Information Systems Security Officer (ISSO)

  • Full-time

Company Description

Founded in 2017 and headquartered in Manassas, Virginia, Toomey Technologies is a SBA HUBZone & WOSB Certified Small Business that provides customer focused professional services and solutions. Toomey focuses on forging strong relationships with our customers and internally fostering a culture of continuous improvement of our management and technical processes. Our aim is to leverage our knowledge and skills to work with our clients, offering professional and impartial advice. Due to technology's constant changing landscape, we make it our mission to bring our customers vendor agnostic solutions that are specifically designed to meet the needs of our clients. Toomey's strategic goal is to become a trusted advisor to our customers while assisting to create innovative solutions and to find new ways to solve customer-specific problems.

Job Description

Toomey Technologies is seeking a mid level Information Systems Security Officer (ISSO) who thrives in a fast-paced environment.  Responsibilities:

  • Deploying system updates and patches utilizing Microsoft System Center Configuration Manager (SCCM) and Windows Software Update Services (WSUS)
  • Executing deployment plans and operational activities to include application deployment and patching, etc.
  • Reviewing deployment plans and operational activities such as operating system upgrades, application deployment, patching etc.
  • Creating group policy objects as per security requirements. 
  • Identifying and cleaning stale records in AD environment. 
  • Understanding of Microsoft WSUS. 
  • Evaluating network and security technologies
  • Working knowledge of current government mandated cybersecurity policies and procedures.
  • Developing Information Assurance (IA)/Cybersecurity strategies for both new systems and enhancements/overhauls of existing systems.
  • Influencing the system requirements and design processes to incorporate the identification of cyber requirements early in these processes.
  • Suggesting architecture solutions to systems that support both the functional requirements of the systems and the cyber/information assurance requirements.
  • Identify poor cyber designs in systems and offering alternative designs.
  • Support the development of Risk Management Framework (RMF) packages for the certification and accreditation of both new and existing networks.

Qualifications

  • U.S. Citizen
  • Active TS/SCI Clearance
  • Experience in planning, creating, and deploying SCCM packages to devices on network
  • Experience designing, deploying, and troubleshooting an enterprise SCCM infrastructure
  • Experience in writing and maintaining scripts in multiple languages
  • Strong understanding and competence in virtual computing environment
  • Knowledge of Active Directory design and support (GPOs, AD Schema, OUs, LDAP, Sites Replication, etc.)
  • In-depth familiarity with TCP/IP network protocols, application layer protocols (e.g., HTTP, SMTP, DNS, etc.), and general techniques for parsing network protocols.
  • Experience in information security, risk management with a focus on security, performance, and reliability.
  • Solid understanding of USG IA/Cybersecurity Directives, security protocols, authentication, and authorization.
  • ·Knowledge of Certification and Accreditation packages under RMF.
  • Environment: Group policy management, Active Directory, LDAP, Windows 2008R2/ 2012, DNS, DHCP, Power Shell, VMware, Hyper V, DNS, DHCP, ADFS, FTP, MFA, PKI, WSUS, Azure, Security patches, Internet proxies
  • Required  DoDD 8570 IAT II or IAM II
  • Desired:  CISSP, CASP/Security+, CISA, SSCP, CISM, CEH, MS Security

Additional Information

  • Toomey Technologies is an Equal Opportunity Employer, making decisions without regard to race, color, religion, sex, national origin, age, veteran status, disability, or any other protected class.
  • U.S. Citizenship is required for all positions