RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide. The ISSO role is to bridge the gap between high-level security policies and technical implementation, ensuring compliance with cybersecurity policies for government information systems.
Primarily responsible for system compliance, auditing, security plan development and delivering security education and awareness
Assist in investigating system security violations and help prepare reports to determine corrective and preventative actions
Routinely collaborates with the facility security team, program personnel, and government representatives
Perform security sustainment activities (hardware configuration control, software change requests, user account management, media protection, user interface, file transfers, etc.)
Assist in overseeing and managing the patch management process and execution across all the site. Collaborate with other BBN facilities and RTX for alignment and sharing of best practices
Develop, update, and/or review RMF documentation to include the System Security Plan, Security Control Traceability Matrix, Plan of Action and Milestone, Risk Assessment Report (RAR), and Security Assessment Plan
Qualification
Required
Bachelor's Degree with 2 years of experience implementing a security program in a classified environment, or an advanced degree with 0-1 years experience working in Industrial Security, Information Assurance/Cyber, Special Programs, military or government information security programs
Five years of related experience in lieu of a degree with an Active and transferable Top Secret U.S. government security clearance is required prior to start date
Strong work ethic with the ability to work autonomously or in a team environment
This position is onsite at our Cambridge, MA Location, candidates must be available to work 40 hours per week on site
Compliance-based auditing using and knowledge of the RMF, National Industrial Security Program Operating Manual (NISPOM), Defense Counterintelligence and Security Agency (DCSA) Assessment and Authorization Process Manual (DAAPM), DCSA Assessment and Authorization Guide (DAAG), Joint SAP Implementation Guide (JSIG), Department of Defense Manuals, Sensitive Compartmented Information (SCI) manuals
Certifications equivalent to or exceeding DoD 8570.01-M IAM Level I functional and baseline certification requirements. (Security + and in pursuit of IAM Level II)
Knowledge and/or experience with STIGs, SCAP, Splunk or other system hardening and compliance, vulnerability assessment, and/or SIEM tools
United States citizenship is required. Must have eligibility to obtain Top Secret and additional clearances as required, willingness to obtain a TS/SCI CI Poly Clearances
10% travel may be required
Preferred
Experience in the execution of the Assessment & Authorization processes, as defined within RMF
Experience with various security tools that address vulnerability analysis and mitigation
Experience working in DoD classified environment interpreting, implementing, and assessing requirements
Familiarity with the execution and management of cyber incident response; preservation, containment, and eradication
Desired certifications: Security +, CISM
Benefits
Medical
Dental
Vision
Life insurance
Short-term disability
Long-term disability
401(k) match
Flexible spending accounts
Flexible work schedules
Employee assistance program
Employee Scholar Program
Parental leave
Paid time off
Holidays
Relocation Assistance available
RTX is comprised of three market-leading businesses – Collins Aerospace, Pratt & Whitney and Raytheon – working as one to answer the biggest questions and solve the hardest problems in aerospace and defense.
Glassdoor
3.8
Founded in 1922
Arlington, Virginia, USA
10001+ employees
http://www.raytheon.com
RTX is comprised of three market-leading businesses – Collins Aerospace, Pratt & Whitney and Raytheon – working as one to answer the biggest questions and solve the hardest problems in aerospace and defense.