Information Systems Security Manager - Washington, United States - MBL Technologies

MBL Technologies
MBL Technologies
Verified Company
Washington, United States

2 weeks ago

Mark Lane

Posted by:

Mark Lane

beBee recruiter


Description
MBL Technologies, Inc. offers a diverse set of management and technology consulting services to Federal government and commercial markets.

Our solutions are tailored to support each client's mission, accounting for their unique needs and operating environments to ensure success.

We bring the right people, capabilities, and expertise together to assist our clients with enabling their mission. Together our individual differences drive successful business results.


If you are transitioning from military to civilian life, have prior service, are a retired veteran, or a member of the National Guard or Reserves, or spouse of an active military service member, we encourage you to apply.

Please visit our webpage for information on our policies and benefits for the military and veteran community.


Why Work With Us?

  • We trust, empower, and believe in our employees to soar to their fullest potential
  • We offer a robust benefits package (medical, dental, vision, STD, Accident, Life, Hospital Insurance, FSA, HSA, 401K match, professional development stipend, etc.).
  • We love to have fun and give back to the community. Community Service and Employee Engagement events are atop our calendar events
  • We genuinely like each other and champion everyone to achieve their own greatness


MBL Technologies is currently hiring for an
_Information Systems Security Mananger (ISSM)_ to support our client in the Washington, DC metro area.


  • Manage Information System Security Officers (ISSO) to support information technology (IT) security goals and objectives and reduce overall organizational risk.
  • Assist senior management in the development and interpretation of information assurance guidelines, policies, regulations etc.
  • Advise senior management (e.g., Chief Information Security Officer [CISO]) on risk levels and security posture.
  • Advise appropriate senior leadership or Authorizing Official of changes affecting the organization's cybersecurity posture.
  • Conduct independent or coordinated studies to identify, evaluate or recommend solutions to significant systems management problems that are likely to be complex and sensitive in nature.
  • Ensure that security improvement actions are evaluated, validated, and implemented as required.
  • Identify alternative information security strategies to address organizational security objectives.
  • Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program.
  • Participate in information security risk assessments during the Security Assessment and Authorization process.
  • Ensure that plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
  • Provide quality assurance reviews of cybersecurity deliverables to ensure consistency, accuracy, and relevancy.
  • Provide technical and procedural information system advice to risk management team.
  • Perform quality reviews of security artifacts collected by ISSOs under their purview to ensure quality assessment and authorization (A&A) deliverables are provided.
  • Assume ISSO responsibilities in the absence of ISSO.
  • Ensure approved CLIENT procedures are followed in the implementation of security controls.
  • Ensure a record is maintained of all vulnerabilities for existing authorization boundaries.
  • Advise ISSOs on all matters, technical and otherwise, involving the security of assigned IT systems.
  • Maintain a working knowledge of system technology, security policies, and security safeguards.
  • Ensure continuous monitoring of authorization boundaries and implemented security controls is followed.
  • Provide guidance to ISSOs on mitigation actions for security control deficiencies and scan vulnerabilities for assigned IT systems.
  • Provide rolebased training for assigned ISSOs specific to their roles and responsibilities.
  • Brief senior management on the status of ISSOs and their assigned projects.
  • Work with senior leadership to mature risk management processes within the CLIENT environment.
  • Develop and formalize risk management training, specific to the CLIENT environment, for varied stakeholder groups.
  • Conduct assigned technical reviews and risk analyses and develop cybersecurity risk mitigation recommendations and strategies based on threats.
  • Research and recommend innovative, secure, and (where possible) automated solutions to improve risk management processes and activities.
  • Participate in the technical security evaluation and assessment of new technologies in support of the CLIENT's operations and provide supporting reviews.
  • Provide audit support to cybersecurity for audit activities and recommendations.
  • Perform other duties as assigned.

Required Experience & Skills:


  • Minimum of eight (8) years of demonstrated work experience in cybersecurity risk management.
  • Demonstrated experience managing systems security assessments, reviewing s

More jobs from MBL Technologies