Job Description Join BAE Systems Intelligence and Security sector and be a part of a team who solves some of the worlds most complex technical challenges. We are looking for a Information Systems Security Officer (ISSO) to job our diverse and dedicate team.
As a Senior Information Systems Security Officer you will be responsible for safeguarding an organizations computer networks and systems to the highest standards. The primary focus is on ensuring the security, integrity, and confidentiality of data within these systems. In this role, you will:
- Conduct research, develop, implement, test and review an applications information security to ensure compliance with DoD/NIST RMF requirements
- Direct contractor staff about security measures, explain potential threats, implement security measures, and monitor applications in order to meet or exceed all DoD/NIST RMF requirements
- Design, develop, implement and/or integrate IA and security systems and system components including those for networking, computing, and enclave environments to include those with multiple enclaves and with differing data protection/classification requirements.
- Analyze architecture and system functionality for multiple technologies.
- Contribute to the development and evaluation of attack scenarios.
- Prepare and delivers technical reports and briefings.
- Have a complete understanding of Risk Management Framework and how to implement the process on program systems/networks.
- Perform, or review, technical security assessments of computing environments to identify points of vulnerability, non-compliance with established IA standards and regulations, and recommend mitigation strategies.
- Validate and verifie system security requirements definitions and analysis and establishes system security designs.
- Assist architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application security policy and enterprise solutions.
- Support the building of security architectures.
- Enforce the design and implementation of trusted relations among external systems and architectures.
- Assess and mitigate system security threats/risks throughout the program life cycle.
- Contribute to the security planning, assessment, risk analysis, risk management, certification and awareness activities for system and networking operations.
- Review certification and accreditation (C&A) documentation, providing feedback on completeness and compliance of its content.
- Perform system installation, configuration maintenance, account maintenance, signature maintenance, patch management, and troubleshooting of operational IA and CND systems.
- Perform limited penetration testing and routine exploit analysis.
- Perform system or network designs that encompass multiple enclaves, to include those with differing data protection/classification requirements.
- Recommend system-level solutions to resolve security requirements.
Support the Government in the enforcement of the design and implementation of trusted relationships among external systems and architectures.