Cybersecurity - Information System Security Officer (isso) (mid-level)

Boeing Boeing · Aerospace · Hazelwood, MO

This role is for a Cybersecurity Information System Security Officer (ISSO) at Boeing, focusing on maintaining and implementing security policies for classified cloud systems. Responsibilities include performing security analysis, supporting Assessment and Authorization (A&A) processes under the Risk Management Framework (RMF), conducting risk assessments, and ensuring compliance with cybersecurity requirements for classified programs.

What you'd actually do

  1. Perform security analysis of Cloud operational and development environments, threats, vulnerabilities, and internal interfaces to define and assess compliance with accepted industry and government standards
  2. Support and implement the Assessment and Authorization (A&A) processes under the Risk Management Framework (RMF) for Cloud-based systems
  3. Facilitate development of Memorandums of Understanding (MOU), Interconnection Security Agreements (ISA), Risk Acceptance Letters (RAL) and support Continuous Monitoring (CONMON)
  4. Perform configuration management of Cloud systems; auditing environments to ensure security posture integrity
  5. Conduct risk assessments and investigations, execute appropriate risk mitigations, and participate in incident response activities

Skills

Required

  • Cybersecurity
  • Information Assurance
  • Risk Management Framework (RMF)
  • Cloud Security
  • Security+ CE or CISSP or CISM or CASP or GSLC or CAP certification
  • Top Secret Security Clearance

Nice to have

  • Classified Cloud programs experience
  • Security relevant tools experience
  • Assessing and documenting test or analysis data

What the JD emphasized

  • Successfully completed Tier 5 Investigation (T5), formerly known as a Single Scope Background Investigation (SSBI) by the federal government within the last 5 years, or requires candidate to have been enrolled in a Continuous Vetting program within the last 5 years
  • IAM Level 1 DoD 8140.01 (previously 8570.01) compliant certification
  • 3+ years of experience in Cybersecurity
  • 3+ years of experience as an Information System Security Officer (ISSO) or Information System Security Manager (ISSM) supporting classified programs