Role OverviewBase-2 Solutions is seeking an Information System Security Officer to work with application leads, system administrators, database administrators, developers, and testers to ensure assigned systems are security compliant and achieve or maintain Authority to Operate (ATO).
What You Will Do
Work with application leads, system administrators, database administrators, developers, and testers to ensure assigned systems are security compliant and achieve or maintain ATO. Follow the Risk Management Framework (RMF) process for full test, partial test, continuous monitoring (CONMON), and no test scenarios. Update Xacta documentation including System Security Plans (SSPs), Security Control Trace Matrices (SCTM), Security Test Plans (STPs), and Plans of Action and Milestones (POAMs).
Why It Might Be a Fit
The specialist will load artifacts such as Security Technical Implementation Guide (STIG) checklists and ACAS scans, help implement STIG checklists, mitigate scan findings, and support security assessment events by responding to questions from the Security Test and Evaluation (ST&E) team, Information System Security Managers (ISSMs), and Security Control Assessors (SCAs).
Requirements
- Bachelor's degree in computer science, software engineering, or a field applicable to the position
- 9 or more years of relevant experience
- Demonstrated experience in developing, implementing, and enforcing security policies, standards, and procedures
- Proven track record in conducting risk assessments and identifying vulnerabilities
- Experience in developing and overseeing implementation of mitigation strategies
- Strong background in monitoring systems and networks for security breaches and suspicious activity
- Successful history of responding to security incidents, investigating root causes, and implementing corrective actions
]]>