CASY-MSCCN Jobs

CASY-MSCCN Logo

Job Information

Pennsylvania State University Information Systems Security Officer in University Park, Pennsylvania

APPLICATION INSTRUCTIONS:

  • CURRENT PENN STATE EMPLOYEE (faculty, staff, technical service, or student), please login to Workday to complete the internal application process (https://pennstateoffice365.sharepoint.com/:b:/s/KnowledgeBaseArticlesSharing/EfiwgKReZ4VAjprFZPKWUm0Bq_sU3KzTmERfpryq0esPKQ) . Please do not apply here, apply internally through Workday.

  • CURRENT PENN STATE STUDENT (not employed previously at the university) and seeking employment with Penn State, please login to Workday to complete the student application process. (https://pennstateoffice365.sharepoint.com/:b:/s/KnowledgeBaseArticlesSharing/Eeys15Xva4hFokHVtbP1eGIB5i1WFLc-J3k9KHgrFYZ7mg) Please do not apply here, apply internally through Workday.

  • If you are NOT a current employee or student, please click “Apply” and complete the application process for external applicants (https://hr.psu.edu/sites/hr/files/Application_Process_for_External_Applications_Non-Penn_State_Employees_.pdf) .

JOB DESCRIPTION AND POSITION REQUIREMENTS:

The Cyber and Information Security Division of The Applied Research Laboratory (ARL) at Penn State University, is seeking an Information Systems Security Officer (ISSO) to support Information Security requirements of our classified networks. This team helps to protect ARL’s network and systems by providing proactive security measures, assessing and acting on risks, and ensuring compliance. We are looking for someone who wants to tackle a constant need to solve complex problems, is comfortable communicating and collaborating with a diverse audience, and can easily work alone or in a group.

ARL is an authorized DoD SkillBridge partner and welcomes all transitioning military members to apply.

Responsibilities include:

  • Aid in the, development, validation, and submission of information system security plans, security test and evaluation plans, certification and accreditation or authorization packages, and plans of action and milestones in support of compliance requirements

  • Take part in conducting, developing, planning, and coordinating risk assessments of information systems in development, test, production and research environments as required by established or newly determined compliance/audit requirements

  • Conduct assessment and review of systems and networks within the environment to identify where systems/networks deviate from acceptable configurations, enclave policy, and local policy

  • Aid in the development of training material related to compliance and audit requirements to assist employees in individual compliance/audits as applicable

  • Complete technical requirements for networks and systems such as; vulnerability scanning, review of security/event logs, network analysis, security configuration review, and incident response on an as-needed basis

Typically requires a Bachelor's degree or higher plus two years of related experience, or an equivalent combination of education and experience. A Bachelor’s Degree in Cyber and Information Security, Information Technology, or Computer Science is preferred.

Required skills and experience include:

  • Assessment and Authorization with experience using RMF

  • Knowledge and application of NIST 800-53, ICD 503, Department of Defense Directives, and regulatory

requirements

  • Operational experience, with familiarity in security/event log auditing

  • Security plan development and/or continuous monitoring for compliance with security plans

  • The ability to certify and maintain information security related certifications. Security+ and CISSP are the most ideal (some other useful certs, CASP, GSEC, CISM)

  • Effective analytical, problem solving, and communication skills

  • Efficient organizational, multitasking, and time management abilities with the aptitude to work independently, as part of a team, and across multiple teams in various disciplines

Preferred skills and experience include:

  • An active TS/SCI security clearance

  • Vulnerability scanning and mitigation utilizing Nessus, ACAS, or similar tool

  • Windows or UNIX/Linux operating system administration

  • TCP/IP network analysis and network/packet level examination tools such as tcpdump, or Wireshark

  • SEIM management or use for analysis, such as Splunk or ELK

  • VMWare and management of Virtual Machines

  • Policy and procedure development

  • Definition and interpretation of audit requirements

  • Development and support of a certification test plans and continuous monitoring plans

This position will be located in State College, Pennsylvania. Occasional travel to satellite offices in may be required.

ARL at Penn State is an integral part of one of the leading research universities in the nation and serves as a University center of excellence in defense science, systems, and technologies with a focus in naval missions and related areas.

You will be subject to a government security investigation, and you must be a U.S. citizen to apply. Employment with the ARL will require successful completion of a pre-employment drug screen.

ARL is committed to diversity, equity, and inclusion; we believe this is central to our success as a Department of Defense designated University Affiliated Research Center (UARC). We are at our best when we draw on the talents of all parts of society, and our greatest accomplishments are achieved when diverse perspectives are part of our workforce.

FOR FURTHER INFORMATION on ARL, visit our web site at www.arl.psu.edu.

The pay range for this position, including all possible grades is:

$68,200.00 - $102,300.00

Salary Structure (https://hr.psu.edu/current-employee/compensation/comp-modernization) - additional information on Penn State's job and salary structure.

CAMPUS SECURITY CRIME STATISTICS:

Pursuant to the Jeanne Clery Disclosure of Campus Security Policy and Campus Crime Statistics Act and the Pennsylvania Act of 1988, Penn State publishes a combined Annual Security and Annual Fire Safety Report (ASR). The ASR includes crime statistics and institutional policies concerning campus security, such as those concerning alcohol and drug use, crime prevention, the reporting of crimes, sexual assault, and other matters. The ASR is available for review here (https://police.psu.edu/annual-security-reports) .

Employment with the University will require successful completion of background check(s) in accordance with University policies.

EEO IS THE LAW

Penn State is an equal opportunity, affirmative action employer, and is committed to providing employment opportunities to all qualified applicants without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. If you are unable to use our online application process due to an impairment or disability, please contact 814-865-1473.

Federal Contractors Labor Law Poster (https://affirmativeaction.psu.edu/files/2022/01/Federal-Contractors-Labor-Law-Poster.pdf)

PA State Labor Law Poster

Affirmative Action (https://policy.psu.edu/policies/hr11)

Penn State Policies

Copyright Information (https://www.psu.edu/copyright-information)

Hotlines

University Park, PA

DirectEmployers