The ISSO will provide experienced and qualified personnel to perform Cybersecurity support services to assist ACC Cybersecurity Chief Information Security Officer and unit Information System Security Officers (ISSO) in maintaining an effective cybersecurity program that supports missions and adequately protects the confidentiality, integrity and availability of AF IC information resources. PRIMARY RESPONSIBILITIES
- Candidates must possess an active TS/SCI security clearance.
- Develop local unit Cybersecurity programs and security plan IAW ACC, AF, IC, and DOD guidance.
- Gather data, analyze compliance and report results on the condition and progress of local unit Cybersecurity programs, security plans, plan of action and milestones (POA&M) and Assessment and Authorization (A&A) workflow tools data, patch management, information assurance vulnerability alerts (IAVA), DoD 8570.01M certifications, and Federal Information System Modernization Act (FISMA) compliance requirements, and Authorizations to Operate (ATOs) to unit leadership and HHQs as directed.
- Interact with local units and HHQ IISMs to provide Cybersecurity assessments, courses of action, and solutions to commanders on how to improve their Cybersecurity programs.
- Develop and provide on-the-job work center training on various IT security tools, policies and procedures required to protect resources and meet standards.
- Oversee JWICS operations for all Wing and subordinate unit SCIFs on site. - Responsible for all Site-wide JWICS Command, Control, Communications, Computers, and Intelligence (C4I) and perform JWICS specific touch maintenance to install and maintain computers, servers, and all JWICS related software and hardware.
- Ensure security patching is completed and locally downloaded.
- Work directly with users at the site and liaise daily with the ESD and ESC AF to help resolve user and network related issues as well as maintain the integrity of the Site domain.
- Perform investigative administration operations in support of the Cyber Security Operations Center for malware, spyware, Trojans, or unauthorized software. - The candidate should be able to work autonomously with minimal oversight as well as in conjunction with multiple personnel in the fulfillment of the individual employee’s functions.
- Must have the ability to gather facts and use effective analytical and evaluative methods to assess information, plan the sequence of actions necessary, make sound decisions and solve a variety of security problems.
- The candidate should have a thorough understanding of their respective position, functions, and duties and will assist USAF and other government agencies in the creation and development of SSO documents, PowerPoint presentations, formal messages, background papers, and items of interest, staff summary packages, and other administrative tasks as necessary.
- Candidate will perform SCI security support functions and have access to JWICS systems located within the SCIF. - The position is full time daily operation and may require after hours and weekend duty via on-call support. The System Administrator is required to be able to respond within one (1) hour of critical incident notification during duty hours (0730-1630) and within six (6) hours or less during non-duty hours/weekends/holidays if needed. BASIC QUALIFICATIONS
- IAT Level 2
- Current Security +
- Experience working Assessment and Authorization documents, assessments and Cybersecurity program tasks.
- Experience in a full range of IT security principles, including: - Concepts, practices, products and services (including system software, database software and immediate access storage technology) - Disseminating IT security tools and procedures - IT security certification and accreditation requirements - Familiar with and use Active Directory tools to manage accounts - Familiar with imaging computers and upgrading operating systems - Familiar with using scanning tools to scan and subsequently patch devices - Familiar with trouble ticketing tools such as Remedy - Be able to remotely log in to computers as needed for maintenance - Be able to add and remove computers to domains - Be able to assign and remove security controls to user accounts - Be able to perform all Security Plus (Security+) type functions - Be able to work independently and/or with a team - Be familiar with and be able to modify file servers and shared permissions REQUIRED EXPERIENCE:
- Minimum 10 years of experience related to the specific labor category with at least a portion of the experience within the last 2 years. REQUIRED EDUCATION
- Master’s degree from a college or university accredited by an agency recognized by the U.S. Department of Education; or have bachelor’s degree from a college or university accredited by an agency recognized by the U.S. Department of Education and an additional 5 years of related senior experience, for a total of 15 years, as a substitute to the master’s degree. Salary range $85,000 - $90,000 per year