- Perform oversight of the development, implementation and evaluation of information system security program policy; special emphasis placed upon integration of existing SAP network infrastructures
- Develop and oversee operational information systems security implementation policy and guidelines of network security, based upon the Risk Management Framework (RMF) with emphasize on Joint Special Access Program Implementation Guide (JSIG) authorization process
- Advise customer on Risk Management Framework (RMF) assessment and authorization issues
- Perform risk assessments and make recommendations to DoD agency customers
- Advise government program managers on security testing methodologies and processes
- Evaluate authorization documentation and provide written recommendations for authorization to government PM's
- Develop and maintain a formal Information Systems Security Program
- Ensure that all IAOs, network administrators, and other cyber security personnel receive the necessary technical and security training to carry out their duties
- Develop, review, endorse, and recommend action by the AO or DAO of system assessment documentation
- Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media
- Develop and execute security assessment plans that include verification that the features and assurances required for each protection level functioning
- Maintain a and/or applicable repository for all system authorization documentation and modifications
- Develop policies and procedures for responding to security incidents, to include investigating and reporting security violations and incidents
- Ensure proper protection or corrective measures have been taken when an incident or vulnerability has been discovered within a system
- Ensure that data ownership and responsibilities are established for each authorization boundary, to include accountability, access rights, and special handling requirements
- Ensure development and implementation of an information security education, training, and awareness program, to include attending, monitoring, and presenting local cyber security training.
- Evaluate threats and vulnerabilities to ascertain whether additional safeguards are needed
- Assess changes in the system, its environment, and operational needs that could affect the authorization
- Ensure that authorization is accomplished a valid Authorization determination has been given for all authorization boundaries under your purview
- Review AIS assessment plans
- Coordinate with PSO or cognizant security official on approval of external information systems (e.g., guest systems, interconnected system with another organization)
- Conduct periodic assessments of the security posture of the authorization boundaries
- Institute and implement a Configuration Control Board (CCB) charter
- Ensure configuration management (CM) for security-relevant changes to software, hardware, and firmware and that they are properly documented.
- Ensure periodic testing is conducted to evaluate the security posture of IS by employing various intrusion/attack detection and monitoring tools (shared responsibility with ISSOs)
- Ensure that system recovery and reconstitution processes developed and monitored to ensure that the authorization boundary can be recovered based on its availability level determination
- Ensure all authorization documentation is current and accessible to properly authorized individuals
- Ensure that system security requirements are addressed during all phases of the system life cycle
- Participate in self-inspections
- Periodically review system security to accommodate changes to policy or technology
- Coordinate all technical security issues outside of area of expertise or responsibility with ISSE
- Provide expert research and analysis in support of expanding programs and area of responsibility as it pertains to cyber security and information technology actives
- Develop Assured File Transfers (AFT) on accordance with the JSIG.
- Provide leadership, mentoring, and quality assurance for Cyber Security and Information Technology team members
- Current Top Secret Clearance with SCI Eligibility
- Eligibility for access to Special Access Program Information
- Willingness to submit to a Counterintelligence polygraph
- 3 - 6 years related experience
- Prior performance in roles such as ISSO or ISSM
- Bachelor's degree or equivalent experience (4 years)
- Must meet position and certification requirements outlined in DoD Directive M for Information Assurance Technician Level 2 or Information Assurance Manager Level 2 within 6 months of the date of hire
- Must be able to regularly lift up to 50 lbs.
- This job description is not designed to cover or contain all job duties required of the employee. There may be additional activities, duties and/or responsibilities that are required for this position that are not listed in this job description.
- In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification document form upon hire.
- System High is a Military friendly employer. Our extensive work on behalf of the U.S. government offers those who have served in uniform an opportunity to continue to serve their country in a new and exciting way while enjoying a successful civilian career.
- System High values the power and strength of diverse backgrounds on the culture and performance of our company. We strive to maintain an inclusive culture to encourage each employee to bring their whole self to the mission.
- System High Corporation is an Equal Opportunity/Affirmative Action Employer. We consider applicants without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, citizenship status, or membership in any other group protected by federal, state, or local law.
- Equal opportunity legal notices can be viewed on the following PDF's: EEO is the Law; EEO is the Law Supplement; Pay Transparency Nondiscrimination
-
Information Systems Security Manager
1 week ago
STR Woburn, United StatesSTR has an exciting opportunity for or an ISSM that will be responsible for classified programs Cybersecurity/Risk Management Framework (RMF) posture in accordance with government directives and program requirements. In this dynamic position you will interface directly with the g ...
-
Security Manager
5 days ago
Watermark Risk Management International, LLC Hanscom Air Force Base, United StatesCome make your mark with Watermark · FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business. · SUBJECT MATTER EXPERTS specializing in security and risk management. We're intimately familiar with DOD security programs and mission requi ...
-
Security Manager
2 weeks ago
Credence company Hanscom Air Force Base, United StatesOverview: · Credence Management Solutions, LLC (Credence) is seeking a Security Manager at the journeyman level to support the Nuclear Command, Control and Communications (NC3) Integration Directorate at Hanscom AFB, MA. The Air Force Nuclear Weapons Center (AFNWC) Nuclear Comma ...
-
Apex Dynamics Watertown Town, United States"Our task has never been more important than it is today. As the largest state-owned IT company, we shape the path of public administration and society into the digital future. We protect the data of the state, companies, and citizens, creating trust and guaranteeing the digital ...
-
Stellar Enterprises Harvard, United States"Our task has never been more important than it is today. As the largest state-owned IT company, we shape the path of public administration and society into the digital future. We protect the data of the state, companies, and citizens, building trust and guaranteeing the digital ...
-
Program Manager with Security Clearance
1 week ago
Applied Research Solutions Bedford, United StatesApplied Research Solutions is seeking Program Manager, level III candidates for opportunities located at Hanscom AFB, in Bedford, Massachusetts. The Program Manager's primary function will be to provide comprehensive knowledge of principles, policies, and practices of systems acq ...
-
Information Systems Security Manager
5 days ago
General Dynamics Information Technology Hanscom Air Force Base, United StatesInformation Systems Security Manager (ISSM) II · The ISSM's primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under their purview. Primary support will be working within Special Access Programs (S ...
-
Program Manager with Security Clearance
1 hour ago
Quantech Services, Inc. Bedford, United StatesQuantech has an immediate opening for a Program Manager supporting the HNA Division Front Office Group in the C3I&N Directorate located at Hanscom AFB, MA. Specific duties include but are not limited to the following: The Candidate shall have comprehensive knowledge and understan ...
-
Information Systems Security Manager
1 week ago
General Dynamics Information Technology Hanscom, United StatesInformation Systems Security Manager (ISSM) II · The ISSM's primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under their purview. Primary support will be working within Special Access Programs (S ...
-
Information Systems Security Manager
2 weeks ago
General Dynamics Information Technology Hanscom, United StatesInformation Systems Security Manager (ISSM) II · The ISSM's primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under their purview. Primary support will be working within Special Access Programs (S ...
-
Information Systems Security Manager
1 week ago
General Dynamics Information Technology Hanscom, United StatesThe ISSM's primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under their purview. Primary support will be working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agenc ...
-
Information Systems Security Manager
6 days ago
gTANGIBLE Hanscom Air Force Base, United StatesgTANGIBLE Corporation (gTC), , is a S corporation and a registered Government contractor that provides services and solutions in: · National Security Programs · Professional, Administrative, and Management Support · Mission and Warfighter Support · We are a Service Disabled Veter ...
-
Information Systems Security Manager
5 hours ago
General Dynamics Information Technology Hanscom Air Force Base, United StatesReq ID: RQ166346 · Type of Requisition: Regular · Clearance Level Must Be Able to Obtain: Top Secret SCI + Polygraph · Public Trust/Other Required: None · Job Family: Information Security · Skills: · Information Security,Information Security Management,Information System Security ...
-
Information Systems Security Manager
2 weeks ago
General Dynamics Hanscom Air Force Base, United StatesResponsibilities for this Position · Location: USA MA Hanscom - Customer Proprietary (MAC020) · Full Part/Time: Full time · Job Req: RQ166346 · Type of Requisition: · Regular · Clearance Level Must Currently Possess: · Top Secret/SCI · Clearance Level Must Be Able to O ...
-
Information Systems Security Manager
2 weeks ago
General Dynamics Hanscom Air Force Base, United StatesResponsibilities for this Position · Location: USA MA Hanscom - Customer Proprietary (MAC020) · Full Part/Time: Full time · Job Req: RQ168359 · Type of Requisition: · Regular · Clearance Level Must Currently Possess: · Top Secret/SCI · Clearance Level Must Be Able to O ...
-
Corporate Security Manager
6 days ago
Kinsley Power Systems Burlington, United StatesG · EMINI · I · NDUSTRIES · I · NC . · provides technical, management and operations services to support National Security projects. We provide rapid response to the critical needs of our customers and those they serve. We perform analyses and develop operations plans to an ...
-
Information Systems Security Manager
1 week ago
gTANGIBLE Corporation Hanscom Air Force Base, United StatesgTANGIBLE Corporation (gTC), , is a S corporation and a registered Government contractor that provides services and solutions in: · National Security Programs · Professional, Administrative, and Management Support · Mission and Warfighter Support · We are a Service Disabled Veter ...
-
Program Manager III with Security Clearance
2 weeks ago
Applied Research Solutions Bedford, United StatesApplied Research Solutions is seeking Program Manager III candidates for opportunities located at Hanscom AFB, in Bedford, Massachusetts. The Program Manager III's primary function will be to provide comprehensive knowledge of principles, policies, and practices of systems acquis ...
-
Information Systems Security Manager I
2 weeks ago
System High Corporation Bedford, MA, United StatesPosition Overview System High Corporation delivers the most advanced protection and secrecy solutions to secure and strengthen critical missions, programs, operations, and intelligence activities · We are seeking an Information Systems Security Manager (ISSM) I to help contribute ...
-
MIT Lincoln Laboratory Lexington, MA, United StatesThe Security Services Department's overall mission is to identify and counter security threats to the MIT Lincoln Laboratory's mission of development of game-changing technology in support of National Security, including guarding against compromise by foreign intelligence agencie ...
Information Systems Security Manager I - Bedford, United States - System High Corp
Description
Job DetailsJob Location
JUS - Hanscom AFB, MA - Bedford, MA
Position Type
Full Time
Job Shift
Day
Description
Position Overview
System High Corporation delivers the most advanced protection and secrecy solutions to secure and strengthen critical missions, programs, operations, and intelligence activities. We are seeking an Information Systems Security Manager (ISSM) I to help contribute to our success and help us solve problems with innovation through intelligence.
The ISSM's primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under his/her purview. Primary support will be working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense, and Military Compartment efforts. The position will provide day-to-day support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
Duties include, but not limited to:
Clearance