Required Skills & Experience
- Bachelor’s Degree (and 10+ years of experience) or Masters Degree (and 6+ years of experience) in Information Security, Information Technology, Computer Science, or related field
- Minimum 2 years of experience directly supporting a customer’s ATO/RMF process.
- Proven experience using the eMASS or XACTA accreditation management software systems.
- Working knowledge of key information technology concepts, platforms, and technologies, including Microsoft Windows, SELinux, or Linux operating systems
- Understanding of networking fundamentals, protocols, services, and related security technologies, (e.g., TCP/IP, SSH, SFTP, HTTP, and SCP) and applicable security benchmarks (e.g., DISA Security Technical Implementation Guide (STIGs)
- Demonstrated experience and familiarity with DoD and Army Cybersecurity Policies and Regulations and Risk Management Framework (RMF) Assessment and Authorization (A&A) process, including the provisions of ICD 503, the planning and execution of Security Test and Evaluation (STE), and Cybersecurity Test and Evaluation (CTE) events
- Experience with DoD RMF Steps 1-7, ICD 503, CNSSI 1253, and NIST Special Publications
- Working knowledge of and hands-on experience with compliance scanning tools (e.g. SCAP, STIG Benchmark), vulnerability scanning tools (e.g. ACAS, Tenable Nessus)
- CISSP, CISM, or Security + CE certification
- Active TS/SCI Clearence
Nice to Have Skills & Experience
- Specific experience working in both traditional on premises environments and cloud environments such as Amazon Web Services (AWS).
- Experience accrediting IT systems against U.S. Government standards including NIST SP 800-53, CNSSI 1253, and the DISA STIGs, using frameworks like DoD RMF, ICD 503, or DIACAP.
Job Description
Insight Global is seeking an experienced Information Assurance Engineer (ISSO) to join our client's System Security Engineering team on-site in Fort Belvoir, VA, supporting an Army client. This individual will coordinate with government personnel to provide cybersecurity support services and solutions necessary to build, integrate, enhance, modernize, implement, test, analyze, assess, sustain, and maintain the cybersecurity posture and capabilities. You will be responsible for developing, implementing, and continuously improving cybersecurity functions for multiple critical systems, interpreting security requirements, and planning effective control implementations. Successful candidates will proactively identify problems and propose creative solutions, multitask under pressure, and achieve ATOs across multiple government customers with minimal oversight. You will serve as the primary in-person point of contact for U.S. Government customers on cybersecurity and compliance requirements and questions. You will provide policy expertise, quality documentation, and bridge the gap between high-level security requirements and policies, ensuring their integration into IT component products and information systems through purposeful security design or configuration.
$130,000 to $170,000 per year annual salary. Benefit packages for this role may include healthcare insurance offerings and paid leave as provided by applicable law.