External Job Posting Title Information System Security Manager

Peraton

Silver Spring (MD)

On-site

USD 112,000 - 179,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Peraton seeks an Information System Security Manager for the Silver Spring, MD office to lead information assurance efforts and manage RMF/DoD security packages across classified environments.

The role requires extensive experience with ATO processes, continuous monitoring, and security controls, alongside active TS clearance. You will collaborate with ISO/PMs and stakeholders to sustain a strong security posture.

Qualifications

  • Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD
  • CISSP or equivalent certification (DoD 8570 IAM Level III)
  • Experience with SAP and/or DCSA assessments and authorizations
  • 5+ years experience with ATO process, continuous monitoring, POA&Ms, SA, NIST 800-37, NIST 800-53 Rev4/Rev5
  • Experience with SCAP, STIGs, and other compliance tools
  • Active TS clearance with ability to obtain SCI

Responsibilities

  • Lead and manage information assurance efforts across environments in Silver Spring, MD
  • Perform ISSM roles and responsibilities per DoD frameworks
  • Create, manage, and maintain RMF packaging documentation and submissions
  • Prepare and update required documentation using approved templates and regulations
  • Meet continuous monitoring requirements including audits, backups, patching, and vulnerability scanning
  • Manage security vulnerabilities and remediation, monitor logs and report concerns
  • Generate POA&Ms for non-compliant controls and track lifecycle due dates
  • Oversee Linux and Microsoft classified systems maintenance and troubleshooting
  • Apply security controls per DoD guidelines and customer requirements
  • Collaborate with stakeholders to identify additional controls for security posture
  • Assist in incident response, self-inspection, and inventory efforts
  • Track deployment of software/hardware to classified environments
  • Provide, track, and report security requirements throughout system lifecycles
  • Provide timely responses to user/customer requests
  • Maintain knowledge of policies, configurations, data flows, and network services
  • Maintain required certifications for this role

Skills

CISSP
RMF/POA&M
Compliance tools
Communication
TS clearance

Education

BS/BA; MS/MA; PhD

Tools

ACAS
Nessus
eMASS
SCAP
STIGs

Job description

Responsibilities

Peraton is seeking an Information System Security Manager in support of Peraton Labs’ information assurance and information technology operations. This is a full-time on-site position working out of the Silver Spring, Maryland office.

Responsibilities include but are not limited to:

  • Lead and manage information assurance efforts, and systems across numerous environments in Silver Spring, MD.
  • Perform Information System Security Manager (ISSM) roles and responsibilities as prescribed by the DAAG, JSIG, ICD-503, and other applicable regulations.
  • Create, manage, and maintain RMF Package documentation, submissions, and associated artifacts. This will include A&A packages, ASA packages, SCRs, etc.
  • Prepare, deliver and update all required documentation using the current approved templates, forms, regulations, and methods.
  • Meet continuous monitoring requirements for the accredited information systems, to include weekly auditing, performing of backups, AV updates, OS patching, vulnerability scanning, and other prescribed tasks.
  • Manage security vulnerabilities, implement timely remediation, monitor security logs for violations and anomalous events, and report information security concerns and problems when necessary.
  • Generate Plan of Actions & Milestones (POA&Ms) for each non-compliant control, manage all applicable POA&Ms throughout the information system lifecycle. Proper documentation shall be filed and updated as required.
  • Oversee the management and maintenance of Linux and Microsoft classified information systems, with the ability to assist in technical efforts when needed. This may include building systems, installing software, and/or troubleshooting information systems and network devices.
  • Apply security controls based on the DoD Security Technical Implementation Guidance and other customer requirements.
  • Work closely with the key stakeholders to identify any additional controls that are applicable to the system(s) to maintain a favorable security posture.
  • Assist in incident response, annual self-inspection, and inventory efforts.
  • Track the deployment of all applicable software and hardware to classified environments.
  • Provide, track, and report security requirements throughout the system life cycle of all information systems that are within the accreditation boundary.
  • Provide timely and detailed responses to user and customer requests.
  • Continuously maintain a thorough understanding of all relevant corporate policies, security control plans as well as system configurations, architecture, installed software, accounts (both Operating System and Application), data flows, ports, protocols, and other relevant data for each Information System.
  • Maintain required certifications for this role.
Qualifications

Required Qualifications/Skills:

  • Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD
  • CISSP or equivalent certification (DoD 8570 IAM Level III).
  • Experience with SAP and/or DCSA assessments and authorizations.
  • 5+ years experience with Authority to Operate (ATO) process, continuous monitoring, POA&Ms, Security Authorizations (SA), NIST 800-37, NIST 800-53 Rev4/ Rev5, working with Information System Owners (ISO) and Program Managers (PM).
  • Experience with SCAP, STIGs, and other compliance tools.
  • Proven written and verbal communication skills, and the ability to work well with team members.
  • Active TS clearance with ability to obtain SCI.

Desired Skills/Qualifications

  • Preferred degree in a technical discipline such as computer science, cybersecurity, or information technology.
  • Experience with Ongoing Authorizations
  • Experience with eMASS
  • Experience with ACAS, Nessus, and/or other vulnerability scanners
  • 3+ years of solid Linux system administration working experience with specific focus on Ubuntu and RedHat distributions.
  • Experience with Linux shell scripting include writing new scripts and troubleshoot existing codes.
  • In-depth knowledge of TCP/IP and networking concepts and a solid understanding of the well-known services including DHCP, DNS, SSH, TLS, IPSec, etc.
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range

$112,000 - $179,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Manager
Information System Security Manager

Peraton Labs • Silver Spring (MD)

On-site
USD 112,000 - 179,000
Medical insurance
Dental insurance
Vision insurance
+6
Senior Information System Security Officer
Senior Information System Security Officer

Peraton • Maryland

On-site
USD 135,000 - 216,000
Information System Security Manager
Information System Security Manager

Peraton Labs • Basking Ridge (NJ)

On-site
USD 112,000 - 179,000
Medical, dental, and vision insurance
401(k) plan
Paid time off (PTO)
Information System Security Officer
Information System Security Officer

Peraton • Corridor North (MD)

On-site
USD 104,000 - 166,000
Senior Information System Security Officer
Senior Information System Security Officer

Peraton • Washington

On-site
USD 112,000 - 179,000
Information System Security Officer
Information System Security Officer

Peraton • Washington

On-site
USD 104,000 - 166,000
Jr Information System Security Engineer (ISSE)
Jr Information System Security Engineer (ISSE)

Peraton • Corridor North (MD)

On-site
USD 112,000 - 179,000
External Job Posting Title Information Systems Security Engineer (ISSE)
External Job Posting Title Information Systems Security Engineer (ISSE)

Peraton • Linthicum (MD)

On-site
USD 135,000 - 216,000
External Job Posting Title Information Systems Security Engineer (ISSE)
External Job Posting Title Information Systems Security Engineer (ISSE)

Peraton • Herndon (VA)

On-site
USD 135,000 - 216,000
25 days PTO
Bonus plan
Enhanced benefits
Senior Information System Security Officer (ISSO)
Senior Information System Security Officer (ISSO)

Peraton • Laurel (MD)

On-site
USD 135,000 - 216,000
Competitive salary
Discretionary bonus