Source description
About the role
Perform the duties of an Information System Security Officer (ISSO) as defined in AR 25-2, DA 25-2-14, and NIST SP 800-53 security controls.
Actively manage the organization’s eMASS records, including control validation and artifact association.
Assess security scan results and DISA STIGs to identify and mitigate system vulnerabilities.
Perform POA&M updates, tracking, and resolution to ensure timely remediation of security findings.
Lead continuous monitoring activities to maintain the ongoing security posture of the organization.
Manage the day-to-day activities and professional development of a team of Cybersecurity Analysts.
Collaborate with the O-ISSM on assessment and authorization (A&A) activities to ensure systems maintain an ATO on DoD/IC networks.
Maintain up-to-date status on all assigned systems and communicate risk posture to Government leadership.
Correspond with system administrators to communicate unacceptable risks and correct deficient POA&M items.
Coordinate with the Security Control Assessor (SCA) to analyze the overall risk level the system poses to enterprise networks and mission data.
Create and maintain cybersecurity policies, standards, and security testing plans aligned with Army G2 policy.
Produce actionable, risk-based reports on security assessment results and assist with vulnerability remediation.
Develop and improve risk models, metrics, and processes to stay compliant with evolving DoD and IC standards.
Provide guidance in the creation of Standard Operating Procedures (SOPs) and Tactics, Techniques, and Procedures (TTPs).
More at Redhorse
Related open roles
Cyber Security Engineer
United States · Onsite
Systems Architect
United States · Onsite
Senior Cybersecurity Engineer
United States · Onsite
Senior CNO Systems Engineer
United States · Onsite
Cyber Security Engineer V
United States · Onsite
Cyber Security Engineer II
United States · Onsite
