Jobs
>
Washington, D.C.

    Information Systems Security Manager - Washington, United States - BTI

    Default job background
    Description

    Job Description

    Job DescriptionBusiness Technology Integrators (BTI) is seeking an Information Systems Security Manager (ISSM) to lead a team in executing risk management efforts against our customer's inventory of on premise, vendor and cloud-based systems.

    The successful candidate will provide support in the following areas:


    • Manage Information System Security Officers (ISSO) to support information technology (IT) security goals and objectives and reduce overall organizational risk.
    • Assist in the execution and management of the House Risk Management Framework (RMF) and advises ISSOs on proper application of House cybersecurity policies and requirements.
    • Assist senior management in the development and interpretation of information assurance guidelines, policies, regulations etc.
    • Advise senior management (e.g., Chief Information Security Officer [CISO]) on risk levels and security posture.
    • Advise appropriate senior leadership or Authorizing Official of changes affecting the organization's cybersecurity posture.
    • Conduct independent or coordinated studies to identify, evaluate or recommend solutions to significant systems management problems that are likely to be complex and sensitive in nature.
    • Ensure that security improvement actions are evaluated, validated, and implemented as required.
    • Identify alternative information security strategies to address organizational security objectives.
    • Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program.
    • Participate in information security risk assessments during the Security Assessment and Authorization process.
    • Ensure that plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
    Provide quality assurance reviews of cybersecurity deliverables to ensure consistency, accuracy, and relevancy.


    • Provide technical and procedural information system advice to risk management team.
    • Perform quality reviews of security artifacts collected by ISSOs under their purview to ensure quality assessment and authorization (A&A) deliverables are provided.
    • Assume ISSO responsibilities in the absence of ISSO.
    • Ensure approved House procedures are followed in the implementation of security controls.
    • Ensure a record is maintained of all vulnerabilities for existing authorization boundaries.
    • Advise ISSOs on all matters, technical and otherwise, involving the security of assigned IT systems.
    • Maintain a working knowledge of system technology, security policies, and security safeguards.
    • Ensure continuous monitoring of authorization boundaries and implemented security controls is followed.
    • Provide guidance to ISSOs on mitigation actions for security control deficiencies and scan vulnerabilities for assigned IT systems.
    • Provide role-based training for assigned ISSOs specific to their roles and responsibilities.
    • Brief senior management on the status of ISSOs and their assigned projects.
    • Work with senior leadership to mature risk management processes within the House environment.
    • Develop and formalize risk management training, specific to the House environment, for varied stakeholder groups.
    • Conduct assigned technical reviews and risk analyses and develop cybersecurity risk mitigation recommendations and strategies based on threats.
    • Research and recommend innovative, secure, and (where possible) automated solutions to improve risk management processes and activities.
    • Participate in the technical security evaluation and assessment of new technologies in support of House of Representatives operations and provide supporting reviews.
    • Provide audit support to cybersecurity for audit activities and recommendations.
    • Perform other duties as assigned.
    The successful candidate shall possess the following knowledge, skills, and abilities:


    • Minimum of eight (8) years of demonstrated work experience in cybersecurity risk management.
    • Demonstrated experience managing systems security assessments, reviewing system security documentation for successful security authorization of such systems.
    • Strong knowledge and expertise with NIST publications.
    • Demonstrated experience providing quality A&A deliverables.
    • Proven technical acumen and understanding of common operating systems and network technologies, risk management frameworks, and common security tools and scanners.
    • Demonstrated understanding of cloud service models, hybrid applications, and mobile security technologies and tools.
    • Understanding of management, operational and technical cybersecurity principles.
    • Experience with privacy principles and frameworks is preferred.
    Powered by JazzHR

    yh7fSlcoDn


  • District of Columbia Public Schools Washington, United States

    **Position Overview** · The Office of the Chief Operating Officer (OCOO) is comprised of the Strategic School Operations, Food & Nutrition Services, School Security, Facilities, and Compliance, teams. OCOO is responsible for guiding the operations and functions for all 118 school ...


  • Colorado Security Agency Washington, United States

    Interviews and hires qualified applicants to fill open post positions in a proactive and timely manner, following company interviewing guidelines. Also regularly evaluates low-performing employees for replacement, upgrade or transfer; · - Makes initial/conditional job offers (for ...

  • Covenant

    Security Manager

    1 week ago


    Covenant Arlington, United States

    America's largest privately owned company dedicated exclusively to aviation security. Our services include passenger, baggage, cargo, and employee screening, external/internal airport patrols, access control, air carrier security services, and more. Covenant Aviation Security, LL ...


  • MBL Technologies Washington, United States

    MBL Technologies, Inc. offers a diverse set of management and technology consulting services to Federal government and commercial markets. Our solutions are tailored to support each client's mission, accounting for their unique needs and operating environments to ensure success. ...


  • Bering Straits Native Corporation (BSNC) Washington, United States

    Overview: · **SUMMARY** · The goal of the Security Operations Center (SOC) team is to proactively monitor, identify, and remediate information technology security vulnerabilities and intrusions. The team needs to ensure that all operational security controls are appropriately app ...


  • Delviom LLC Washington, United States

    **Title: Program Manager with active Top-Secret clearance** · **Location: SCIF Location - Washington, D.C (Occasional Onsite work in SCIF location in DC)** · **Duration: 4 years** · **Start Date: 07/01/2024** · **Qualifications**: · - Bachelor's degree in Information Technology, ...


  • Google Washington, United States

    **Minimum qualifications**: · - Bachelor's degree or equivalent practical experience. · - 2 years of experience in product management, consulting, co-founder or related technical role. · - 1 year of experience building and shipping technical products. · - Experience in security, ...


  • PassionHR Inc Arlington, United States

    Seeking to hire an experienced **Information Security Manager - III** to support this critical customer mission in **Arlington, Virginia.** · **RESPONSIBILITIES** · Provide support to plan, coordinate, and implement the lab's information security · Provide support for facilitatin ...


  • Nebula Ventures Monument, United States

    About amiconsult GmbH: · Our approximately 90 employees in Karlsruhe and Berlin have diverse backgrounds and different career paths. What unites us is our passion for our job. Since Now applywe have been supporting our clients as IAM experts. · What do we offer you? · A lively co ...


  • Advanced Decision Vectors, LLC Washington, United States

    Advanced Decision Vectors, LLC (ADV), established in 2009, provides superior program management, program support, strategic planning, and systems engineering to the Federal and Commercial sectors. Located in Alexandria, Virginia, ADV is a Small Disadvantaged Business (SDB) contra ...


  • Credence Management Solutions, LLC Arlington, United States

    Overview: · The Information Systems Security Manager (ISSM) is responsible for implementing and overseeing cyber hygiene for all refugee operational activities within the Refugee Processing Center (RPC). Reporting directly to the Project Manager and Deputy Project Manager for the ...


  • SAIC Arlington, United States

    Job ID: · **Location**:ARLINGTON, VA, US · **Date Posted**: · **Category**:Cyber · **Subcategory**:Cyber GRC · **Schedule**:Full-time · **Shift**:Day Job · **Travel**:Yes, 10 % of the Time · **Minimum Clearance Required**:TS/SCI · **Clearance Level Must Be Able to Obtain**:None ...


  • SAIC Arlington, United States

    Job ID: · **Location**:ARLINGTON, VA, US · **Date Posted**: · **Category**:Cyber · **Subcategory**:Cyber GRC · **Schedule**:Full-time · **Shift**:Day Job · **Travel**:Yes, 10 % of the Time · **Minimum Clearance Required**:Secret · **Clearance Level Must Be Able to Obtain**:None ...


  • Chugach Government Solutions Washington, United States

    About Us: · When you work at Chugach Government Solutions (CGS), you join a proud legacy of supporting missions while sustaining culture. · The federal division of Chugach Alaska Corporation, CGS has been supporting critical missions as a government contractor for over 25 years. ...


  • Lockheed Martin Arlington, United States

    **Job ID**: 666444BR · **Date posted**: May. 09, 2024 · **Basic Qualifications**: · - DoD 8570 IAM III (CISSP, CISM, or equivalent) · - Experience working with DAAPM and/or JSIG and NIST 800-53 · - TS//SCI Clearance, TS required Prior to Start · **Desired Skills**: · - TS//SCI w/ ...

  • Titan Ventures

    IT-Security Manager

    1 week ago


    Titan Ventures Hyattsville, United States

    About the Company · Our origin - today - tomorrow. · The Zech Group - with around employees - is a national and international, family-owned, medium-sized company with a 100-year expertise. The company group now focuses on the entire value chain surrounding real estate, including ...


  • Omega Ventures Twining, United States

    When it comes to digitally transporting millions of passengers and thousands of trains in the future, we need the best IT experts. We already have some, but not nearly enough. As a project manager, consultant, developer, or IT architect, now is the most exciting time to join and ...


  • Kaiser Permanente Hyattsville, United States

    NOTE: Position will require periodic travel to various Kaiser Medical Centers throughout Virginia and Washington, D.C._ · **Job Summary**: · In addition to the responsibilities listed below, this position is also responsible for following KPs threat management strategy, plan and ...


  • FusionWorks Chevy Chase Section Five, United States

    We are shaping the heat transition. As an efficient, independent, and neutral leading association, AGFW promotes combined heat and power, district heating, and district cooling on a national and international level. · As a rule-setter and service provider for the industry, AGFW h ...

  • Watermark Risk Management International

    Security Manager

    4 days ago


    Watermark Risk Management International Washington, United States

    Job Description · Job DescriptionCome make your mark with Watermark · FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business. · SUBJECT MATTER EXPERTS specializing in security and risk management. We're intimately familiar with DOD se ...