Information Systems Security Manager (ISSM)

ITCON

$100K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in cybersecurity management, specifically within the government or military sectors.
  • Proven familiarity with FMCSA requirements and protocols.
  • Expertise in developing and maintaining security policies and documentation.
  • Strong understanding of risk management frameworks (RMF) and relevant regulations like NIST and FIPS.
  • Experience in leading incident response operations and training programs for staff.
  • Technical proficiency in security tools and systems, with the ability to provide procedural guidance.

Responsibilities

  • Develop and maintain information systems security policies and procedures.
  • Identify, assess, and mitigate cybersecurity risks and ensure compliance with standards.
  • Oversee daily security operations for information systems security management.
  • Manage the security authorization process, including ATO acquisitions and renewals.
  • Lead incident response efforts and conduct cybersecurity training for employees.
  • Provide technical advice and support for security engineering initiatives.
  • Coordinate with government agencies and stakeholders as the cybersecurity authority for assigned systems.

Benefits

  • Comprehensive health insurance options including medical, dental, and vision coverage.
  • Generous paid time off policy allowing for work-life balance.
  • 401(k) retirement plan with company matching.
  • Opportunities for professional development and certifications in cybersecurity.
  • Flexible work environment that supports remote work arrangements.
Full Job Description
ITCON Services is looking for a bright, motivated Information Systems Security Manager (ISSM) with FMCSA (Federal Motor Carrier Safety Administration) experience to join our team.

n Information Systems Security Manager (ISSM) is responsible for the overall cybersecurity posture of information systems and programs, ensuring the confidentiality, integrity, and availability of data and protecting against threats. This role involves developing and implementing security policies, managing risk, conducting audits, overseeing security documentation like System Security Plans (SSPs), and ensuring compliance with relevant regulations and frameworks such as the Risk Management Framework (RMF).

Key Responsibilities of an ISSM:
  • Policy and Documentation Management:
    • Develop, implement, and maintain information systems security policies and procedures, including creating and updating SSPs, Risk Assessment Reports, and other security documentation for various systems, often under government and Intelligence Community (IC) frameworks.
  • Risk Management and Compliance:
    • Identify and assess risks, conduct vulnerability audits, and ensure compliance with government regulations, industry standards (e.g., NIST, DoD, FIPS), and customer requirements. This includes managing the RMF lifecycle for systems.
  • System Security Operations:
    • Oversee the day-to-day security operations of information systems, including managing security patching, antivirus updates, and media control, and ensuring proper security controls are implemented and followed.
  • ccreditation and Authorization:
    • Manage and maintain security authorizations, including the acquisition and renewal of Authorization to Operate (ATO).
  • Incident Response and Training:
    • Lead crisis units during security incidents and conduct security briefings, education, and training for employees to raise awareness of cybersecurity challenges and prevention measures.
  • Technical Oversight:
    • Provide technical and procedural advice on security matters, review security tool reports, and support security engineering projects.
  • Leadership and Coordination:
    • Lead and manage teams of Information System Security Officers (ISSOs), coordinate with various government agencies and stakeholders, and act as the primary cybersecurity authority for their assigned systems or programs.

Similar Jobs

More Jobs at ITCON

More Information Technology Jobs

Find similar Information Systems Security Manager (ISSM) jobs: