Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Information System Security Officer image - Rise Careers
Job details

Information System Security Officer

SRC, Inc. is currently seeking an Information Systems Security Officer. This role is based in Syracuse, NY.
 
What You’ll Do 
  • Ensure systems are operated, maintained and disposed of in accordance with internal security policies and the system security plan 
  • Ensure that all users have the requisite security clearances, authorization need-to-know, and are aware of their security responsibilities before being granted access to IS
  • Report all security-related incidents
  • Initiate protective or corrective measures when security incident or vulnerability is discovered
  • Develop and maintain a system security plan (SSP)
  • Conduct periodic reviews to ensure compliance with SSP
  • Ensure configuration management for security relevant IS software, hardware and firmware is maintained and documented
  • Ensure system recovery processes are monitored to ensure security features and procedures are properly restored
  • Ensure all IS security-related documentation is current and accessible to properly authorized individuals
  • Formally notify the appropriate individuals when changes occur that might affect accreditation
  • Ensure that system security requirements are addressed during all phases of the system life cycle
  • Follow procedures for authorizing software, hardware and firmware use before implementation on the system
  • Create/provide security education and awareness training to cleared employees
What You’ll Bring
  • Bachelor’s degree and three (3+) years related secure information system experience, or any equivalent combination of education, training and experience in lieu of degree
  • Working knowledge of system functions, security policies, technical security safeguards, and operational security measures
  • Hold U.S. government security clearances/access approvals commensurate with level of information processed by the system
  • Administrative knowledge of Microsoft operating systems
  • Strong documentation skills
  • Experience with LINUX variants such as Red Hat, preferred 
  • Strong customer service skills
  • Minimum IAM Level I certification commensurate with DoD 8570.1M requirements (or ability to obtain certification within 6 months of hire) 
  • Working experience with RMF, CNSSI 1253, NIST SP 800-53/53A, STIGs, NISPOM Chapter 8, DAAPM Manual
What Sets Us Apart?
SRC, Inc., a not-for-profit research and development company, combines information, science, technology and ingenuity to solve “impossible” problems in the areas of defense, environment and intelligence. Across our family of companies, we apply bright minds, fresh thinking and relentless determination to deliver innovative products and services that are redefining possible®. When you join our team, you’ll be a part of something truly meaningful — helping to keep America and its allies safe and strong. You’ll collaborate with more than 1,400 engineers, scientists and professionals — with 20 percent of those employees having served in the military — in a highly innovative, inclusive and equitable work environment. You’ll receive a competitive salary and comprehensive benefits package that includes four or more weeks of paid time off to start, 10 percent employer contribution toward retirement, and 100 percent tuition support.
Total compensation for this role is market competitive. The anticipated salary range for this position based out of Syracuse, NY is estimated at $82,000 to $96,000 annually. The actual salary will vary based on applicant’s experience, skills, and abilities, geographic location as well as other business and organizational needs. SRC offers competitive benefit options, for more details please visit our website.

Average salary estimate

$89000 / YEARLY (est.)
min
max
$82000K
$96000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Information System Security Officer, SRC, Inc

SRC, Inc. is on the lookout for an enthusiastic Information Systems Security Officer who will play a key role in maintaining the security posture of our systems in Syracuse, NY. If you are passionate about safeguarding sensitive information and ensuring compliance with internal security policies, this is the perfect opportunity for you. As an Information Systems Security Officer, you'll be responsible for a variety of crucial tasks, including ensuring systems are operated and maintained according to our internal security policies. You'll also oversee the user security clearance process, manage security-related incidents, and develop comprehensive System Security Plans (SSPs). Your experience will shine as you conduct periodic reviews to ensure full compliance and maintain accurate documentation. We value strong customer service skills, so your ability to communicate effectively will be essential when delivering security education and awareness training to employees. If you possess a Bachelor’s degree paired with over three years of relevant experience and hold an IAM Level I certification or are willing to obtain one, you’ll fit right in. Join SRC, Inc. to collaborate with a diverse team of over 1,400 engineers and scientists, all while enjoying competitive salaries and generous benefits, including extensive PTO and tuition support. Be a part of redefining what’s possible while contributing to the vital mission of national security.

Frequently Asked Questions (FAQs) for Information System Security Officer Role at SRC, Inc
What are the responsibilities of an Information Systems Security Officer at SRC, Inc.?

The Information Systems Security Officer at SRC, Inc. is tasked with ensuring compliance with internal security policies, managing security incidents, developing and maintaining System Security Plans, and conducting security training. This role is vital in safeguarding sensitive data and ensuring that all systems operate according to established security protocols.

Join Rise to see the full answer
What qualifications do I need to apply for the Information Systems Security Officer position at SRC, Inc.?

To be a candidate for the Information Systems Security Officer position at SRC, Inc., candidates should have a Bachelor’s degree, three years of relevant experience in secure information systems, and a valid IAM Level I certification or the ability to obtain it within six months. Familiarity with Microsoft operating systems and LINUX variants would be beneficial.

Join Rise to see the full answer
How does SRC, Inc. support the professional growth of an Information Systems Security Officer?

SRC, Inc. is dedicated to the professional development of its employees by offering comprehensive tuition support, fostering a collaborative environment, and providing continuous training opportunities. This supportive culture enables Information Systems Security Officers to enhance their skills and advance their careers.

Join Rise to see the full answer
What is the expected salary range for the Information Systems Security Officer role at SRC, Inc.?

The anticipated salary range for the Information Systems Security Officer role at SRC, Inc. is between $82,000 and $96,000 annually. The actual salary offered will depend on the candidate’s experience, skills, geographic location, and business needs.

Join Rise to see the full answer
What unique benefits does SRC, Inc. offer to employees in the Information Systems Security Officer role?

SRC, Inc. stands out by offering a comprehensive benefits package that includes over four weeks of paid time off, a 10 percent employer contribution towards retirement, and 100 percent tuition support. These benefits reflect our commitment to employee well-being and job satisfaction.

Join Rise to see the full answer
What kind of work environment can I expect as an Information Systems Security Officer at SRC, Inc.?

As an Information Systems Security Officer at SRC, Inc., you can expect to work in a highly innovative, inclusive, and equitable environment. Collaboration is a key aspect of our culture, with opportunities to share ideas and work with a diverse group of professionals dedicated to making a meaningful impact.

Join Rise to see the full answer
What is the importance of the Information Systems Security Officer role in national security at SRC, Inc.?

The Information Systems Security Officer role at SRC, Inc. is fundamental to preserving national security. By ensuring that all systems are secure and compliant with regulations, the officer helps protect sensitive information crucial for the defense and intelligence sectors, ultimately contributing to the safety of America and its allies.

Join Rise to see the full answer
Common Interview Questions for Information System Security Officer
Can you explain what a System Security Plan (SSP) is and why it's important?

A System Security Plan (SSP) is a comprehensive document that outlines the security requirements and controls for a specific information system. It is critical because it serves as a blueprint for implementing security measures, ensuring compliance with applicable standards, and guiding security training for users.

Join Rise to see the full answer
How do you ensure compliance with security requirements throughout the system lifecycle?

To ensure compliance throughout the system lifecycle, I advocate for integrating security considerations from the initial design phase through to deployment and maintenance. Regular audits, continuous training, and thorough documentation are essential, as are communication with all stakeholders about their security responsibilities.

Join Rise to see the full answer
What steps would you take to respond to a security incident?

In response to a security incident, I would first report the incident to the necessary stakeholders and initiate incident response protocols, which often include assessing the situation, containing the breach, eradicating threats, and recovering the system. Documentation is crucial at every step to provide insights for future prevention.

Join Rise to see the full answer
Could you describe a time when you had to communicate complex security information to non-technical staff?

In a past role, I had to explain security policies to non-technical team members. I used simple language, relatable examples, and visual aids to convey the importance of their roles in maintaining security. This approach fostered an understanding of security measures and encouraged compliance.

Join Rise to see the full answer
What tools and practices do you recommend for maintaining security documentation?

For maintaining security documentation, I recommend using secure documentation management systems that support version control. Regular reviews and updates, along with clear access protocols, are essential practices to keep the documentation relevant and ensure that the appropriate individuals have access to it.

Join Rise to see the full answer
How do you stay updated on the latest security threats and policies?

I stay updated on the latest security threats and policies by participating in webinars, following reputable cybersecurity blogs, subscribing to industry newsletters, and attending relevant conferences. Networking with other professionals also provides insights into emerging trends and best practices.

Join Rise to see the full answer
What is the importance of user awareness training in information security?

User awareness training is fundamental in information security as it educates employees about potential threats, their security responsibilities, and the implications of security breaches. An informed workforce is a key line of defense against security incidents, and training helps foster a security-conscious culture.

Join Rise to see the full answer
Tell us about your experience with configuration management for security solutions.

I have extensive experience with configuration management, focusing on ensuring that all hardware, software, and firmware configurations align with security policies. This involves regularly monitoring configurations, documenting changes, and conducting audits to verify compliance with security requirements.

Join Rise to see the full answer
How do you approach risk assessment in your role?

I approach risk assessment methodically by identifying potential threats, evaluating vulnerabilities, and analyzing the impact of different risks on the organization. It’s important to regularly reassess these risks due to the evolving security landscape and implement appropriate mitigation strategies.

Join Rise to see the full answer
Can you explain the significance of U.S. government security clearances for this role?

U.S. government security clearances are crucial for the Information Systems Security Officer role because they grant access to sensitive information and systems critical for national security. Holding the necessary clearances ensures that the officer is qualified to handle sensitive data and meet compliance requirements.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 8 days ago
Photo of the Rise User
SRC, Inc Hybrid No location specified
Posted 7 days ago
Photo of the Rise User
AnaVation Hybrid Chantilly, VA
Posted yesterday
Photo of the Rise User
Posted 8 days ago
Posted 10 days ago
Posted 9 days ago
Photo of the Rise User
Epic Hybrid Jefferson City, MO
Posted 13 days ago

Founded in 1957, SRC, Inc. (@SRCDefense), a not-for-profit research and development company, combines information, science, technology and ingenuity to solve problems in the areas of defense, environment and intelligence.

45 jobs
MATCH
VIEW MATCH
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
November 28, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!