Minimum Clearance Required to Start:
Top Secret SCI w/PolygraphJob Description:
Parsons Information Systems Security Specialists develop, maintain, and implement information security standards, procedures, and guidelines for applications and databases. The ISSS ensures that systems and organizational databases are protected from unauthorized access and use, monitors systems, identifies threats, and handles disaster recovery operations. In this role you will play a key role in managing program and project implementation and make significant contributions to department goals and planning efforts.
Duties:
Provide guidance, assistance, and coordination to systems developers, systems administrators, and other IT specialists to ensure verified and timely implementation of IT security standards for systems both under development and already deployed.
Document, manage, and control the integrity of changes to all systems security documentation, including standard operating procedures and user guides that provide detailed instructions for implementing IT systems security policies.
Assist in the selection of minimum-security controls to establish a baseline of measures to prevent security breaches of the information system, document the selected security controls in the security plan and initial Risk Assessment Report (RAR), and, document an approved continuous monitoring strategy.
Document the security control implementation, as appropriate, in the security plan, providing a functional description of the control implementation (including planned inputs, expected behavior, and expected outputs).
Conduct security testing and verify which security controls are implemented correctly, operating as intended, and producing the desired outcome in meeting security requirements.
Conduct remedial actions on security controls based on the findings and recommendations of the Security Assessment Report and reassess remediated control(s), as appropriate.
Review vulnerability scans and ensure the accountable parties have responded appropriately to vulnerability findings, troubleshoot security threats and vulnerabilities in response to incident reports, and identify/isolate problem sources; and recommend solutions or corrective actions.
Monitor and analyze systems logs daily to identify systems security trends and assess the security effectiveness of installed systems based on analysis of reported security problems.
Participate in multi-functional teams and manage work through JIRA.
Qualifications:
Bachelor's degree in Computer Science or a related technical field, or equivalent experience
Active TS/SCI security clearance
A minimum of 5 years of related professional experience
Possess a minimum of three (3) years of experience in Certifying and Accrediting systems including at least one (1) year of experience in applying the National Institute of Standards and Technology (NIST) Special Publication 800-53 Risk Management Framework
Certified in a DOD 8570 IAM Level II baseline certification
The position may require a COVID vaccination or an approved accommodation/exemption for a disability/medical condition or religious belief as required by federal, state, provincial or local mandates or customer requirements.