BACKGROUND
The National Biodefense Analysis and Countermeasures Center (NBACC) is a unique facility located on Fort Detrick in Frederick, MD, dedicated to defending the nation against biological threats. It supports DHS and national biodefense planning, response, threat characterization, and bioforensic analyses. Created in response to biodefense gaps identified after the 2001 Amerithrax attacks, it has been operated by the Battelle National Biodefense Institute (BNBI) since 2006. NBACC fills critical gaps in scientific knowledge of biological agents and provides data to support law enforcement investigations and biosecurity.
NBACC comprises two centers: the National Bioforensic Analysis Center (NBFAC), which supports law enforcement investigations, and the National Biological Threat Characterization Center (NBTCC), which conducts research on biological vulnerabilities. These centers serve as a vital resource for understanding biological risks and informing biodefense policies and responses.
PRIMARY FUNCTION
The Information Systems Security Officer, Classified (ISSO, Classified) advises the Network Security Manager (NSM), IT Manager, and System Owner on security matters for assigned systems. The ISSO ensures compliance with DHS security policies, maintains Authorization and Accreditation (A&A) requirements, and serves as the primary contact for security issues related to the systems. The role supports the implementation of NBACC's Information Security Program.
MINIMUM REQUIRED QUALIFICATIONS
- Bachelor's Degree (or equivalent) in Cybersecurity or related field, with at least 4 years of relevant experience.
- Certified Information Systems Security Professional (CISSP) preferred; other security certifications considered.
- Experience with federal cybersecurity policies and compliance.
- Experience working in secure environments is desirable.
- Strong knowledge of information security principles, risk assessment, and management.
- Experience with security technologies such as vulnerability scanners, firewalls, log analysis, SEIM, antivirus, malware analysis, and forensics.
- Ability to analyze and report security events and anomalies.
- Managing COMSEC experience is highly desired.
- Ability to support laboratory activities and adhere to management systems like ISO.
- U.S. citizenship and ability to obtain and maintain an interim secret clearance, with eligibility for a top-secret clearance and SCI access.
- Participation in immunization, medical surveillance, or Personnel Reliability Program (PRP) is required.
- May require participation in alternative work schedules or on-call duties based on needs.
PRIMARY RESPONSIBILITIES
- Serve as the main contact for security of classified IT systems.
- Ensure compliance with 4300C policies and work with DHS CISO and component ISSMs.
- Keep NSM and IT Manager informed of security status and issues.
- Collaborate with other ISSOs and system owners to maintain security controls and document vulnerabilities.
- Utilize DHS-approved automated tools (e.g., Nessus, CSAM, Crowdstrike).
- Conduct security awareness training for personnel and manage offboarding security procedures.
- Perform vulnerability scans, analyze findings, and generate mitigation reports.
- Monitor security events using various tools and logs.
- Maintain documentation, security artifacts, and develop system security plans.
- Evaluate and implement system modifications ensuring security compliance.
- Assist in security tuning, audits, and disaster recovery planning.
- Stay informed on IT security trends and recommend improvements.
- Support team collaboration, communication, and effective task prioritization.
- Maintain accurate records and perform additional duties as assigned.
#J-18808-Ljbffr