Senior Information Systems Security Officer (isso) II - Marlborough, Ma

RTX RTX · Aerospace · marlborough, MA +1 · Digital Technology

Senior Information Systems Security Officer (ISSO) II role at RTX, a defense company, focusing on compliance oversight, assessment, and operations of systems. Requires active security clearance and experience with cybersecurity, IT, and compliance-based auditing using frameworks like RMF. The role involves mentoring other ISSOs and conducting cybersecurity reviews.

What you'd actually do

  1. Reviewing and approving (within authority) configuration management requests
  2. Conducting technical and administrative assessments
  3. Integrating new Cybersecurity processes, procedures and tools
  4. Support ISSOs and Cybersecurity Managers in the creation, review and update of Cybersecurity documentation and other technical writing
  5. Oversee ISSOs to ensure implementation of policies and procedures as outlined within the Cybersecurity artifacts and governing documentation

Skills

Required

  • Cybersecurity
  • systems security
  • hardening
  • Information Technology
  • Compliance-based auditing
  • Risk Management Framework (RMF)
  • DCSA Assessment and Authorization Process Manual (DAAPM)
  • Joint SAP Implementation Guide (JSIG)
  • National Industrial Security Program Operating Manual (NISPOM)
  • FAA
  • Payment Card Industry (PCI)
  • ISO 9001 Quality Management standards
  • HIPAA
  • databases
  • operating systems
  • computer network hardware
  • software programs
  • hardware troubleshooting
  • electronics
  • Physical security
  • security
  • policework
  • criminal justice
  • investigations
  • Border Patrol
  • Project or program management
  • office management
  • senior administration
  • account management

Nice to have

  • DoD classified operating and/or laboratory environments
  • various information system security tools (Splunk, Forcepoint, Ivanti, Tenable, ACAS, HBSS)
  • NIST
  • CNSSI
  • DoD
  • Government Regulatory compliance standards
  • Assessment & Authorization processes
  • Risk Managed Framework (RMF)
  • technical security consultation for complex, cross-domain, heterogeneous classified networked environments
  • large multi-facility networks
  • complex components
  • Windows environments
  • Linux environments
  • DISA STIGs
  • cyber incident response
  • preservation, containment, and eradication

What the JD emphasized

  • Active and transferable U.S. government issued security clearance is required prior to start date
  • U.S. citizenship is required
  • Active and existing security clearance required on day 1
  • IAM Level I certification (Security+ or other)