Facility Security Officer/ISSM

Sparton Corporation

Fairfax, VA

JOB DETAILS
SKILLS
Access Authorization, Analysis Skills, CISSP - Certified Information Systems Security Professional, Code of Federal Regulations, Computer Security, Computer Systems, Configuration Management, Corporate Policies, Cryptography, Customer Support/Service, Emergency Planning, Government, Government Requirements, IT Requirements, Information Technology & Information Systems, Information/Data Security (InfoSec), Insurance, Intelligence Community, Leadership, Maintain Compliance, Manufacturing, Microsoft Windows Operating System, Military, Operations Management, Operations Processes, Operations Security (OPSEC), People Management, Physical Demands, Physical Security, Problem Solving Skills, Program Planning, Regulations, Regulatory Compliance, Reporting Skills, Risk Analysis, Risk Management, Risk Management Framework (RMF), Safety/Work Safety, Security Clearance, Security Compliance, Security Monitoring, Security Policy, Security Software, Software Administration, Standard Operating Procedures (SOP), Status Reports, System Operations, System Test, Systems Administration/Management, Systems Maintenance, Testing, Top Secret Clearance, U.S. National Institute of Standards and Technology (NIST), United States Citizen, United States Department of Defense (DoD), Willing to Travel
LOCATION
Fairfax, VA
POSTED
30+ days ago

Facility Security Officer FSO with Information System Security Manager ISSM Experience

OnsiteFairfax VA location

Position Objective

The FSO is responsible for implementing and maintaining a security program that complies with the NISPOM 32 CFR Part 117 and other regulations and partnering with cognizant security authorities, senior management, and personnel. The FSO provides support for all security actions in accordance with corporate and governmental policies and directives. The ISSM is responsible for ensuring the appropriate operational security posture is maintained for information system security requirements for Spartons Authorized Information Systems AIS.

The successful candidate will have the knowledge and expertise required to manage all security aspects of information systems and oversee the day-to-day security operations of each system associated media and networks.

FSO Responsibilities

Must have a thorough knowledge of the National Industrial Security Program Operations Manual NISPOM and any other policies and directives as necessary by site. Serve as the manager on all physical and Proxy Agreement security requirements with working knowledge of Foreign Ownership Control and Influence FOCI policy and security structure.

Serve as primary advisor and Security subject matter expert to the Senior Leadership Team on all physical and industrial security matters and liaison to the local Defense Counterintelligence & Security Agency DCSA Industrial Security Representative on all matters pertaining to the safeguarding and handling of classified and controlled unclassified information CUI and for ProxyNational Security Agreement compliance and reporting.

Develop and maintain compliance standard procedures supporting customer and government agency requirements to include Standard Operating Procedures SOPs Standard Practices and Procedures SPPs Operational Security OPSEC Emergency Action Plans EAPs and Risk Analysis Investigations specific to the facility.

Establish and maintain effective security awareness training including as required Annual Security Briefings Counterintelligence Espionage Insider Threat Courier NATO debriefings indoctrinations prepost-foreign travel briefings and all other mandated briefings.

Safeguard and assure accountability of all classified materials and areas in accordance with NISPOM requirements.

Conduct periodic self-inspections on local processes and practices to ensure Proxy Agreement and component program security compliance accurately reports security posture to site group and corporate leadership.

Ensure proper training and routine oversight of site reception duties to include badge handling and processing visitor control and physical security management.

Oversee badging of employees visitors consultants and government representatives to ensure compliance with Sparton policy.

Manage visit requests and Cleared personnel visit requests utilizing DISS.

Process and manage personnel security clearances using DISS and assist new applicants with the e-QIP process.

Plan examine analyze evaluate and provide oversight of security operations prepare reports and record for management team.

Conduct annual clearance justifications and advise leadership when an employee does not meet clearance requirements.

Manage the Operational Security OPSEC requirements for all government sensitive programs and ensure personnel cleared on those programs receive initial and refresher.

ISSM Responsibilities

Reviewing preparing and updating ATO packages in accordance with NIST Risk Management Framework and customer policy procedures and guidelines.

Identify and communicate changes that might affect information system IS security authorization status to include identifying security deficiencies and discrepancies and providing recommendations for solutions.

Act as a liaison with government agencies such as Defense Security Service DSS Information System Security Professionals ISSP Advanced Special Program government Security Control Assessors SCA and other external internal customers.

Development implementation and maintenance of System Security Plans SSP Standard Operating Procedures SOP information security policies to ensure compliance with Risk Management Framework RMF guidelines.

Development and maintenance of Plan of Action and Milestones POA&M through mitigation and risk acceptance.

Oversee the scheduling installation implementation and maintenance of security software integration on all information systems under his/her purview.

Ensure proper measures are taken when an information system incident or vulnerability is discovered.

Maintain and execute the information security continuous monitoring ConMon plan.

Ensure configuration management CM policies and procedures for authorizing the use of hardware/software on an information system are followed and assess changes to the system its environment and operational needs that could affect the security authorization.

Perform self-inspections provide security coordination and review of system test plans.

Identify vulnerabilities and work with technical subject matter experts to identify and implement countermeasures.

Assists in the coordination preparation and tracking of IS inspections reports and responses.

Deploy and configure scanning tools to conduct security vulnerabilities reviews in support of continuous monitoring processes.

Conduct manual SRGSTIG checklists and remediation.

Conducts scheduled audits and managing audit data.

Prepare reports on the status of security safeguards applied to computer systems.

Ensure IS and network nodes are operated maintained and disposed of in accordance with security policies and practices.

Minimum Requirements

Five years of experience as an FSO desired

Bachelors degree

Completion of CDSE FSO Certification desired - must complete within 6-months of start

Working knowledge of CFR 32 Part 117 National Industrial Security Program Operating Manual NISPOM Intelligence Community Directives ICDs and associated industrial security regulations policies and regulations.

Experience with government systems DISS NCAISS e-APP NBIS and SWFT databases.

US Citizen Active TS clearance

Skills for ISSM

Minimum three years of experience as ISSO Alternate ISSM or DoD equivalent at an organization of similar size and complexity.

Relevant bachelors degree a plus.

Experience with AIS reaccreditation process and security controls under the NIST Risk Management Framework in accordance with NIST special publications including SP-800-171 SP-800-53 and DAAPM.

Knowledge of other security disciplines and how they impact and interact with information system security.

Ability to obtain and maintain a Top-Secret Clearance.

Ability to perform technical certifications for systems being presented to the government for authorization to include type accreditation.

Understanding of network concepts and Type 1 encryption devices such as TACLANE.

Familiarity with CUI requirements for unclassified IT systems and SIPRnet connectivity process is a plus.

Desirable certifications include Security CISSP or other DoD 8570.1 certifications.

Familiarity and understanding of Microsoft Windows 10 security and administrative settings and ability to meet STIGJSIGNISPOM requirements for IS.

Supervisory Responsibilities

None

Travel Requirement

Minimal Travel

Additional Information

Here Are Some of the Great Benefits We Offer

Competitive compensation & 401k matching program to plan for your future

Robust medical dental vision & disability coverage with qualified wellness discounts

Basic Life Insurance and Additional Life & AD&D Insurances are available

Flexible Vacation & PTO

Paid Parental Leave

Generous Employee Referral Bonus Program

Voluntary Benefits Available

Longer Term Care

Legal

Ident Theft

Pet Insurance and many more options

Voluntary Tricare Supplement available for military retirees

Safety

Ensure that all assignments are performed in compliance with applicable Federal State Provincial and Company safety and health regulations and where applicable utilize proper personal protective equipment.

Physical Demands

The physical demands describe here are representative of those that must be met by an employee to successfully perform the essential functions of the job.

The work environment characteristics described are representative of those an employee may encounter while performing the essential functions of this job.

This job operates in a professional office environment and a manufacturing environment.

The employee may be exposed to fumes or airborne particles moving mechanical parts and vibration.

The employee is occasionally exposed to a variety of extreme conditions in the plant.

The noise level in the work environment may be loud.

Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

While performing the duties of this job the employee is frequently required to sit stand talk and communicate use handsfinger feel and reach with arms.

This position requires the ability to lift bend or stoop as necessary up to 20 lbs.

EEOC Statement

Sparton DeLeon Springs LLC and Logos Technologies provide equal employment opportunities to all employees and applicants for employment without regard to race color ancestry national origin gender sexual orientation marital status religion age disability gender identity results of genetic testing or service in the military.

Equal employment opportunity applies to all terms and conditions of employment including hiring placement promotion termination layoff recall transfer leave of absence compensation and training.

Accessibility

Sparton DeLeon Springs LLC and Logos Technologies are committed to working with and providing reasonable accommodation to individuals with physical and mental disabilities.

If you need special assistance or an accommodation while seeking employment please email us at AccessibilitySparton.com

About the Company

S

Sparton Corporation