Information System Security Officer (isso) - Marlborough, Ma (sponsor Clearance)

RTX RTX · Aerospace · marlborough, MA +1 · Digital Technology

RTX is seeking an Information System Security Officer (ISSO) to ensure system compliance, auditing, security plan development, and information systems security education within a defense context. The role involves investigating security violations, preparing reports, and collaborating with various stakeholders. A U.S. government issued security clearance is required, and candidates must obtain a Security+ certification within six months of hire.

What you'd actually do

  1. You will be primarily responsible for system compliance, auditing, security plan development and delivering information systems security education and awareness.
  2. You will also assist in investigating information system security violations and help prepare reports specifying corrective and preventative actions.
  3. The position routinely collaborates with the facility security team, program personnel, and government representatives.
  4. Security sustainment activities (hardware change management, software change management, account management, media protection, user interface, file transfers, etc.)

Skills

Required

  • Cybersecurity, systems security or hardening
  • Information Technology
  • Compliance-based auditing using the Risk Management Framework (RMF), DCSA Assessment and Authorization Process Manual (DAAPM), Joint SAP Implementation Guide (JSIG), National Industrial Security Program Operating Manual (NISPOM), and/or non-defense regulations such as FAA, Payment Card Industry (PCI), ISO 9001 Quality Management standards, or HIPPA
  • Experience working with and/or supporting computer technologies (such as: databases, operating systems, computer network hardware, software programs, hardware troubleshooting or electronics)
  • Physical security/security, policework/criminal justice, investigations, or Border Patrol
  • Project or program management, office management, senior administration, or account management
  • Ability to obtain and maintain a U.S. government issued security clearance prior to start

Nice to have

  • Experience working in DoD classified operating and/or laboratory environments
  • Familiarity with cybersecurity Risk Management Framework (RMF) and compliance as stipulated by NISPOM/DAAPM, JSIG, ICD 503, STIGs and associated NIST publications
  • Experience with audit reviews such as physical security, network and system event logs, password administration, file access privileges, etc.
  • Familiarity with the execution and management of cyber incident response; preservation, containment, and eradication
  • Ability to work independently and as a member of a team
  • Self-motivated and possess exceptional written and verbal communication skills, particularly in documenting evaluation results
  • Customer focused, adaptable and willing to work varying assignments
  • Completion of National Industrial Security Program cybersecurity training courses

What the JD emphasized

  • Active and transferable U.S. government issued security clearance is required prior to start date
  • U.S. citizenship is required
  • obtain and maintain a Security professional certification commensurate with IAM Level I certification (Security+ or other), if you do not already have this certification
  • The ability to obtain and maintain a U.S. government issued security clearance prior to start is required.