Information System Security Specialist

Minimum Clearance Required to Start:
Top Secret SCI
Job Description:

Do you have an interest in the information security field? If you want to learn from and grow with a team of talented security engineers while working for a company that is making a difference in the world, Parsons has an opportunity for you! We are currently seeking an information system security specialist to help us deliver best in class services to our federal government clients.

Parsons Information Systems Security Specialists develop, maintain, and implement information security standards, procedures, and guidelines for applications and databases. The ISSS ensures that systems and organizational databases are protected from unauthorized access and use, monitors systems, identifies threats, and handles disaster recovery operations. In this role you will play a key role in managing program and project implementation and make significant contributions to department goals and planning efforts.

  • Develop and present weekly information system security briefings. Recommend cost effective solutions to mitigate risks within the IT baseline and propose recommendations for improving the information security processes/procedures.
  • Provide guidance, assistance, and coordination to systems developers, systems administrators, and other IT specialists to ensure verified and timely implementation of IT security standards for systems both under development and already deployed.
  • Document, manage, and control the integrity of changes to all systems security documentation, including standard operating procedures and user guides that provide detailed instructions for implementing IT systems security policies.
  • Assist in the selection of minimum-security controls to establish a baseline of measures to prevent security breaches of the information system, document the selected security controls in the security plan and initial Risk Assessment Report (RAR), and, document an approved continuous monitoring strategy.
  • Document the security control implementation, as appropriate, in the security plan, providing a functional description of the control implementation (including planned inputs, expected behavior, and expected outputs).
  • Conduct security testing and verify which security controls are implemented correctly, operating as intended, and producing the desired outcome in meeting security requirements.
  • Conduct remedial actions on security controls based on the findings and recommendations of the Security Assessment Report and reassess remediated control(s), as appropriate.
  • Review vulnerability scans and ensure the accountable parties have responded appropriately to vulnerability findings, troubleshoot security threats and vulnerabilities in response to incident reports, and identify/isolate problem sources; and recommend solutions or corrective actions.
  • Monitor and analyze systems logs daily to identify systems security trends and assess the security effectiveness of installed systems based on analysis of reported security problems.
  • Participate in multi-functional teams and manage work through JIRA.

  • Bachelor's degree in Computer Science or a related technical field, or equivalent experience
  • Active TS/SCI security clearance
  • A minimum of 3 years of related professional experience
  • Possess a minimum of three (3) years of experience in Certifying and Accrediting systems including at least one (1) year of experience in applying the National Institute of Standards and Technology (NIST) Special Publication 800-53 Risk Management Framework
  • Certified in a DOD 8570 IAM Level II baseline certification
Must be able to obtain, maintain and/or currently possess a security clearance.
The position requires a COVID vaccination or an approved accommodation/exemption for a disability/medical condition or religious belief.