Enable job alerts via email!

Information Systems Security Manager (ISSM)

STR

Woburn (MA)

On-site

USD 125,000 - 150,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking technology company dedicated to national security as an Information Systems Security Manager. In this dynamic role, you will play a crucial part in ensuring compliance with government protocols and directives while collaborating with a talented team of cybersecurity professionals. You will be responsible for managing the cybersecurity program, performing assessments, and maintaining an acceptable security posture. This is an exciting opportunity to make a significant impact in a challenging and rewarding environment. If you are passionate about technology and security, this role is for you!

Qualifications

  • 2-4 years of ISSM experience with DAAPM, JSIG, and ICD 503.
  • Strong understanding of NIST 800-53 controls and compliance.

Responsibilities

  • Manage Cybersecurity program according to US Government requirements.
  • Perform periodic self-inspections and maintain security posture.

Skills

Cybersecurity Compliance
Critical Thinking
Problem-Solving
Communication Skills
Detail Orientation
Project Prioritization

Education

Active Top Secret Security Clearance
Experience in SAP/SCI Environment

Tools

Nessus
SCAP
Splunk

Job description

Information Systems Security Manager (ISSM)

Woburn, MA

About the Team:

The Security team at STR is comprised of highly skilled professionals who are responsible for maintaining compliance IAW with Government protocol and directives.

The Classified Cybersecurity (CCS) team consists of a collaborative group of ISSM’s, ISSO’s, and ISSE’s who are passionate about national security that take great pride in maintaining confidentiality, integrity, and availability of our systems.

The Role:

STR has an exciting opportunity for an ISSM to function as a key contributor for classified programs Cybersecurity/Risk Management Framework (RMF) posture in accordance with government directives and program requirements.

In this dynamic position you will interface and collaborate with other Cybersecurity professionals (ISSO’s, ISSE’s), Security professionals (CPSO’s, FSO’s), and System Administrators, on overall compliance and configuration change management.

Please note…this is not a remote role and requires you to be onsite.

Responsibilities:

  • Responsible for the Cybersecurity program as stipulated by various US Government requirements including (but not limited to): Intelligence Community Directive (ICD) 503, Joint Special Access Implementation Guide (JSIG), National Industrial Security Operating Manual (NISPOM), and the DCSA Assessment and Authorization Process Manual (DAAPM)
  • Monitor cybersecurity compliance by performing periodic self-inspections, tests, and reviews of information systems to ensure that workstations/servers are operating as authorized/accredited.
  • Coordinate with program/project stakeholders, Cybersecurity staff (other ISSM’s, ISSO’s, ISSE’s), the Facility Security Officer (FSO), Contractor Program Security Officer (CPSO), and other Security and IT team members to define, implement and maintain an acceptable information systems security posture.
  • Maintain day-to-day security posture and continuous monitoring of IS including security event log review and analysis.
  • Performs Assessment and Authorization (A&A) activities such as information system certification testing of required configuration controls and preparing/maintaining various documentation such as: Standard Operating Procedures (SOP), System Security Plan (SSP), Risk Assessment Report (RAR), Security Controls Traceability Matrix (SCTM), etc.
  • Manages and maintains Continuous Monitoring (ConMon)/Plan of Action and Milestones (POA&M) reports.
  • Responsible for security sustainment activities including (but not limited to): hardware change management, software change management, account management, media protection, user interface, file transfers, etc.
  • Assists the FSO, CPSO and Computer Incident Response Team (CIRT) in data spill incident response.
  • Maintain thorough understanding of NIST 800-53 controls, determines controls applicable to the application, and documents control implementation in the SCTM.
  • Perform other tasks as assigned by manager.

Requirements:

  • This position requires an active Top Secret security clearance, with the ability to obtain SAP and SCI access.
  • Two (2) to four (4) years’ experience as an ISSM implementing DAAPM, JSIG, and/or ICD 503 IS requirements.
  • Previous security experience working in a SAP/SCI environment.
  • Familiarity/knowledge of vulnerability/compliance/audit tools (Nessus, SCAP, Splunk, etc.).
  • Experience with configuration/certification and auditing/analysis of Windows/Linux operating systems in a Peer-to-peer, LAN & WAN network environment.
  • Excellent communications skills.
  • Demonstrated strong critical thinking and problem-solving skills.
  • Detail oriented and self-motivated.
  • Ability to effectively prioritize multiple projects.
  • Ability to work with people in a team environment and deal effectively with changing project priorities.

STR is a growing technology company with locations near Boston, MA, Arlington, VA, near Dayton, OH, Melbourne, FL, and Carlsbad, CA. We specialize in advanced research and development for defense, intelligence, and national security in: cyber; next generation sensors, radar, sonar, communications, and electronic warfare; and artificial intelligence algorithms and analytics to make sense of the complexity that is exploding around us.

STR is committed to creating a collaborative learning environment that supports deep technical understanding and recognizes the contributions and achievements of all team members. Our work is challenging, and we go home at night knowing that we pushed the envelope of technology and made the world safer.

STR is not just any company. Our people, culture, and attitude along with their unique set of skills, experiences, and perspectives put us on a trajectory to change the world. We can't do it alone, though - we need fellow trailblazers. If you are one, join our team and help to keep our society safe!


STR is an equal opportunity employer. We are fully dedicated to hiring the most qualified candidate regardless of race, color, religion, sex (including gender identity, sexual orientation and pregnancy), marital status, national origin, age, veteran status, disability, genetic information or any other characteristic protected by federal, state or local laws.

If you need a reasonable accommodation for any portion of the employment process, email us at appassist@str.us and provide your contact info.

Pursuant to applicable federal law and regulations, positions at STR require employees to obtain national security clearances and satisfy the requirements for compliance with export control and other applicable laws.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information Systems Security Manager

Potawatomi Federal Solutions

Remote

USD 90,000 - 150,000

2 days ago
Be an early applicant

Cyber Security, Information Systems Security Manager (ISSM)

Accreditation Council for Graduate Medical Education

Nashua

On-site

USD 115,000 - 197,000

15 days ago

Information System Security Manager (ISSM)

Astrion

Bedford

On-site

USD 90,000 - 150,000

8 days ago

Information System Security Manager (ISSM)

Astrion

Lexington

On-site

USD 90,000 - 150,000

8 days ago

Cyber Security, Information Systems Security Manager (ISSM)

BAE Systems

Nashua

On-site

USD 115,000 - 197,000

30+ days ago

Senior CSFC Security Engineer Manager

CACI International

Remote

USD 104,000 - 230,000

16 days ago

(179) Senior Information System Security Manager

Arlo Solutions LLC

Arlington

Remote

USD 90,000 - 150,000

30+ days ago