Information Systems Security Manager - Basic (IFMC)

Mission Driven Research

$95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • U.S. Citizen
  • Possess and maintain a US Secret security clearance; Top Secret or SCI eligibility is a plus.
  • Meet DoDD 8140 ISSM-Basic certification, education, and experience compliance.
  • Associate's degree in Engineering, IT, or a Cyber-related field.
  • Experience with DoD STIG requirements, NIST RMF, IAVMs, and cybersecurity assessment tools.
  • Knowledge of information system architecture and NIST security controls.

Responsibilities

  • Perform technical evaluations of hardware and software to assess security posture and vulnerabilities.
  • Select and implement security controls and complete accreditation packages.
  • Utilize eMASS to manage RMF packages effectively.
  • Identify and document security risks and validate requirements throughout system lifecycle.
  • Collaborate with developers to maintain RMF and POA&M documentation.
  • Document security risks and manage Authorization Packages.
  • Evaluate compliance with DoD security requirements and address risks.

Benefits

  • Comprehensive health and wellness packages
  • Retirement savings options with employer matching
  • Opportunities for professional development and certification
  • Flexible work schedules
  • Supportive team environment fostering collaboration
Full Job Description
As the Information Systems Security Manager, you will be supporting a Cyber Compliance Team providing ISSM-Basic support for tactical systems. The person will be a key member of a team performing Hardware and Software Cybersecurity analysis along with key functions supporting the Risk Management Framework (RMF) Assessment and Authorization (A&A) process for data processing, test, and tactical systems. Candidate must be able to prioritize competing requirements for time and resources and be able to adjudicate resource requirements based on understanding of Government customer and mission needs.

Principal Duties and Responsibilities:
  • Provide accurate technical evaluations of the equipment, software applications, full systems, or network and document the security posture, capabilities, and vulnerabilities against applicable NIST controls.
  • Selecting and assessing security controls, timely completion of accreditation packages, formulating and implementing mitigations and maintaining the security posture of systems.
  • Must have experience with eMASS and initiating, updating, and maintaining RMF packages.
  • Identify, assess, make risk mitigation recommendations, and document system security threats/risks throughout a system's lifecycle; validate system security requirements; formulate and maintain documentation and system certification and accreditation activities (planning, testing, assessing and coordinating).
  • Ability to work with system developer to update, maintain, and track RMF and POA&M documentation.
  • Documenting preliminary or residual security risks for system operation and manage and approve Authorization Packages.
  • Monitoring and evaluating a system's compliance with Department of Defense (DoD) security, resilience, and dependability requirements including performing validation steps, comparing actual results with expected results, and analyzing the differences to identify impacts and risks at the software application, system, and network levels.
  • Work with teams to provide solutions and to ensure continued functionality of systems within DoD RMF Framework.

Qualifications:
  • U.S. Citizen
  • Must possess and maintain a US Secret security clearance. Top Secret, SCI eligible, security clearance is a plus.

Required Skills / Experience:
  • Meet DoDD 8140 ISSM-Basic certification, education, and experience compliance.
  • Associates degree (Engineering, IT or Cyber-related field)
  • Experience with implementing and evaluating DoD STIG requirements, NIST RMF, IAVMs and Cybersecurity assessment tools (ACAS, Nessus, SCC, STIG Viewer)
  • Knowledge of the Risk Management Framework (RMF) process and NIST security controls
  • Knowledge of information system architecture and standards as they apply to cyber security
  • Knowledge of NIST SP 800-160, Systems Security Engineering


Preferred Skills / Experience:
  • Bachelor's Degree (Engineering, IT or Cyber-related field)
  • Strong desire to contribute to overall team success
  • Excellent written and oral communication skills
  • High degree of proficiency in MS Office Suite


Similar Jobs

More Jobs at Mission Driven Research

More Information Technology Jobs

Find similar Information Systems Security Manager - Basic (IFMC) jobs: