implements information systems security training and awareness programs for users.
Monitors site compliance with information systems security requirements and programs developed by the sponsoring agency and IDA corporate IT policy.
Keeps management aware of system security issues.
Stays aware of relevant security policy and technology, and recommends appropriate policies and system changes.
Performs other duties as assigned.
Bachelor's Degree in an information technology area, or demonstrated equivalent experience (i.e., at least 5 years of specifically related background, in addition to the experience requirements below).
Three or more years’ experience as an ISSO or similar role is preferred, including experience with formal system certification and accreditation.
Possess or complete within 6 months DoD 8570.1-M certification at the IAM-3 level. Training or familiarity with RMF and controls as in NIST 800-53.
Familiarity with Linux and Microsoft Windows Server operating systems, and TCP/IP networking.
Familiarity with vulnerability scanning and assessment tools.
Exceptional communications skills, both orally and in writing, and good interpersonal skills.
U.S. citizenship with the ability to obtain and maintain a Top Secret and other security clearances.
U.S. Citizenship is required
Ability to obtain and maintain a security clearance is required
IDA is an equal opportunity employer committed to providing a fair recruiting process and working environment free from discrimination. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identify, national origin, disability or protected veteran status. Click here to learn more about IDA's commitment to diversity, equity, and inclusion.