INFORMATION SYSTEM SECURITY MANAGER (ISSM) III (Req 25 065)

American ElectronicsPhiladelphia, PA
80d

About The Position

The position supports IT security goals and objectives while reducing overall organizational risk. The role involves assisting with the collection of data needed for system cybersecurity reporting and communicating the value of IT security to all levels of organizational stakeholders. Responsibilities include assisting with security improvement actions, cybersecurity inspections, tests, and reviews for the network environment, and identifying alternative information security strategies to meet organizational security objectives. The position also involves interpreting patterns of noncompliance to assess their impact on risk levels and the effectiveness of the enterprise's cybersecurity program. Participation in information security risk assessments during the Security A&A process is required, along with tracking audit findings and ensuring appropriate mitigation actions are taken. The role includes identifying security requirements specific to IT systems throughout their life cycle and ensuring the successful implementation of security requirements and IT policies consistent with the organization's mission. Additionally, the position involves resolving findings from internal and external reviews, conducting Quality Assurance (QA) reviews for RMF package submissions, developing findings reports, and coordinating with programs to address identified issues. The role also requires reporting system compliance in various management systems and facilitating communication among RMF stakeholders.

Requirements

  • Master's degree in computer science, information technology, or an equivalent STEM degree from an accredited institution.
  • Eight (8) years of experience coordinating with various levels of an organization to oversee and manage information security program implementation.
  • Experience managing cyber strategy, personnel, infrastructure, policy enforcement, emergency planning, security awareness, and/or other resources.
  • Certification Requirement: CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO, or HCISPP is required.
  • An Active Secret Security Clearance is required.

Responsibilities

  • Supports IT security goals and objectives and reduces overall organizational risk.
  • Assists with the collection of data needed to meet system cybersecurity reporting.
  • Communicates the value of IT security throughout all levels of the organization stakeholders.
  • Assists with security improvement actions as they are evaluated, validated, and implemented.
  • Assists with cybersecurity inspections, tests, and reviews for the network environment.
  • Assists with identifying alternative information security strategies to address organizational security objectives.
  • Assists with interpretation of patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program.
  • Participates in an information security risk assessment during the Security A&A process.
  • Assists with the tracking of audit findings and recommendations to ensure that appropriate mitigation actions are taken.
  • Assists with the identification of security requirements specific to an IT system in all phases of the system life cycle.
  • Assists with the successful implementation and functionality of security requirements and appropriate IT policies and procedures that are consistent with the organization's mission and goals.
  • Assists programs in resolving findings identified during internal and external review processes.
  • Assists with Quality Assurance (QA) reviews for RMF package submissions.
  • Develops findings reports and recommends corrective actions for identified deficiencies.
  • Coordinates with programs to resolve findings identified during internal and external review processes.
  • Reports system compliance in DON Application and Database Management System (DADMS), Department of Defense Information Technology Portfolio Repository Department of the Navy (DITPR-DON), and VRAM.
  • Assists with facilitating communication between all RMF stakeholders throughout the RMF process.
  • Assists with monitoring systems for upcoming authorization conditions/stipulations, upcoming or past due POA&M items, and SLCM activities.

Benefits

  • Generous benefits package including a 401k with employer match.
  • Full-time employees are eligible for family medical, dental, and vision benefits.
  • Ancillary benefits including life and accidental death and dismemberment insurance.
  • Short- and long-term disability insurance.
  • Flexible spending accounts.
  • Long-term care insurance.
  • Accident, hospital, and critical illness insurance.
  • 2 weeks vacation leave accrual per year, increasing with tenure.
  • 7 days sick leave.
  • 11 paid holidays.
  • Additional leave time available for bereavement, jury duty, and military training days.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Senior

Industry

Professional, Scientific, and Technical Services

Education Level

Master's degree

Number of Employees

251-500 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service