KBR, Inc

Information System Security Manager (ISSM)

KBR, Inc$100K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • *TS/SCI required*
  • Minimum 2 years in IT Information Assurance or Cyber Security engineering experience.
  • Minimum 2 years conducting security assessments and guiding RMF processes.
  • Bachelor's in Engineering, Computer Science or 8 years IT experience; Master's preferred.
  • Expertise in assessing security controls per NIST 800 Series.
  • In-depth knowledge of Cybersecurity principles, technologies, and processes.

Responsibilities

  • Deliver executive-level documentation including RMF packages and assessments.
  • Review cybersecurity tool reports for compliance and reporting.
  • Develop software certification packages.
  • Collaborate with the TRMC SISO on RMF packages and ATO updates.
  • Support security engineering projects and solutions.
  • Lead security audit and compliance activities for responsible systems.
  • Audit RMF package artifacts to ensure system readiness for ATO submissions.
  • Provide vulnerability mitigation recommendations to senior stakeholders.
  • Monitor and report system status updates to senior leadership.
  • Draft and present RMF deliverables at executive reviews.

Benefits

  • Position primarily remote with occasional travel requirements (25%).
  • Opportunity for direct collaboration with military and government personnel.
  • Engagement in high visibility projects within the DoD.
  • Role as a Subject Matter Expert (SME) in cybersecurity domain.
  • Access to advanced cybersecurity tools and processes.
Full Job Description

Title:

Information System Security Manager (ISSM)

KBR is seeking an Information System Security Manager (ISSM) to join our team. This position is primarily remote, however theISSM be able to go into the DoD installation space for meetings and work on ad ad-hoc and sometimes immediate basis

The selected applicant will provide cybersecurity and Risk Management Framework (RMF) support to systems and applications for the Test Resource Management Center (TRMC). Will work with military, government, and contractor personnel to provide technical and policy direction grounded in Department of Defense (DoD) policy, and act as the Subject Matter Expert (SME) with the cybersecurity domain and lead ISSOs. The application will, at times, be the liaison between end users, application developers, and senior leadership within the DoD and across the Test and Evaluation community.

Responsibilities:

  • Deliver documentation to include: Executive level briefings, Assessments, Self-Assessments, RMF packages, and supporting RMF documentation
  • Review Cybersecurity tool reports, ACAS, HBSS, for the purposes of reporting and compliance
  • Software Certification package development
  • Work directly with the TRMC SISO on all TRMC RMF packages and ATO Status updates
  • Support security engineering projects and solution delivery.
  • Lead security audit and compliance activities for each system responsible for
  • Responsible for auditing all artifacts provided in each RMF package to determine system readiness for ATO packet submissions.
  • Provide recommendations to the SISO, PM, and AO regarding remediation and mitigation of identified vulnerabilities on test reports and plan of action and milestones (POA&Ms).
  • Monitor system status updates and report to senior leadership.
  • Includes monthly executive reports, vulnerability reports, JFHQ DODIN reporting and briefing.
  • Monthly executive briefing to SISO, PM on security metrics
  • Interface with PMs and SISO on issues needing input/concurrence
  • Draft and present RMF deliverables to senior leadership
  • Attending Executive Program Reviews as the ISSM
  • Work with outside agencies on Memorandums of Understanding / Interconnection Service Agreements, and other senior level agreements etc.
  • Work directly with a distributed team to reduce travel
  • Travel 25% of time

Basic Qualifications:

  • *TS/SCI required*
  • A minimum of 2 years of Information Technology Information Assurance, or Cyber Security engineering experience.
  • A minimum of 2 years of experience in conducting security assessments by reviewing security controls with the ISSO/ISSM and guide programs through RMF process.
  • Bachelors Degree in Engineering, Computer Science, or 8 years IT field experience in lieu of degree; Masters Degree preferred
  • Proven expertise with assessing security controls in accordance with NIST Special Publications (i.e.: NIST 800 Series)
  • Proven in-depth knowledge of Cybersecurity principles technologies, and processes.
  • Experience with NIST 800-53, Security Development
  • Familiarity with performing assessments for Unclassified and Classified environments
  • Ability to adapt to process changes
  • Ability to interface with senior leadership
  • Ability to support high visibility or high priority projects
  • Possession of excellent oral and written communication skills

About KBR, Inc

KBR, Inc is an American engineering, procurement, and construction company headquartered in Houston, Texas. The company provides services to customers in the energy, chemical, and government sectors, among others. KBR has a global presence, with operations in over 40 countries. The company was founded in 1901 as M.W. Kellogg Company and has undergone several name changes and mergers since then. KBR is committed to delivering innovative and sustainable solutions to its customers while also being a responsible corporate citizen.
Learn more about KBR, Inc
Size
28,000 employees
Market Cap
$7.1 billion
Industry
Net Income
-$72 million
Founded
1919
5 Year Trend
+11.5%
Revenue
$5.7 billion
NASDAQ

Similar Jobs

More Jobs at KBR, Inc

More Information Technology Jobs

Find similar Information System Security Manager (ISSM) jobs: