Information Systems Security Manager - Basic (IFMC)

Socket.dev

Huntsville (AL)

On-site

USD 110,000 - 160,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Socket.dev in Huntsville, AL seeks an Information Systems Security Manager to support the Cyber Compliance Team with ISSM-Basic duties for tactical systems. You will assess security posture, document RMF A&A artifacts, and coordinate risk management with DoD requirements.

Candidates must be a US citizen and hold a US Secret clearance; experience with RMF, NIST controls, DoD STIGs, and assessment tools is required. Strong communication and teamwork are essential.

Qualifications

  • Must have DoDD 8140 ISSM-Basic certification, education, and experience compliance.
  • Associates degree (Engineering, IT or Cyber-related field).
  • Experience with implementing and evaluating DoD STIG requirements, NIST RMF, IAVMs and Cybersecurity assessment tools (ACAS, Nessus, SCC, STIG Viewer).
  • Knowledge of the RMF process and NIST security controls.

Responsibilities

  • Provide accurate technical evaluations of the equipment, software applications, full systems, or network and document the security posture, capabilities, and vulnerabilities against applicable NIST controls.
  • Selecting and assessing security controls, timely completion of accreditation packages, formulating and implementing mitigations and maintaining the security posture of systems.
  • Must have experience with eMASS and initiating, updating, and maintaining RMF packages.
  • Identify, assess, make risk mitigation recommendations, and document system security threats/risks throughout a system's lifecycle; validate system security requirements; formulate and maintain documentation and system certification and accreditation activities (planning, testing, assessing and coordinating).
  • Ability to work with system developer to update, maintain, and track RMF and POA&M documentation.
  • Documenting preliminary or residual security risks for system operation and manage and approve Authorization Packages.
  • Monitoring and evaluating a system's compliance with DoD security, resilience, and dependability requirements including performing validation steps, comparing actual results with expected results, and analyzing the differences to identify impacts and risks at the software application, system, and network levels.
  • Work with teams to provide solutions and to ensure continued functionality of systems within DoD RMF Framework.

Skills

ISSM-Basic certification
Security clearance — US Secret
RMF knowledge
NIST controls knowledge
DoD security knowledge

Education

Associates degree

Tools

ACAS
Nessus
SCC
STIG Viewer

Job description

As the Information Systems Security Manager, you will be supporting a Cyber Compliance Team providing ISSM-Basic support for tactical systems. The person will be a key member of a team performing Hardware and Software Cybersecurity analysis along with key functions supporting the Risk Management Framework (RMF) Assessment and Authorization (A&A) process for data processing, test, and tactical systems. Candidate must be able to prioritize competing requirements for time and resources and be able to adjudicate resource requirements based on understanding of Government customer and mission needs.

Principal Duties and Responsibilities:
  • Provide accurate technical evaluations of the equipment, software applications, full systems, or network and document the security posture, capabilities, and vulnerabilities against applicable NIST controls.
  • Selecting and assessing security controls, timely completion of accreditation packages, formulating and implementing mitigations and maintaining the security posture of systems.
  • Must have experience with eMASS and initiating, updating, and maintaining RMF packages.
  • Identify, assess, make risk mitigation recommendations, and document system security threats/risks throughout a system's lifecycle; validate system security requirements; formulate and maintain documentation and system certification and accreditation activities (planning, testing, assessing and coordinating).
  • Ability to work with system developer to update, maintain, and track RMF and POA&M documentation.
  • Documenting preliminary or residual security risks for system operation and manage and approve Authorization Packages.
  • Monitoring and evaluating a system's compliance with Department of Defense (DoD) security, resilience, and dependability requirements including performing validation steps, comparing actual results with expected results, and analyzing the differences to identify impacts and risks at the software application, system, and network levels.
  • Work with teams to provide solutions and to ensure continued functionality of systems within DoD RMF Framework.
Qualifications:
  • U.S. Citizen
  • Must possess and maintain a US Secret security clearance. Top Secret, SCI eligible, security clearance is a plus.
Required Skills / Experience:
  • Meet DoDD 8140 ISSM-Basic certification, education, and experience compliance.
  • Associates degree (Engineering, IT or Cyber-related field)
  • Experience with implementing and evaluating DoD STIG requirements, NIST RMF, IAVMs and Cybersecurity assessment tools (ACAS, Nessus, SCC, STIG Viewer)
  • Knowledge of the Risk Management Framework (RMF) process and NIST security controls
  • Knowledge of information system architecture and standards as they apply to cyber security
  • Knowledge of NIST SP 800-160, Systems Security Engineering
Preferred Skills / Experience:
  • Bachelor's Degree (Engineering, IT or Cyber-related field)
  • Strong desire to contribute to overall team success
  • Excellent written and oral communication skills
  • High degree of proficiency in MS Office Suite

Mission Driven Research is an Equal Opportunity Employer, including disability/veterans. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Systems Security Manager - Basic (IFMC)
Information Systems Security Manager - Basic (IFMC)

Mission Driven Research • Huntsville (AL)

On-site
USD 90,000 - 150,000
Information Systems Security Manager - Basic (ISSM-Basic)
Information Systems Security Manager - Basic (ISSM-Basic)

ACQCENTRIC INC • Huntsville (AL)

On-site
USD 90,000 - 140,000
Information Systems Security Engineer
Information Systems Security Engineer

Systems Planning & Analysis • Huntsville (AL)

On-site
USD 90,000 - 130,000
DoD RMF Cybersecurity Engineer
DoD RMF Cybersecurity Engineer

Systems Planning & Analysis • Huntsville (AL)

On-site
USD 90,000 - 130,000
Senior Information System Security Manager (ISSM)
Senior Information System Security Manager (ISSM)

RMantra Solutions • Fort Meade (MD), Northern (KY)

Hybrid
USD 130,000 - 170,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Castellum Inc • Lakehurst (NJ)

On-site
USD 150,000 - 190,000
Cyber ISSM Analyst
Cyber ISSM Analyst

Cintel Inc • Huntsville (AL)

On-site
USD 90,000 - 120,000
Information System Security Manager
Information System Security Manager

Interactive Process Technology LLC • Bath Township (OH)

On-site
USD 120,000 - 170,000
Information System Security Manager
Information System Security Manager

Prana Comunicación • Dayton (OH)

On-site
USD 120,000 - 180,000
Cyber ISSM Analyst
Cyber ISSM Analyst

Our Company • Huntsville (AL)

On-site
USD 70,000 - 100,000
Medical insurance
Retirement plan options
Disability insurance
+3