What are the responsibilities and job description for the SECURITY SPECIALIST/ISSO position at Quantum Research International Inc?
Quantum Research International, Inc. (Quantum) provides our national defense and federal civilian and industry customers with services and products in the following main areas: 1) Cybersecurity and Information Operations; 2) Space Operations and Control; 3) Aviation Systems; 4) Ground, Air and Missile Defense, and Fires Support Systems; 5) Intelligence Programs Support; 6) Experimentation and Test; 7) Program Management; and (8) Audio/Visual Technology Applications. Quantum's Corporate Office is located in Huntsville, AL, but Quantum actively hires for positions nationwide and internationally. We pride ourselves on providing high quality support to the U.S. Government and our Nation's Warfighters. In addition to our corporate office, we have physical locations in Aberdeen, MD; Colorado Springs, CO; Crestview, FL; Orlando, FL and Tupelo, MS.
Responsibilities:
- Serve as an advisor; to the program on all matters, technical and otherwise, involving the security requirements of an Information System (IS) based on the applicable NIST standards.
- Maintain responsibility for the day-to-day security operations of the system.
- Security Control Validation Visits
- Secure Configuration and Change management
- Event Management
- Account Management
- Vulnerability Management
- Security Incident Management
- POAM Management
- Initial Authorization, Reauthorization, and Decommissioning of Information Systems
- Collaborate with the System Owner to maintain Approval to Operate (ATO), including the resolution of any POA&M documents issued by the DAO.
- Maintain and validate account and vulnerability management
- Develop and provide update System security Plans (SSPs) and supporting documentation (e.g., SECONOPs, diagrams, Privileged User's Guide)
- Prepare Security Impact Assessments (SIAs) for all System Change Requests (SCRs) for Configuration Control Board (CCB) review.
- Provide security design guidance and analysis to the project team throughout the RMF process
- Collaborate with the Program System Engineer in the design, build, and self-test of systems
- Perform reviews of technical security assessments of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations, and recommended mitigation strategies
- Joint Management Network (JMN) experience for establishing requirements and achieving approval to operate on the network.
- Minimum of a Bachelor of Science (BS) degree in Computer Science, Information Systems, Mathematics, Engineering, or five (5) years of comparable work experience. Progressive and demonstrated enterprise security engineering and security management experience.
- ISSO with 2 years of verifiable experience
- Possess acute knowledge and practical experience of DoD 8510 and NIST 800-53 Risk Management Framework, respectively. ISSO must be DoD 8570 compliant at IA Technical (IAT)/IA management (IAM) Level 2 (Sec or equivalent or higher certifications). CISSP (Certified Information Systems Professional) is a plus.
- Enterprise Mission Assurance Support Service (eMASS) training/experience
- Analytical and effectively able to troubleshoot and prioritize needs, requirements, and other issues.
- Security clearance Secret Security level with ability to obtain/maintain a TS /SCI when required
Equal Opportunity Employer/Affirmative Action Employer M/F/D/V:
ll qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, veteran status, genetic information, sexual orientation, gender identity, or any other characteristic protected by law. *Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
#LI-JL1 #LI-Onsite