Find Jobs
Find Jobs Near You – Available Work in Your Location
Information Assurance Security Specialist
Career Insights for Information Specialist
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Minnesota data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
An Information Specialist manages computer systems and creates programs that manage access to data for a business or organization. Assists with data retrieval and analysis and manages security for data and files.
$72,718 / year median in Minnesota
-7% projected decline
Job Description
Information Assurance Security Specialist at Accede LLC Information Assurance Security Specialist at Accede LLC in Hamel, Minnesota Posted in about 23 hours ago.
Type:
full-time
Job Summary:
We are seeking an experienced Information Systems Security Officer (ISSO) / Cybersecurity Engineer to support Department of Defense (DoD) information systems. The ideal candidate will have a strong background in Information Systems Security, Risk Management Framework (RMF), and security compliance, with experience implementing security controls, managing system authorizations, and ensuring compliance with DoD cybersecurity requirements.
Key Responsibilities:
Implement, monitor, and maintain technical, administrative, and operational security controls. Support the Risk Management Framework (RMF) lifecycle, including system authorization and continuous monitoring. Develop and maintain RMF documentation, including SSPs, POA&Ms, and Security Assessment Reports (SARs). Manage and maintain authorization packages using Xacta and/or DCSA eMASS. Apply and validate DISA Security Technical Implementation Guides (STIGs) and remediate Information Assurance Vulnerability Alerts (IAVAs). Perform vulnerability assessments using SCAP Compliance Checker (SCC) and review vulnerability scan results. Review Windows security event logs and investigate security-related incidents. Administer and secure Microsoft Windows Server, Active Directory, and Group Policy Objects (GPO). Ensure compliance with
NIST SP 800
series, CNSSI 1253, NISPOM Chapter 8, and DoD cybersecurity policies. Collaborate with system administrators, ISSMs, and security stakeholders to maintain Authority to Operate (ATO).
Required Qualifications:
.
- 5+ years of experience in Information Systems Security or Cybersecurity.
- Experience implementing and monitoring technical, administrative, and operational security controls.
- Active Secret Clearance is required.
- CISSP or IAM Level III certification (DoD 8570 compliant).
- Strong knowledge of the following publications and frameworks: RMF (Risk Management Framework)
NIST SP 800
series
CNSSI 1253 NISPOM
Chapter 8 and related security publications Familiarity with Xacta and/or DCSA eMASS. Experience with Security Technical Implementation Guides (STIGs), Information Assurance Vulnerability Alerts (IAVAs), and SCAP Compliance Checker (SCC). Strong knowledge of Microsoft Windows Server, Active Directory, Group Policy Objects (GPO), and Windows System Administration. Experience reviewing Windows security event logs, vulnerability scanning