Information Systems Security Officer

We harness the power of innovation so that you can change the world and help our customers solve their most complex challenges

Virginia
Office
R175520
Cyber Security
Top Secret SCI
Additional posting locations:
Abstract digital landscape showing a grid pattern of interconnected lines and dots on a dark background, creating a sense of depth and perspective.
In a world of possibilities, pursue one with endless opportunities. Imagine Next!

 

At Parsons, you can imagine a career where you thrive, work with exceptional people, and be yourself. Guided by our leadership vision of valuing people, embracing agility, and fostering growth, we cultivate an innovative culture that empowers you to achieve your full potential. Unleash your talent and redefine what’s possible.

 

Job Description:

In this role as a Information systems security Officer you will develop, maintain, and implement information security standards, procedures, and guidelines for systems and applications in accordance with corporate and DoD/IC governance. In addition, you will ensure that systems and organizational asset security posture prevents unauthorized access/disclosure, and monitor system CIA, assist in threat identification, and support DRP/IRP operations.

What You'll Be Doing:

  • Meeting IA and cybersecurity requirements for the systems in accordance with relevant Intelligence Community Directives (ICDs), National Institute of Standards and Technology (NIST) Special Publications, and guidance provided by cognizant program Authorizing Official(s).
  • Implementing and maintaining all aspects of cybersecurity engineering support in accordance with program-applicable federal, DoD, and agency-specific security initiatives.  Supporting verification of system hardware cybersecurity compliance.
  • Implementing relevant DoD accreditation/certification policies and procedures for DoD Information Technology (IT) during the program for delivered systems.
  • Monitoring, evaluating, and applying cybersecurity alerts/notifications from authoritative sources to ensure relevant current data is being utilized to maintain a secure baseline.
  • Maintaining hardware baselines and conditions that allow vulnerability scanning tools to maintain compliance with relevant security controls and policies, IA vulnerability alerts, and cybersecurity Security Technical Implementation Guides (STIGs).
  • Guiding the application of the Risk Management Framework (RMF) process to system hardware instantiations on U.S. Government unclassified and classified systems and networks, as required.
  • Supporting Hydra by providing information needed for input, assessment, and update of security controls into the appropriate management systems of record (e.g., Enterprise Mission Assurance Support Service (eMASS)).
  • Assisting with the development of hardware Assessment and Authorization (A&A) documentation and security compliance packages needed to obtain various Authorities to Operate (ATOs) for specific networks and systems.
  • Supporting the development of Program of Actions and Milestones (POAMs) associated with the ATO process.
  • Supporting the development and maintenance of a program architecture and technology roadmap incorporating cybersecurity requirements to comply with the Department of Defense Architecture Framework (DoDAF).
  • Performs assessments of systems and networks within the networking environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations (compliance audits) and active evaluations (vulnerability assessments).
  • Establishes strict program control processes to ensure mitigation of risks and supports for obtaining certification and accreditation of systems. This includes process support, analysis support, coordination support, security certification test support, security documentation support, investigations, software research, hardware introduction and release, emerging technology research inspections, and periodic audits.
  • Assists in the implementation of required government policy (e.g.,, NISPOM, JSIG, CNSSI, ISOI, DoDI, etc.), and makes recommendations on process tailoring.
  • Supports the formal Security Test & Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports.
  • Periodically conducts a review of each system’s audits and monitors corrective actions until all actions are closed.
  • Demonstrates advanced subject matter expertise in job family.
  • Contributes to and may lead the planning and implementation of large programs in the function, and regularly interfaces with senior management and executive leadership.
  • Assists system integration/deployment efforts by providing hands on support to ensure security solutions/control mitigations exist on systems under test as well as production networks.
  • Work with engineering staff to investigate and field technical solutions and address vulnerability mitigation strategies.
  • Performs other responsibilities associated with this position as may be appropriate.
  • Support cyber and company leadership meeting objectives for ongoing projects in ALL areas of the RMF and risk assessment/mitigation/reporting process.
  • Serves as the primary interface with corporate and mission partner(s) to increase overall security posture.

What Required Skills You'll Bring:

  • Minimum of a BS in Cyber Operations/Computer Science or related field
  • Minimum of 10 years of total work experience
  • Minimum of 5 years of related experience with Risk Management Framework (RMF).​
  • An active IAT II / IAM I Level certification 
  • Intermediate/working knowledge of: Linux (ROCKY/RHEL/UBUNTU), Windows (Server, Workstation), VMWare (Other virtualization platforms), Networking devices (Cisco/Palo alto/Juniper)
  • Expert knowledge of:
    • Compliance/Vulnerability evaluation and assessment tools: SCAP/STIG Viewer, ACAS / OSCAP / OWASP
    • RMF system(s) experience: eMASS / Xacta / SCTM
    • AV/Malicious code detection tools: HBSS / Symantec (Other HIPS, HIDS, NIPS, NIDS tools)
    • SIEM tools/LCE(s): SPLUNK, Cornerbowl, Tenable LCE, etc.
    • Software evaluation tools: SonarQube, Fortify, etc.
  • Active Top Secret w/SCI eligibility and ability to obtain CI Polygraph.

What Desired Skills You'll Bring:

  • Strong leadership skills
  • Management experience
  • Ability to work with minimal oversight
  • An active CASP+ CECCNP – Security+, CISA, CISSP, GCED, GCIH, CCSP or CISSP
  • Experience with AWS and other cloud platforms
  • Familiarity working with IC and DoD community partners and special programs

Security Clearance Requirement:

An active Top Secret SCI security clearance is required for this position.​

This position is part of our Federal Solutions team.

The Federal Solutions segment delivers resources to our US government customers that ensure the success of missions around the globe. Our intelligent employees drive the state of the art as they provide services and solutions in the areas of defense, security, intelligence, infrastructure, and environmental. We promote a culture of excellence and close-knit teams that take pride in delivering, protecting, and sustaining our nation's most critical assets, from Earth to cyberspace. Throughout the company, our people are anticipating what’s next to deliver the solutions our customers need now.

Salary Range: $120,800.00 - $217,400.00

Parsons is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, veteran status or any other protected status.

We truly invest and care about our employee’s wellbeing and provide endless growth opportunities as the sky is the limit, so aim for the stars! Imagine next and join the Parsons quest—APPLY TODAY!

Parsons is aware of fraudulent recruitment practices. To learn more about recruitment fraud and how to report it, please refer to https://www.parsons.com/fraudulent-recruitment/.

COMPETITIVE BENEFIT OFFERINGS

Financial Wellness

We care about your financial wellbeing. Parsons offers competitive pay and retirement plans to help you build wealth for the future while giving you the flexibility to diversify your investments.

Work Life Harmony

Balance in life is important and time away from the office is imperative to allow you to refresh and focus your attention on the things that matter to you. Parsons supports your time away by providing paid time off and paid flexible holidays.

Career Development

We are committed to fostering the personal and professional growth of our employees. Develop and advance yourself though our comprehensive training, educational and mentorship programs.

Veteran Support

We provide Industry leading benefits to support veterans and active-duty members to provide security for you and your family by offering robust leave and benefits; including paid active-duty military leave and paid time off when transitioning back to civilian life.

Mind & Body

At Parsons we inspire healthier habits, heathier minds, and a healthier you through our wellness program. Participate in our weekly Meditation Mondays and Wellness Wednesdays. Wellness, at Parsons, is more than just your annual checkup.

Health

Health is not a one size fits all. At Parsons, we offer a robust Employee Assistance Program as well as comprehensive medical, dental and vision plans through large, national carriers with the choice of regional PPO, HDHP, or HMO networks.

Want to learn more about the benefits eligible for the Parsons’ location you are interested in? Click below to find out more!
group of people sitting in bleachers in a stadium

Talent Community Heading here

Join our Talent Community and imagine next with us!

Favorite Jobs
You've saved some roles!