Junior ISSO

Overview

Remote
$100,000 - $105,000
Full Time
No Travel Required

Skills

ISSO
FedRAMP
Cloud Security
AWS
Azure
Security
NIST
FISMA Compliance
RMF

Job Details

Valiant Solutions is seeking a Junior ISSO to join our rapidly growing and innovative cybersecurity team!

 

These candidates will provide technical expertise on security control implementations and developing Information security procedures for systems and applications. You will be part of a team working to develop and establish an information security framework that integrates into the IT Security program at the agency level.

 

Valiant Solutions is a company that cares about its employees- we've been named one of the in the Washington DC area TEN years in a row! If you are interested in learning more about Valiant and this opportunity, we invite you to apply now!

 

 

This position allows for 100% remote work. Remote work necessitates a high level trust in our employees and we strictly adhere to the details in our Remote Work Policy below.

 

 

Required Skills:

  • At least 4+ years of related experience
  • Detailed knowledge of NIST SP 800-53 Rev5, Security Policies, NIST Risk Management Framework, Security Planning and Architecture, FISMA Compliance, Incident Analysis, and General Security Best Practices
  • Knowledge of FedRAMP and FISMA regulatory compliance requirements
  • Experience managing cloud solutions (AWS, Azure) security assessments
  • Deep knowledge of the information security principles
  • Experience developing Information Security policies and procedures
  • Experience performing A&As and supporting the Risk Management Framework lifecycle
  • Ability to communicate, both written and orally, to both technical and non-technical stakeholders
  • Strong written and oral communication skills to interact with senior managers, junior staff, and business unit (non-technical) customer

 

Key Responsibilities:

  • Participate in the transition from Security and Privacy Controls for Federal Information Systems and Organizations under the FedRAMP schedule.
  • Document and maintain controls, appendices, and document attachments under NIST SP 800-53 Rev. 5 for all multi-cloud platform systems and sub-systems.
  • Document and maintain inheritable common controls catalog for to document controls offered to applications or systems hosted on multi-cloud platform.
  • Ensure common controls are available for all hosted systems to inherit and maintain.
  • Assist in the development and maintenance of System Security Plans (SSP) and security controls assessment (SCA) test plans for the network general support system (GSS) and infrastructure systems hosted within the environment.
  • Update the SSP and server documentation and provide the ISSO to update security artifacts and the baseline documents.
  • Update POA&Ms throughout the POA&M lifecycle till closure.
  • Provides technical knowledge and analysis of highly specialized applications and operational environments.
  • Provides high-level functional systems analysis, design, integration, documentation, and implementation advice on moderately complex cybersecurity problems that require an appropriate level of knowledge of the subject matter for effective implementation.
  • Serves as the IT security POC for assigned systems to ensure information systems comply with applicable policies.
  • Ensures security activities are implemented throughout the entire SDLC, including during system changes and modifications
  • Performs assessments on NIST-based Enterprise Common Controls, including internally inherited and hybrid controls and external controls from external service providers
  • Performs risk assessments and assigns metrics to determine potential security threats and vulnerabilities
  • Provides audit support by developing the appropriate responses to audit questionnaires and remediation recommendations of audit report findings.
  • Coordinates with appropriate stakeholders and system owners to ensure all NIST 800-53 controls are properly implemented and assessed during the steps of the ATO lifecycle
  • Ability to conduct an analysis of the NIST SP 800-53 rev. 5 controls and identify controls that can be automated
  • Ensures all systems are operated, maintained, and disposed of IAW documented security policies and procedures, including but not limited to Assessment & Authorization (A&A).
  • Oversees and manages relationships for assigned systems that may be contractor-owned and contractor-operated, ensuring vendors comply with agency security and privacy requirements.
  • Supports the development and maintenance of all security documentation such as the System Security Plan, Privacy Impact Assessment, Configuration Management Plan, Contingency Plan, Contingency Plan Test Report, POA&M, annual FISMA assessment, and incident reports.

 

About Valiant Solutions

Valiant Solutions is a security-focused IT solutions provider with public clients nationwide. We are a HUBZone small business and we encourage all candidates who live in a HUBZone to apply. Named one of the fastest-growing privately held companies by Inc. 5000, Washington Technology s Fast 50, and Washington Business Journal s Best Places to Work in the D.C. area, Valiant Solutions prides itself on providing its employees with great benefits and career development opportunities. As a company, we are just as committed to growing careers as we are to building world-class IT solutions, all while enjoying an unparalleled work-life balance. We are in a phase of tremendous growth and building the team that will take us to the next level. We seek people whose talents and accomplishments will contribute to a thriving company, who have the character to support their capacity, and can make a positive impact on our culture. Alongside our talented team, you ll learn to think quickly on your feet and expand your own personal and professional skill set. Our management team will inspire you to consider new perspectives and challenge you to become a better practitioner in the fast-paced industry of IT security. We hire people we respect and we trust them to deliver results leveraging their expertise. If you would enjoy working in a dynamic environment as part of a stellar team of professionals, then we invite you to apply online today.

 

Benefits Snapshot (includes, but not limited to)

Valiant pays 99% of the Medical, Dental, and Vision Coverage for Full-time Employees

Valiant contributes 25% towards Health Coverage for Families and Dependents

100% Paid Short-Term Disability and Life Insurance Policy for Full-time Employees

100% Paid Certifications

401K Matching up to 4%

Paid Time Off

Paid Federal Holidays

Paid Time On 40 hours to pursue innovation

Wellness & Fitness Program

Valiant University Online Education and Training Portal

Reimbursement for Public Transit and Parking

FSA programs for: Medical Costs, Dependent Care, Transit, and Parking

Referral Bonuses

 

The salary range for this position is a general guideline and not a guarantee of compensation or salary. It has been benchmarked in relation to the scope of the role, market rate, and internal equity. The salary for this role is expected to be in the $98,500 - $106,900 range. Where a candidate falls within the band can be determined based on one or more of the following: skillset, experience level, achievements, education, geographic location, security clearance, involvement in corporate tasks, and other non-discriminatory factors. In addition to the base salary, this role will include benefits as described below. Valiant reserves the right to adjust the salary range, experience requirements, and position responsibilities at any time without prior notice.

 

Remote Work Policy

Remote work necessitates a high level of trust in our employees. To ensure that employee performance does not suffer in a remote work environment, all employees who telecommute are expected to have a quiet and distraction-free workspace with adequate internet, dedicate their full attention and availability to their job duties during working hours, and maintain a schedule during core business hours that align with those of their coworkers and Valiant's clients. In alignment with Valiant's inclusive and engaging environment, cameras are encouraged and can be required to be on during virtual video conferences. Additionally, in alignment with the Office of the Inspector General s effort to eliminate conflicting employment, all Valiant employees are required to disclose any current or future outside employment engagements. During onboarding and throughout employment, employees must disclose any current activities or intent to engage in outside employment or other professional activities and obtain written approval. Employees may not solicit or conduct any outside business during core business hours for Valiant Solutions and our clients.

 

Equal Employment Opportunity

Valiant Solutions is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, ethnicity, color, national origin, sex (including pregnancy, sex stereotyping, gender identity, gender expression or transgender status), religion, age, marital status, sexual orientation, military/veteran status, physical or mental disability, genetic information/history or any other personal characteristic protected by law.

 

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.