The posting
Job Type: Regular Information Systems Security Officer (ISSO) The Information Systems Security Officer (ISSO) is responsible for providing compliance and oversight of all of RAND Corporation’s Authorization and Accreditation (A&A) requirements, maintaining policies and procedures in accordance with the Defense Intelligence Agency (DIA), Defense Counterintelligence Security Agency (DCSA), Intelligence Community (IC), and other Department of Defense (DoD) regulations as applicable. Additionally, the position manages the Sensitive Compartmentalized Information (SCI) and Special Access Program (SAP) Information Systems (IS) to ensure that all classified IS remain accredited, executes required functions as defined by the IC, DoD and Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs) in support of the local Information Systems Security Manager (ISSM), Corporate ISSM, Manager, Security Operations, and Executive Director, Security & Classified Operations and Chief Security Officer, and provides services for individuals within the accredited systems. Duties Implements, monitors and maintains RAND’s Security Manual and procedures for DoD, IC and SAP programs and other applicable government sponsor regulations Enforces corporate policies to support ICD’s, DAAPM, JSIG and other CI standards. Enforces compliance with current Security Technical Implementation Guides (STIGs) for all applicable systems Interfaces with and supports clients in the operation and security of the classified systems Assists the ISSM in establishing, communicating, and improving the collateral and SCI/SAP Information Systems (IS) Security Program Responsible for the preparation and sustainment for internal self-inspections. Assesses changes by performing periodic self-inspections, tests and reviews of the classified IS program to ensure that systems are operating as authorized/accredited and that conditions have not changed Participates in the planning, installation, implementation, upgrade, problem determination and resolution involving software programs, operating systems, computers, printers, scanners, etc. for collateral and SCI/SAP systems. Provides budget requirements to the ISSM for the sustainment of the collateral SCI/SAP systems Ensures protocols are followed for the investigation(s) and resolution of security incidents Collaborates with the system and network administrators to ensure audit features are configured and enabled correctly Performs weekly audits and ensures administrative inquiries/investigations into anomalies found during audit trail analysis are reported to the ISSM for follow on actions Develops and implements the System Security Plans (SSP) and addendums for the facility Performs other duties as assigned Education High school diploma or GED required. BS/BA degree preferred. Experience A bachelor’s degree in a related field is preferred. Candidates must have at least three years of IT experience in a classified environment or as an ISSM/ISSO in government or industrial security with a bachelor’s degree, or at least seven years of equivalent experience without a bachelor’s degree. Basic Qualifications Must have and maintain a DoD 8570.01-M (Information Assurance Workforce) IAM level 1 certification (e.g. Security+, GSLC, CISM, or CISSP) Possesses working knowledge of the DoD, DISA, ICDs and associated IC security regulations, policies, STIGs and laws Possesses extensive working knowledge of multiple federal government network security processes and procedures Education in the fields of computer science or engineering for technical project managers Technical background with understanding or hands-on experience in software development and web technologies Organizational skills including attention to detail and multi-tasking skills Is familiar with encryption technologies, forensics, penetration and vulnerability analysis of various security technologies and information technology security research Possesses knowledge of Microsoft office products or similar software packages Possesses a strong understanding of operating system (PC, Mac, Linux) and audit log aggregator software Able to configure laptops/desktops, install applications, setup network infrastructure and troubleshoot as required Possesses excellent oral and written communications skills required for correspondence, reports, briefings, and procedures Demonstrates strong customer service skills Must be able to lift 30 lbs. Must be able to pass a background check Preferred Qualifications At least five or more years’ experience in Information Technology (IT) in a classified environment or as an ISSM/ISSO in government/industrial security leading other security professionals preferred Experience working with federal/government agencies or defense contractors preferred Experience interfacing with DIA or other government representatives as the ISSM/ISSO preferred Location Pittsburgh 100% onsite, Monday through Friday, generally 8:00 a.m.–5:00 p.m. No remote or hybrid arrangement. Security Clearance Must hold and maintain a Top-Secret security clearance and SCI/program eligibility Salary Range: $88,000 - $130,900 RAND considers a variety of factors when formulating an offer, including but not limited to, the specific role and associated responsibilities; a candidate’s work experience, education/training, skills, expertise; and internal equity. The salary range includes base pay plus RAND’s sabbatic pay (which provides additional compensation above base pay when vacation is taken). In addition, RAND provides strong benefits including health insurance coverage, life and disability insurance, savings plan, paid time-off and more. Equal Opportunity Employer RAND is a research organization that develops solutions to public policy challenges to help make communities throughout the world safer and more secure, healthier and more prosperous. RAND’s research and analysis address issues that impact people everywhere, including security, health, education, sustainability, growth, and development. RAND has approximately 1,750 people working in offices in the United States, Europe, and Australia, with annual revenues of $470 million. RAND is nonprofit, nonpartisan, and committed to the public interest. Our research is sponsored by government agencies, international organizations, and foundations. We rely on philanthropic support to pursue visionary ideas; address critical problems that are under-researched; and devise innovative approaches for solving acute, complex, or provocative policy challenges. RAND values objectivity and integrity in both its research processes and internal interactions. We emphasize a collegial environment that respects the contributions and dignity of all staff. RAND's reputation is built on quality and objectivity. RAND provides an exciting intellectual environment and opportunities for career growth with challenging assignments. As collaboration in interdisciplinary teams is an essential operating principle at RAND, we hire highly qualified talent and empower our people to do their best work by fostering a culture in which different views, backgrounds, experiences, and perspectives are valued and respected, and staff have a sense of belonging with their colleagues, fair access to opportunities, and feel comfortable bringing their best selves to work each day. As part of our commitment to Equal Opportunity Employment, we welcome all applicants from a broad range of backgrounds and experiences to apply for this exciting opportunity. RAND is committed to working with and providing reasonable accommodations to individuals with disabilities. If, because of a medical condition or disability, you need reasonable accommodation for any part of the application process, or in order to perform the essential functions of a position, please contact Human Resources at (310) 393-0411 or at [email protected] and let us know the nature of your request and your contact information.



