Information Systems Security Manager

Pueo Business Solutions

• $120K — $145K *
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • IAT-III certification or compliance with DoD Directive 8140.
  • CASP+ CE certification.
  • CCNP Security certification.
  • CISA certification.
  • CISSP or CISSP Associate certification.
  • GCED certification.
  • GCIH certification.
  • CCSP certification.
  • Bachelor's degree with 12 years of experience in Cybersecurity, Information Assurance, and IT (substitutable with 6+ years of additional experience/certifications).

Responsibilities

  • Document misconfigurations, issues, and vulnerabilities from analyzed systems.
  • Utilize XACTA for managing and storing program information including risk assessments and compliance status.
  • Monitor POA&M items, ensuring vulnerabilities from scans/audits are documented and mitigated.
  • Collaborate with ISSOs, SCAs, PMs, and stakeholders to provide guidance and clarifications.
  • Serve as a cybersecurity representative of the DoD.
  • Leverage senior knowledge of RMF, NIST guidelines, and security authorization processes.
  • Lead security projects and initiatives, displaying strong analytical and problem-solving skills.

Benefits

  • Full-time employment opportunity with potential for career growth.
  • Engagement with diverse stakeholders including the DoD.
  • Opportunity to work with advanced cybersecurity tools and frameworks.
  • Involvement in critical cybersecurity initiatives within government programs.
Full Job Description
Job Type

Full-time

Description

OVERVIEW:

We are seeking an ISSM that will be responsible for ensuring the security and maintenance of information systems in their assigned programs throughout the Risk Management Framework (RMF) lifecycle, from preparing through decommission, in accordance with Intelligence Community Directives (ICD) and Defense Intelligence Agency (DIA) policies. The ISSM manages and controls changes to the system or application, assesses the potential cybersecurity impact of those changes, provides technical expertise and continuous monitoring.

GENERAL DUTIES:
  • Thoroughly document misconfigurations, issues, and vulnerabilities from analyzed systems.
  • Properly uses XACTA to manage and store all relevant program information including documentation of risk assessments, security control implementations, POA&M tracking, and compliance status.
  • Monitor and track all POA&M items, ensuring that vulnerabilities identified in scans or audits are documented, mitigated, and closed appropriately.
  • Collaborate with ISSOs, SCAs, PMs, and other stakeholders by providing necessary guidance and clarifications.
  • Act as a cyber security representative of the DoD.
  • Senior knowledge and hands-on experience with RMF, NIST 800-series guidelines, FIPS, Security Assessment & Authorization (SA&A) requirements and processes, Continuous Monitoring Framework experience and its tools, Plan of Action & Milestones (POA&M) policies, and vulnerability/patch management.
  • Experience using a Cyber Risk Management Platform (e.g., XACTA/EMASS) for Workflow Automation, Compliance Standards, RMF, and Continuous Monitoring.
  • Solid interpersonal and communication skills to interact with various stakeholders and team members effectively.
  • Expert hands-on experience interrupting compliance and vulnerability scanning tool reports from (XACTA, STIGS, ACAS, PRISMA, Splunk, Trellix (HBSS), and/or other vulnerability scanners)
  • Exhibit problem-solving skills and the ability to think analytically.
  • Experience leading security projects and initiatives.
  • Team-player with collaboration qualities and experience working in mixed technical teams.

REQUIRED QUALIFICATIONS:
  • Obtain an IAT-III or Maintain IAT Level III Certification in compliance with DoD 8570.01-M and DoD Directive 8140 Cyberspace Workforce Management.
  • CASP+ CE
  • CCNP Security
  • CISA
  • CISSP (or Associate)
  • GCED
  • GCIH
  • CCSP
  • Bachelor's Degree and 12 years of experience in Cybersecurity, Information Assurance and Information Technology
  • Bachelors degree may be substituted with 6+ years of additional experience/equivalent certifications

CLEARANCE:
  • Active Top Secret Security clearance with SCI eligibility

Similar Jobs

More Jobs at Pueo Business Solutions

  • RMF Project Manager
    $120K — $145K *
    Mclean, VA 22101 (Fairfax County)
    Aerospace & Defense
    In-Person
  • Portfolio Manager
    $110K — $130K *
    Mclean, VA 22101 (Fairfax County)
    Education, Government & Non-Profit
    In-Person
  • Director of Growth
    $125K — $150K *
    Mclean, VA 22101 (Fairfax County)
    Education, Government & Non-Profit
    In-Person

More Information Technology Jobs

Find similar Information Systems Security Manager jobs: