Enable job alerts via email!

Information Systems Security Manager (ISSM) I

General Dynamics - IT

Tucson (AZ)

On-site

USD 95,000 - 130,000

Full time

14 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in information technology seeks an Information Systems Security Manager (ISSM) in Tucson. The ISSM will advise on security matters for information systems, manage security policies, and ensure compliance with federal and DoD standards. Ideal candidates will have extensive experience, relevant certifications, and a commitment to cybersecurity best practices.

Qualifications

  • 5+ years of related experience.
  • Experience as ISSO or ISSM.
  • Knowledge of DoD and federal security policies.

Responsibilities

  • Overseeing security policies and evaluations for information systems.
  • Managing SAP authorization processes and providing risk assessments.
  • Ensuring technical training for cybersecurity personnel.

Skills

Risk Management Framework (RMF)
Security Policy Development
Cybersecurity Training
Threat Assessment
Security Incident Response

Education

Bachelor’s degree or equivalent experience

Job description

Information Systems Security Manager (ISSM) I

TS/SCI is required (must be active/in scope).

The ISSM’s primary function is to serve as an advisor on all matters, technical and otherwise, involving the security of information systems under their purview. The role involves working within Special Access Programs (SAPs) supporting Department of Defense agencies such as HQ Air Force, Office of the Secretary of Defense, and Military Compartment efforts. The position provides day-to-day support for Collateral, Sensitive Compartmented Information (SCI), and SAP activities.

Responsibilities include:
  1. Overseeing the development, implementation, and evaluation of information system security policies, with emphasis on integrating existing SAP network infrastructures.
  2. Developing and overseeing operational security implementation policies based on the Risk Management Framework (RMF), with an emphasis on Joint standards.
  3. Managing the Special Access Program Implementation Guide (JSIG) authorization process.
  4. Advising on RMF assessment and authorization issues.
  5. Performing risk assessments and providing recommendations to DoD agency customers.
  6. Guiding government program managers on security testing methodologies.
  7. Evaluating authorization documentation and recommending actions for authorization.
  8. Maintaining a formal Information Systems Security Program.
  9. Ensuring all cyber security personnel receive necessary technical and security training.
  10. Reviewing and endorsing system assessment documentation.
  11. Ensuring procedures are in place for hardware/media sanitization and destruction.
  12. Developing security assessment plans and verifying protection levels.
  13. Maintaining authorization documentation repositories.
  14. Implementing a Configuration Control Board (CCB) charter.
  15. Developing policies for security incident response and investigating violations.
  16. Ensuring proper measures are taken when vulnerabilities are discovered.
  17. Establishing data ownership and responsibilities for each authorization boundary.
  18. Implementing security education, training, and awareness programs.
  19. Evaluating threats and vulnerabilities, and assessing system changes.
  20. Ensuring valid authorizations are in place for all boundaries.
  21. Reviewing AIS assessment plans.
  22. Coordinating external system approvals.
  23. Conducting periodic security posture assessments.
  24. Managing configuration changes and documentation.
  25. Performing periodic security testing.
  26. Developing system recovery and reconstitution processes.
  27. Maintaining current authorization documentation.
  28. Addressing security requirements throughout the system lifecycle.
  29. Developing Assured File Transfers in accordance with JSIG.
  30. Participating in self-inspections.
  31. Performing ISSO duties if necessary.
Qualifications:
  • 5+ years of related experience.
  • Experience as ISSO or ISSM.
Education:
  • Bachelor’s degree or equivalent experience (4 years).
Certifications:
  • IAT Level II (or in lieu within 6 months of hire).
Security Clearance:
  • TS/SCI, willing to obtain CI polygraph.
Other Requirements:
  • Knowledge of DoD and federal security policies and standards.
  • Ability to lift up to 50 lbs. regularly.

Additional information about salary, benefits, and our organization is available on our website. We are an equal opportunity employer committed to diversity and inclusion.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information Systems Security Manager (ISSM) I

gTANGIBLE Corporation

Tucson

On-site

USD 118,000 - 172,000

14 days ago

Information Systems Security Manager I (ISSM I)

Priority Dispatch Corp.

Tucson

On-site

USD 80,000 - 120,000

Today
Be an early applicant

Information Systems Security Manager (ISSM) I

General Dynamics Information Technology

Tucson

On-site

USD 93,000 - 127,000

16 days ago