Job ID: 114902
Business Unit: DRS Daylight Solutions
Location: San Diego Diego, CA 92127
Telework Type: N/A
Schedule: 9/80
DRS Daylight Solutions business provides industry-changing mid-infrared laser light technology for government and commercial markets, including: defense and security; life sciences; and industrial process control. As a mid-IR technology pioneer, Daylight Solutions has delivered more mid-IR systems to more applications world-wide than any other company.
Job Summary
The Information System Security Officer (ISSO), in collaboration with the Information System Security Manager (ISSM), supports the security and compliance of the organization’s classified and high-side information systems while enabling mission-critical operations. This role is ideal for a junior to mid-level cybersecurity professional with foundational knowledge of information assurance, system administration, security compliance, and DoD or DCSA security requirements. The ISSO assists with securing on-premises networks, standalone systems, business applications, and peripherals through hands-on execution of security procedures, continuous monitoring, documentation, and customer support. Responsibilities include supporting Risk Management Framework (RMF) activities and Authorization to Operate (ATO) package development and maintenance through eMASS and associated processes, while partnering with industrial security and technical teams to implement technical, administrative, and operational controls.
Success in this role requires a willingness to learn, attention to detail, clear communication, initiative, and the ability to think creatively when balancing security requirements with operational needs. The successful candidate will be highly personable, approachable, and able to independently build relationships with customers, end users, and internal cross-functional teams. Candidates should be self-starters with basic system administration experience or technical aptitude and an interest in growing their cybersecurity and compliance expertise. This is a full-time, on-site position requiring face-to-face collaboration with cross-functional teams and colleagues. Early career candidates with security clearances are highly encouraged to apply!
Job Responsibilities
Cybersecurity Governance, Risk, and Compliance:
- Serve as the ISSO under the direction of the ISSM, overseeing the security compliance and secure operations for the full lifecycle of classified systems in alignment with Defense Counterintelligence and Security Agency (DCSA) and other federal government standards
- Act as an advisor to the Site Facility Security Officer (FSO) and ISSM on all classified information system security matters and maintain liaison with the local DCSA Information Systems Security Professional (ISSP)
- Ensure ongoing compliance with the National Industrial Security Program (NISP), DoD, and DCSA requirements by executing local policies, processes, and procedures in alignment with the DCSA Assessment and Authorization Guide (DAAG)
- Execute steps within RMF, developing and maintaining required security documentation and artifacts, including policies, procedures, training materials, security control implementation, system diagrams, asset inventories, and Plans of Action and Milestones (POA&Ms)
- Maintain and renew ATOs for classified systems, ensuring full alignment with DoD, DCSA, and corporate requirements
- Collaborate with DCSA ISSP and internal stakeholders to resolve assessment findings and strengthen the overall security posture and compliance adherence
- Conduct periodic self-inspections and security assessments of classified systems as part of the facility’s self- inspection program, ensuring corrective actions are implemented promptly
- Assist in preparing for and supporting internal and external audits by government agencies through updating documentation, validating configurations, preparing physical artifacts, and ensuring NIST security controls remain compliant
- Identify, document, and mitigate local threats and vulnerabilities to classified information systems, ensuring timely remediation of all identified risks
- Support the ISSM in delivering site-wide information systems security education and awareness programs to all users of classified systems supporting secured contracts
- Assist in investigations of security violations related to classified systems, ensuring corrective actions are documented and implemented
- Collaborate cross-functionally with program management, facilities, human resources, IT, and other stakeholders to execute security deliverables and support personnel requirements
- Perform vulnerability scanning using approved tools (e.g., Nessus), analyze results, assess risks, and develop mitigation strategies in accordance with established timelines
Security Administration and Operations:
- Ensure regular data backups, troubleshoot issues, and maintain the health and availability of virtual and physical storage systems
- Install and configure patches, firmware, and software updates for servers and related hardware to maintain security, compliance, and performance
- Serve as a designated Data Transfer Agent (DTA) to move authorized data across classification environments
- Provide on-site technical support using multi-tiered troubleshooting to resolve moderately complex system and application issues
- Monitor and enforce access controls for cleared systems supporting classified programs in accordance with least privilege
- Administer end-user accounts through onboarding, role changes, and offboarding in compliance with authorization protocols
- Conduct scheduled internal audits of system configurations, processes, and procedures to verify compliance, security posture, and readiness
- Support additional tasks as directed by the ISSM, Senior System Administrator, ISSO, or FSO in support of mission, values, and security culture
- And other duties as assigned
Our Ideal Candidate Will Have
A strong candidate will possess both an Information Assurance background and hands-on Security Administration experience.
Information System Security Compliance Competency
- Demonstrated experience assembling and managing RMF security authorization packages and supporting artifacts (preferably DoD) using eMASS, including obtaining ATOs and conducting continuous monitoring
- Proven ability to implement technical security controls and hardening standards (STIG/SCAP) and to execute and analyze vulnerability scans (e.g., Nessus/ACAS) with effective risk-based remediation
- Excellent technical writing skills for producing clear, concise security documentation, policies, procedures, and formal memoranda
- Track record of collaborating with industrial security professionals and FSOs, consistently applying NISP and DCSA requirements
Security Administration and Operations
- Proficiency administering and maintaining servers (primarily Windows), including patching, configuration management, auditing (experience with Splunk or similar), and STIG-based hardening; experience with virtualized environments preferred
- Hands-on experience securing and managing Windows endpoints and Cisco network devices, including configuration, access control, and basic network troubleshooting
- Experience performing cross-domain and data transfer activities (DTA) across classification levels in accordance with policy and security controls
Problem Solving and Initiative
- Strong analytical and troubleshooting skills with a proactive mindset; able to independently identify, research, and resolve complex technical and compliance issues
- Demonstrated ability to prioritize competing tasks in support of mission objectives and to work autonomously to drive tasks to completion
Customer Service and Communication Competencies
- Outstanding interpersonal skills (oral and written) with the ability to deliver professional, face-to-face support and communicate technical and security information clearly to stakeholders at all levels
- Experience coordinating across functional teams to translate security requirements into operational solutions and to foster collaborative relationships
Qualifications
- Associate’s degree in computer science or certification (MSCE or GAIC) or equivalent related experience
- 3+ years of security experience in either the defense industry or Information Systems Security, or a combination of both
- Completion of required Department of Defense (DoD) courses related to government security
- Knowledge of information systems security components and best practices including; firewalls, intrusion detection systems, anti-virus software, data encryption, and other industry-standard techniques and practices
- Knowledge of U.S. Government Information System security standards (i.e. NIST and ISO27)
- Highly self motivated and strong organizational skills and excellent attention to detail
- Strong interpersonal oral, written and communication skills
- Possess, or be eligible to obtain and maintain, a U.S. Government security clearance
U.S. Citizenship required. Active DoD Secret security clearance required, with the ability to obtain and maintain a Top Secret clearance throughout employment.
The salary range for this position is $83,527 - $119,480/year. This range reflects the good faith estimate of pay the employer is willing to offer at the time of posting. Several factors can influence the pay scale, including but not limited to: Federal contract labor categories and contract wage rates, collective bargaining agreements, geographic location, business considerations, scope, and responsibilities of the position, local or other applicable market conditions, and internal equity. Other factors include the candidate’s qualifications such as prior work experience, specific skills and competencies, education/training, and certifications. In addition to base pay, employees may be eligible for: annual performance-based bonuses, equity awards, and overtime pay (for non-exempt employees as applicable. Our benefits package includes comprehensive health insurance (medical, dental, vision), employer matching 401(k) retirement plan, paid time off including vacation, holidays, and sick leave (including ant state-mandated paid sick leave), parental leave benefits, tuition reimbursement, professional development support, and life and disability insurance coverage.
Taking care of our people is a top priority at Leonardo DRS. We are proud to offer competitive salaries and comprehensive benefits, including medical, dental, and vision coverage, a company contribution to a health savings account, telemedicine, life and disability insurance, legal insurance, and a 401(k) savings plan. We champion wellness programs that focus on physical, emotional, and financial well-being. We develop our talent by offering programs and activities to support career-growth, professional development, and skill enhancement. And we understand there is more to life than work, and the importance of offering flexible work schedules with our 9/80 program, competitive vacation, health/emergency leave, paid parental leave, and community service hours.
*Some employees are eligible for limited benefits only
Leonardo DRS, Inc. and its subsidiaries provide equal opportunities to all employees and applicants for employment and prohibit discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws.
Learn more about this Employer on their Career Site
