What are the responsibilities and job description for the Information Security Officer position at ARK Solutions Inc.?
Title: Information System Security Officer
Location: - Washington, DC (Hybrid)
Hire Type: Contract
Summary
Hybrid role required 3 days onsite and 2 days remote per week; (Hybrid)
Day-to-day Responsibilities:
Conduct continuous monitoring activities, to include:
Maintenance of current ATO
Conducting periodic system self-assessments
Review periodic vulnerability scan reports and compliance reports
Ensure stakeholders are performing system log reviews as defined in the SSP
Ensure assigned IT system user accounts are periodically reviewed for accuracy and completeness
Work with technical teams to mitigate security control deficiencies and vulnerabilities for assigned IT systems.
Assess the cybersecurity impact of changes to assigned IT systems and document findings in a SIA report and brief stakeholders.
Conduct self-assessments of security controls, identify weaknesses and track remediation activities in POA&M.
Manage the POA&M process for designated IT systems to provide timely detection, identification and alerting of non-compliance issues. In coordination with SO staff, create POA&Ms or remediation plans for vulnerabilities identified during risk assessments, audits, inspections, etc.
Provide the required system access, information, and documentation to security assessment and audit teams.
Required Skills:
Risk Management Framework (RMF), System Security Plan (SSP), Plan of Action and Milestones (POA&M), Authorization to Operate (ATO), Security Impact Analysis (SIA), Information Sensitivity Security Assessment, Information Technology Risk Acceptances, Configuration Management Plan, Supply Chain Risk Management Plan, Interconnection Security Agreements, Memorandums of Understanding, Information Data Exchange Agreements, Vulnerability Reports.
Preferred Skills:
Risk Management Framework (RMF), System Security Plan (SSP), Plan of Action and Milestones (POA&M), Authorization to Operate (ATO), Security Impact Analysis (SIA), Information Sensitivity Security Assessment, Information Technology Risk Acceptances
Configuration Management Plan, Supply Chain Risk Management Plan, Interconnection Security Agreements, Memorandums of Understanding, Information Data Exchange Agreements, Vulnerability Reports.
Expected Deliverables:
Cybersecurity Staff Augmentation
Education:
Bachelor's Degree, preferable in Computer Science, Information Technology, or Cybersecurity
Job Type: Contract
Pay: $60.00 - $65.00 per hour
Work Location: Hybrid remote in Washington, DC 20005
Salary : $60 - $65