Information System Security Manager

Peraton

United States

On-site

USD 146,000 - 234,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Peraton is seeking an Information Systems Security Manager to support a customer onsite in Washington, D.C. The role focuses on managing security postures, RMF accreditation, and continuous monitoring across information systems.

You will lead risk assessments, incident response, and security testing programs while coordinating with stakeholders to ensure compliance with DoD and federal requirements. The position requires a Top Secret clearance with SCI eligibility, extensive IS security

Qualifications

  • Active Top Secret clearance with SCI eligibility.
  • 12+ years Information Systems security experience; or 16 years in lieu of degree.
  • IAM Level III certification; knowledge of RMF, NIST SP 800-53, and ATO processes.

Responsibilities

  • Oversee the security posture of all information systems and enforce security policies.
  • Lead RMF accreditation and authorization activities for information systems.
  • Perform risk assessments, vulnerability scans, and security audits to identify risks and implement mitigations.
  • Ensure compliance with FISMA, NIST SP 800-53, RMF, and DoD information assurance requirements.
  • Coordinate incident response activities and perform root-cause analysis and remediation.
  • Maintain continuous monitoring of systems and network security; ensure regular vulnerability testing.

Skills

Leadership
Communication
Relationship building
Scrum familiarity
Risk assessment

Education

BS/BA
MS/MA
IAM Level III certification

Tools

Splunk

Job description

Responsibilities

Peraton is seeking an Information Systems Security Manager to support out customer onsite in Washington D.C. who will be responsible for the following but not limited to:

  • Manage and oversee the security posture of all information systems. Implement and enforce security policies, procedures, and best practices to ensure system integrity and confidentiality.
  • Lead the process of certifying and accrediting information systems in accordance with the Risk Management Framework(s) (RMF) and other applicable government cybersecurity standards. Ensure systems meet required security controls for authorization to operate (ATO).
  • Perform risk assessments, vulnerability scans, and security audits to identify security risks and weaknesses in information systems. Develop and implement mitigation strategies to address identified risks and ensure ongoing compliance with security standards.
  • Ensure compliance with relevant cybersecurity frameworks, such as FISMA, NIST SP 800-53, and RMF, and ensure all systems supporting operations follow federal and DoD information assurance requirements.
  • Oversee incident response activities related to information security breaches, including root cause analysis, containment, remediation, and reporting. Work with the security team and stakeholders to manage cybersecurity incidents and minimize their impact on operations.
  • Implement and manage continuous monitoring of information systems and networks to detect and respond to potential security threats. Ensure all systems are regularly tested for security vulnerabilities.
  • Maintain accurate and comprehensive documentation of security controls, certifications, accreditation reports, and incident responses. Prepare regular security reports and updates for management and program leadership.
  • Work closely with engineering teams, mission planners, IT specialists, and other stakeholders to integrate cybersecurity into all phases of system design, development, and operations. Serve as the point of contact for information security issues related to information systems.
  • Develop and implement training programs for ISSO and ISSE personnel on information assurance and security best practices. Conduct cybersecurity awareness campaigns to ensure all team members understand their role in protecting sensitive data and systems.
  • Manage relationships with external vendors, contractors, and partners to ensure their systems and operations comply with information assurance requirements for the program.
  • Ensure compliance with protection requirements, control procedures, incident management reporting, remote access requirements, and system management for all systems within the enterprise.
  • Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for each IS
  • Provide liaison support between the system owner, ISSOs, ISSEs, and other IS security personnel
  • Provides technical and programmatic information assurance services to internal and external customers in support of network and information security systems.
  • Designs, develops, and implements security requirements within an organization's business processes.
  • Prepares documentation from information obtained from customer using accepted guidelines.
  • Prepares security test and evaluation plans.
  • Provides certification and accreditation support in the development of security and contingency plans and conducts complex risk and vulnerability assessments.
  • Analyzes policies and procedures against Federal laws and regulations and provides recommendations for closing gaps.
  • Recommends system enhancements to improve security deficiencies.
  • Develops, tests, and integrates computer and network security tools.
  • Secures system configurations and installs security tools, scans systems to determine compliancy and report results and evaluates products and various aspects of system administration.
  • Conducts security program audits and develops solutions to lessen identified risks.
  • Provides information assurance support for the development and implementation of security architectures to meet new and evolving security requirements.
  • Provides assistance in computer incident investigations. Performs vulnerability assessments including development of risk mitigation strategies.
Qualifications
Required Qualifications
  • Must possess an active Top Secret security clearance with SCI eligibility.
  • Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 16 years of experience in Information Systems security may be considered in lieu of degree.
  • Proven ISSM experience including knowledge of system functions, cybersecurity policies, and technical cybersecurity protection measures.
  • IAM Level III certification required.
  • Experience with A&A package submission
  • Ability to build and maintain relationships with key stakeholders and high-level management
  • Strong knowledge of security frameworks, including NIST SP 800-53, FISMA, and RMF.
  • Familiar with Scrum methodologies.
  • Hands-on risk assessment experience that incorporates system/mission requirements and operational constraints.
  • Experience shaping policies and programs for Federal or DoD information security initiatives.
  • Knowledge of NIST guidelines (SP 800-37, 800-53, 800-53A) and proven experience in Security Control Assessment.
  • Advanced written and verbal communication skills to effectively communicate security concepts and policies.
  • Experience is to include at least two (2) of the following areas: knowledge of current security tools, hardware/software security implementation; communication protocols; and encryption techniques/ tools.
Desired Qualifications
  • ITILv4 Foundation Certification
  • Splunk experience to enhance your threat detection capabilities.
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$146,000 - $234,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

External Job Posting Title Information System Security Manager
External Job Posting Title Information System Security Manager

Peraton • Silver Spring (MD)

On-site
USD 112,000 - 179,000
Information System Security Officer
Information System Security Officer

Peraton • Washington

On-site
USD 104,000 - 166,000
Information System Security Officer
Information System Security Officer

Peraton • United States

On-site
USD 104,000 - 166,000
Senior Information System Security Officer
Senior Information System Security Officer

Peraton • Maryland

On-site
USD 135,000 - 216,000
Information System Security Manager
Information System Security Manager

Peraton Labs • Silver Spring (MD)

On-site
USD 112,000 - 179,000
Medical insurance
Dental insurance
Vision insurance
+6
Jr Information System Security Engineer (ISSE)
Jr Information System Security Engineer (ISSE)

Peraton • United States

On-site
USD 112,000 - 179,000
Sr Information Systems Security Officer (ISSO), Advisor – TS/SCI w/poly
Sr Information Systems Security Officer (ISSO), Advisor – TS/SCI w/poly

Peraton • Washington

On-site
USD 146,000 - 234,000
Information System Security Officer
Information System Security Officer

Peraton • Corridor North (MD)

On-site
USD 104,000 - 166,000
Senior Information System Security Officer
Senior Information System Security Officer

Peraton • United States

On-site
USD 135,000 - 216,000
Senior Information System Security Officer
Senior Information System Security Officer

Peraton Corporation • Washington

On-site
USD 112,000 - 179,000