Flexsteel Industries

Information Systems Security Manager

Flexsteel Industries$100K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of progressive cybersecurity experience, with 5+ years in an ISSM role supporting DOW programs
  • Bachelor of Science in Cybersecurity, Information Technology, or related field preferred
  • DoD 8570 IAM Level III certification (CISM, CISSP, GSLC) highly preferred
  • DoD 8570 IAT Level II certification (CompTIA Security+ CE) required
  • Significant experience using eMASS to manage RMF packages
  • Hands-on experience managing ACAS vulnerabilities and remediation
  • Thorough understanding of RMF and DISA STIGs

Responsibilities

  • Lead efforts for achieving and maintaining system ATO in the ECMA cARMY environment
  • Manage vulnerability remediation process, analyzing ACAS scan results for prioritization
  • Architect and validate cloud security controls, ensuring compliance with STIGs
  • Investigate and resolve security-related incidents as the lead
  • Advise leadership on security posture and risk management using RMF
  • Interface with government counterparts for security compliance
  • Oversee application and system security for DOW cloud-hosted programs
  • Track vulnerabilities through the Plan of Action & Milestones (POA&M)
  • Provide security posture reports and briefings to program leadership

Benefits

  • Engage in significant contributions toward securing cloud environments
  • Opportunity for professional development in a federal cybersecurity landscape
  • Collaborate closely with government entities and security professionals
  • Involvement in pioneering security initiatives within Army cloud ecosystems
Full Job Description
About the Opportunity

DMI, LLC. is seeking an experienced and proactive Information Systems Security Manager (ISSM) who will report directly to the Program Manager.The ISSM will be the primary security leader for the program while achieving a new Authority to Operate (ATO) and maintaining the security posture for an application migrating to the Enterprise Cloud Management Agency (ECMA) cARMY environment. Responsible for navigating the unique challenges of securing systems in a DOW-approved cloud while ensuring compliance with all applicable DOW, DISA, and Army security policies. Primary focus will be on proactive risk management, continuous monitoring, and successfully managing the ATO lifecycle within the Army's cloud ecosystem.

Duties and Responsibilities:

  • Cloud ATO Lifecycle Management: Lead all efforts to achieve and maintain the system's ATO within the ECMA cARMY environment. Primary driver for the RMF package, developing, maintaining, and updating all required documentation within the Enterprise Mission Assurance Support Service (eMASS).
  • Vulnerability Management & ACAS Remediation: Directly manage the vulnerability remediation process. This includes analyzing scan results from the Assured Compliance Assessment Solution (ACAS), prioritizing vulnerabilities, and coordinating with system administrators and developers for timely remediation within the cloud environment.
  • Cloud Security Controls & Compliance: Architect and validate the implementation of security controls, interpreting and applying them specifically to a cloud environment. Leverage control inheritance from the cARMY platform and ensure compliance with relevant Security Technical Implementation Guides (STIGs).
  • Incident Response: Serve as the lead for investigating and resolving security-related incidents and anomalies.
  • Risk Management Framework (RMF): Apply a deep understanding of the RMF to advise leadership on security posture, risk acceptance, and strategic planning for the system's successful operation in cARMY.
  • Collaboration & Support: Interfaces directly with government counterparts, including but not limited to the ECMA, the system's Information System Security Officer (ISSO), and Authorizing Official (AO) representatives.
  • Oversee all aspects of application and system security for a program hosted in a DOW cloud environment.
  • Manage the Plan of Action & Milestones (POA&M): Track vulnerabilities and ensure a clear path to remediation.
  • Ensure continuous compliance with all relevant DISA STIGs and Cloud Computing Security Requirements Guide (CCSRG) mandates.
  • Provide regular security posture reports and briefings to program leadership and Government customers.
  • Other security-related duties as assigned.
Qualifications

Education and Years of Experience:

  • 7+ years of progressive experience in cybersecurity, with at least 5 years in a direct ISSM or similar role supporting DOW programs.
  • A Bachelor of Science degree in Cybersecurity, Information Technology, or a related field is highly desirable.

Required Skills/Certifications:

  • DoD 8570 IAM Level III certification (e.g., CISM, CISSP, or GSLC) is highly preferred
  • DoD 8570 IAT Level II certification is mandatory (CompTIA Security+ CE).
  • Demonstrable experience successfully guiding a system through the ATO process is strongly preferred.
  • eMASS Proficiency: Significant experience working within eMASS to manage the RMF package for a DOW IT system.
  • Demonstrated expertise with ACAS: Proven hands-on experience managing vulnerabilities identified by ACAS and driving the remediation process
  • Deep Understanding of RMF and STIGs: A thorough understanding of the DOW Risk Management Framework and the ability to effectively apply and validate DISA STIGs

Citizenship and Clearance:

  • Citizenship Status: Must be a United States Citizen.
  • Security Clearance: Must possess an active SECRET security clearance.

Physical Requirements: None required for this position.

Location: Must reside within a one-hour driving time of Fort Knox, Kentucky.

About Flexsteel Industries

Flexsteel Industries, Inc. is a leading designer, manufacturer, importer, and marketer of quality upholstered and wood furniture for residential, recreational vehicle, office, hospitality, and healthcare markets. The company's products are sold through a network of retailers, designers, and online channels across the United States and Canada. Flexsteel Industries was founded in 1893 and is headquartered in Dubuque, Iowa.
Learn more about Flexsteel Industries
Size
665 employees
Market Cap
$81 million
Industry
Net Income
-$18.6 million
Founded
1893
5 Year Trend
+3%
Revenue
$387.9 million
NASDAQ

Similar Jobs

More Jobs at Flexsteel Industries

More Information Technology Jobs

Find similar Information Systems Security Manager jobs: