Qualis LLC is seeking a Security Manager – ISSM for our government customer at Eglin AFB, FL. Essential Duties: Provide advice and assistance services in support of the implementation of cybersecurity safeguards while developing, coordinating, and implementing short- and long-term strategies during acquisition program development. Perform, assess, write, manage, and/or maintain Authority to Operate (ATO) and Security Technical Implementation Guides (STIG) credentials while interpreting and integrating all applicable policies, instructions, and procedures according to appropriate Security Classification Guides (SCGs) Cybersecurity support will require certifications such as (but not exclusively) Security+, Network+, or Certified Information Systems Security Professional (CISSP). Provide advice and assistance services by ensuring the confidentiality, integrity, and availability of classified ISs and data using Air Force approved network engineering practices, information security standards, approved industry best practices, and by employing approved new technologies. Advise and assist the Government in performing initial and recurring Authorization of systems or networks at the appropriate protection level as directed by the appropriate cognizant authority. Security Planning and Documentation: Develops and maintains essential security documentation, including: System Security Plan (SSP): A comprehensive document that describes the security controls implemented on the system. Security Assessment Report (SAR): Documents the results of security assessments and identify vulnerabilities. Plan of Action and Milestones (POA&M): Tracks the progress of remediating vulnerabilities and implementing security controls. Assessment and Authorization (A&A): Plays a vital role in the A&A process, which is the process of obtaining authorization to operate (ATO) a system. This involves: Preparing the system for security assessments. Working with security assessors to identify vulnerabilities. Developing and implementing corrective action plans. Presenting the system to the Authorizing Official (AO) for approval. Configuration Management: The ISSM ensures that the information system is configured securely and that all changes are properly authorized and documented. Access Control: Manages access control to the information system, ensuring that only authorized users have access to sensitive data. Vulnerability Management: Identifies, assesses, and mitigates vulnerabilities in the information system. Conducting vulnerability scans. Applying security patches. Implementing other security measures to protect against known vulnerabilities. Collaboration and Communication: Works closely with other cybersecurity professionals, system administrators, program managers, and other stakeholders to ensure that the information system is secure.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
251-500 employees