This post has been de-listed
It is no longer included in search results and normal feeds (front page, hot posts, subreddit posts, etc). It remains visible only via the author's post history.
Last week I received and accepted an employment offer to be an ISSO. I start next month and I want to get a jump on some targeted training. The responsibilities are listed below.
Where can I find some good training courses to help me prep?
Responsibilities
Ensuring audits are performed, collected, and analyzed in accordance with established security policy. Conducting periodic Information Assurance (IA) assessments using automated tools and manual testing, documenting findings and identifying corrective actions. Ensuring systems are operated, maintained, and disposed of securely. Implementing the Risk Management Framework (RMF) Continuous Monitoring Strategy for secure systems. Ensuring all account management documentation is completed prior to adding, deleting, or modifying accounts. Monitoring system recovery processes to ensure security features and procedures are properly restored and functioning as intended. Maintaining all training and certification requirements. Working together with the Information System Security Manager (ISSM) and Facility Security Officer (FSO) as part of the security team, performing additional Information Technology (IT) duties, as required. Competencies
Required: 2 years relevant experience with the following technologies –
Windows Domain Environments Active Directory Domain Services (ADDS) Windows 10 Enterprise Windows Server 2016/2019/2022 DoD Risk Management Framework (RMF) Machine and User Security Auditing Preferred: 2 years relevant experience with the following technologies –
Windows Group Policy Management (GPOs)/Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs). Monitoring and auditing technologies DCSA RMF process Stand-alone enclave networks Linux RHEL 7/8/9 NIST 800 Special Publication (SP) family Static Application Security Testing (SAST) Dynamic Application Security Testing (DAST) DoD DevSecOps processes DoD DevSecOps Continuous Integration / Continuous Deployment (CI/CD) Agile methodologies and practices
Subreddit
Post Details
- Posted
- 1 year ago
- Reddit URL
- View post on reddit.com
- External URL
- reddit.com/r/cybersecuri...