Job Requirements
Washington, DC
Dept of Homeland Security Polygraph Unspecified
Mid Level Career (5+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries
Job Description
Who we are:
Tria Federal delivers digital services and technology solutions that support the health and safety of veterans, service members and civilians. For two decades, federal agencies have relied on Tria companies to advance their critical missions and modernize their systems, so that they can uphold their commitment to the American people. Today, we are pushing the boundaries of possibility through partnerships and investments in artificial intelligence and emerging technologies, developing solutions for the biggest challenges that government will face tomorrow.
We are proud to employ and support military veterans who bring mission-first mindset, technical expertise, and leadership qualities that strengthen our work. Veterans, transitioning service members, and military spouses are strongly encouraged to apply.
Job Description:
Tria Federal (Tria) is seeking a motivated and detail-oriented Information System Security Officer (ISSO) to join our team. The ISSO research, develops, implements, tests, and reviews an organization’s information security to protect information and prevent unauthorized access. Emphasis on knowledge of infrastructure devices (i.e. firewalls, routers, switches)
Requirements:
Qualifications:
Responsibilities:
Why Tria?
What defines the Tria brand is more than just our dedication to excellence in our craft; it’s our incredible team of dedicated, talented, and passionate people that make Tria so exceptional. As people powering possible, we are all partners in our team’s shared success.
As a company that cares about people, we seek to cultivate a culture in which all can thrive personally and professionally. We offer a top-tier benefits package to invest in your physical, mental, and financial health and wellness so that you can be your best self - at work and in life. At Tria, we are growth-minded, entrepreneurial in spirit, and committed to fostering a culture of inclusion and opportunity for all. Whatever your background, your role, your department, or stage in your professional journey, here you will have opportunities to learn new skills, seize new challenges, and advance your career as we grow.
California Consumer Privacy Act (CCPA)
We are committed to protecting your privacy. As part of our compliance with the California Consumer Privacy Act (CCPA), we want to inform you about how we collect, use, and protect your personal information during the job application process. For more details, please review https://www.oag.ca.gov/privacy/ccpa.
Tria Federal delivers digital services and technology solutions that support the health and safety of veterans, service members and civilians. For two decades, federal agencies have relied on Tria companies to advance their critical missions and modernize their systems, so that they can uphold their commitment to the American people. Today, we are pushing the boundaries of possibility through partnerships and investments in artificial intelligence and emerging technologies, developing solutions for the biggest challenges that government will face tomorrow.
We are proud to employ and support military veterans who bring mission-first mindset, technical expertise, and leadership qualities that strengthen our work. Veterans, transitioning service members, and military spouses are strongly encouraged to apply.
Job Description:
Tria Federal (Tria) is seeking a motivated and detail-oriented Information System Security Officer (ISSO) to join our team. The ISSO research, develops, implements, tests, and reviews an organization’s information security to protect information and prevent unauthorized access. Emphasis on knowledge of infrastructure devices (i.e. firewalls, routers, switches)
Requirements:
- DHS Public Trust
- 3-5 years Cybersecurity experience
- Working knowledge and experience with CSAM and the NIST RMF
- Solid knowledge of the process to obtain a system ATO and requirements to maintain the ATO
- Experience working with system stakeholders to assess and manage system cybersecurity risk
- Ability to synthesize complex IT system information and communicate system status and requirements in written products and verbal presentations
- Ability to write clear, concise and effective security control implementation statements
- Familiarity with configuration settings and vulnerability management analysis of infrastructure devices
- Ability to draft a complete ATO package, to include the SSP
- Ability to work independently, and efficiently, with minimal direct supervision, and within given timelines
- Security+ Certification
- CSAM GRC Tool
- DHS Experience
Qualifications:
- BS in Computer Science, Information Technology, or related field
- CISSP, Security+, CGRC (formerly CAP), CISM
Responsibilities:
- Conduct initial Security Assessment and obtain system Authorization to Operate (ATO), in line with NIST SP 800-37 Rev. 2.
- Maintain the Security Authorization or ATO of assigned system(s)
- Continuously update all Security Authorization documentation to maintain assigned system’s ATO or system go-live dates.
- Select the baseline security controls for the IT system, using the CSAM Governance, Risk, and Compliance (GRC) Tool, and tailor controls where appropriate.
- Document all relevant NIST 800-53 Security Controls for assigned IT systems in the System Security Plan (SSP).
- Perform and document initial and annual risk self-assessments of all systems assigned
- Develop and document all supporting Security A&A artifacts (i.e., PTA, SSP, ITCP, BIA, CMP, MOU, ISA).
- Produce Security Authorization package for Authorizing Official (AO) signature including ATO
- Track the deployment of software to the environment that is not part of the base image.
- Conduct security impact analyses of proposed changes, provide recommendations.
- Ability to analyze configuration settings, implementation of STIGs, and conducting manual checklists.
- Generate and manage Plan of Action & Milestones (POA&Ms), with meaningful milestones, and clear/concise implementation statements for each non-compliant control for assigned IT Systems.
Why Tria?
What defines the Tria brand is more than just our dedication to excellence in our craft; it’s our incredible team of dedicated, talented, and passionate people that make Tria so exceptional. As people powering possible, we are all partners in our team’s shared success.
As a company that cares about people, we seek to cultivate a culture in which all can thrive personally and professionally. We offer a top-tier benefits package to invest in your physical, mental, and financial health and wellness so that you can be your best self - at work and in life. At Tria, we are growth-minded, entrepreneurial in spirit, and committed to fostering a culture of inclusion and opportunity for all. Whatever your background, your role, your department, or stage in your professional journey, here you will have opportunities to learn new skills, seize new challenges, and advance your career as we grow.
California Consumer Privacy Act (CCPA)
We are committed to protecting your privacy. As part of our compliance with the California Consumer Privacy Act (CCPA), we want to inform you about how we collect, use, and protect your personal information during the job application process. For more details, please review https://www.oag.ca.gov/privacy/ccpa.
group id: 91140539