IS Security Officer 2
Job
The Charles Stark Draper Laboratory, Inc.
Cambridge, MA (In Person)
$151,150 Salary, Full-Time
Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
44
out of 100
Average of individual scores
Skill Insights
Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
IS Security Officer 2 The Charles Stark Draper Laboratory, Inc.
- 3.9 Cambridge, MA Job Details Full-time $82,300
- $220,000 a year 1 day ago Qualifications Security Authorization Top Secret Clearance Operating systems Bachelor's degree in information technology IT system monitoring IAM Level II Vulnerability assessment tools System architecture Firmware Compliance audits & assessments Configuration management Mid-level 3 years Bash System maintenance Information security compliance Nessus Incident response Bachelor's degree NIST standards Mentoring WAN Computer networking Vulnerability scanning Vulnerability management IAT IAM Level
I RMF IAT
Level II Information security auditingFull Job Description Overview:
Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. The 2,000+ employees of Draper tackle important national challenges with a promise of delivering successful and usable solutions. From military defense and space exploration to biomedical engineering, lives often depend on the solutions we provide. Our multidisciplinary teams of engineers and scientists work in a collaborative environment that inspires the cross-fertilization of ideas necessary for true innovation. For more information about Draper, visit www.draper.com.Job Description Summary:
The Information System Security Officer 2 (ISSO) supports the continuous monitoring and authorization efforts of multiple classified information systems under the direction of the Information System Security Manager (ISSM). Performing a variety of technical, and non-technical Cyber Security functions. Responsibilities also include physical and environmental protection, personnel security, incident handling, and security training and awareness. In close coordination with the ISSM and ISO, the ISSO plays an active role in monitoring a system and its environment of operation to include developing and updating the SSP, managing and controlling changes to the system, and assessing the security impact of those changes.Job Description:
Duties/Responsibilities Assist the ISSM in meeting their duties and responsibilities. The ISSO shall assume ISSM responsibilities in the absence of the ISSM. Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the security authorization package. Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties. Ensure all users have the requisite security clearances, authorization, need-to-know, and are aware of their security responsibilities before granting access to the IS. Conduct periodic reviews of information systems to ensure compliance with the security authorization package. Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change. Formally notify the ISSM and AO/DAO when changes occur that might affect system authorization. Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly. Ensure all IS security-related documentation is current and accessible to properly authorized individuals. Conduct Audits and Continuous Monitoring (ConMon) activities using available technical and non-technical processes, reports Audit and ConMon findings, Execute incident response and attends and contributes to status meetings. Manage configuration baselines of both hardware and software Identify system architecture flaws using industry standard tools (e.g. STIG, SCAP, Nessus) that will be flowed to the ISSM for review. Mentors and coaches ISSO 1. Performs other duties as assigned. Skills/Abilities Fundamental understanding of common auditing techniques Understanding of RMF (NISTSP 800-53, JSIG, DAAG, ICD 503
), IR, Vulnerability Management, SCAP, STIG, and Security-Relevant Tools. Understands Information Technology basics. Awareness of network type designations (e.g.WAN, LAN
) and associated infrastructure (e.g. Servers, switches, firewalls). Education Requires a bachelor's degree in Information Technology or a related field. Equivalent industry experience may be substituted. Possesses anIAM I/IAT II
Certification, or greater.Experience:
3-5 years year relevant industry experience is required, Preferred experience with auditing systems using native language (PS/BASH), with tools and basic scripts / queries, and experience working with ISSMs to create and manage POA&Ms.Additional Job Description:
Applicants selected for this position will be required to obtain and maintain a government security clearance. Current in scope Top Secret security clearance is required. Connect With Draper for Future Opportunities! If you don't find the right posting in our Career Opportunities, you may submit your resume for future consideration. Job LocationCity:
Cambridge Job LocationState:
Massachusetts Job LocationPostal Code:
02139-3563 The US base salary range for this full-time position is $82,300.00- $220,000.
Similar jobs in Cambridge, MA
Row 7 Seeds, Co.
Cambridge, MA
Posted2 days ago
Updated15 hours ago
Soliant Health
Cambridge, MA
Posted2 days ago
Updated15 hours ago
Similar jobs in Massachusetts
Bank of America
Belmont, MA
Posted2 days ago
Updated15 hours ago