Information Systems Security Manager

6 hours ago


Colorado Springs, United States Abacus Technology Corporation Full time

Overview

Abacus Technology is seeking an Information System Security Manager (ISSM) to ensure system and application deliverables meet all required cyber security policies and regulations for the Technical Advisory and Assistance Services (TAAS) program at Peterson AFB. This is a full-time position.

Responsibilities

  • Support system/application Assessment and Authorization (A&A) efforts, to include assessing and guiding the quality and completeness of A&A activities, tasks, and resulting artifacts mandated by governing National, DoD, and Department of the Air Force policies (i.e., RMF).
  • Recommend policies and procedures to ensure the reliability of and accessibility to information systems and to prevent and defend against unauthorized access to systems, networks, and data.
  • Conduct risk and vulnerability assessments and inspections of planned and installed information systems to identify vulnerabilities, risks, and protection needs.
  • Evaluate threats and vulnerabilities to information systems to ascertain the need for additional safeguards.
  • Evaluate system sources of changes such as Deficiency Reports (DRs), Problem Reports (PRs), Change Requests/Proposals (CRs/CPs), and AF Form 1067s; provide inputs to the root cause analysis reporting and the formulation of recommended solution from alternatives; determine the security impacts of proposed or actual changes to the system, environment, threats, and vulnerabilities; and if any, document in written reports the changes/revisions to the system’s RMF artifacts.
  • Review and provide inputs to modification packages, program/system documents and support agreements updates, and communications and network infrastructure upgrades to ensure proper cybersecurity configuration modification management; implementation of technical, managerial, operational requirements; and support requirements (e.g. planning, testing, test infrastructure, documentation, training, etc.) are identified.
  • Review system test plans and test results and if necessary, observe system testing for security control implementation in accordance with cybersecurity policies, guidance, and plan.
  • Perform security impact analysis on any system change and appropriately prepare letters of assurance, security impact letters, and risk assessment letters to include exceptions, deviations, or waivers to cybersecurity requirements when applicable.
  • Continuously monitor intelligence and open-source information for vulnerabilities affecting systems, assess risk, and provide POA&M recommendations.
  • Promote awareness of security issues among management and ensuring sound security principles are reflected in organizations’ visions and goals.
  • Conduct systems security monitoring, evaluations, audits, and reviews.
  • Recommend systems security contingency plans and disaster recovery procedures.
  • Recommend and implementing programs to ensure that systems, network, and data users are aware of, understand, and adhere to systems security policies and procedures.
  • Participate in network and systems (to include cryptographic) design to ensure implementation of appropriate systems security policies.
  • Facilitate the gathering, analysis, and preservation of evidence used in the prosecution of computer crimes.
  • Assess security events to determine impact and implementing corrective actions.
  • Ensure the rigorous application of cybersecurity and cryptographic policies, principles, and practices throughout the system development lifecycle.
  • Author, monitor, and record system information in applicable databases.
  • Prepare and record system, security status, and portfolio management information into the Air Force Information Technology Investment Portfolio Suite (referred to as ITIPS) for FISMA; Security, Interoperability, Supportability, Sustainability, Usability (SISSU); Clinger Cohen Act; and other statutory compliance.
  • Author, review, certify, and/or maintain security management plans and RMF package artifacts including but not limited to: RMF Implementation Plans, System Security Management Plans, Information Support Plans, Program Protection Plans (PPPs), Security Risk Analyses, Security Vulnerability and Countermeasure Analyses, Vulnerability Management Plans, Common Control Packages, Security Concepts of Operations, OPSEC Plans, Authority-to-Connect guest system packages, and other system/network security related documents.
  • Support and assist external teams in the evaluation of systems Cybersecurity posture to include teams performing non-regular cyber tests, war-games, cyber penetration tests, and cyber studies conducted by the NSA, DISA, Air Force Audit Agency, or other organizations.
  • Support the development, coordination, and implementation of cybersecurity-related special projects and taskers, e.g., Defensive Cyber Operations (DCO), Higher Headquarter requests, Notice to Airmen (NOTAMs), Technical Change Orders (TCOs), System Program Office (SPO), 16th AF, USSTRATCOM, USCYBERCOM, SAF/A6, SpOC/S6, AFGSC/A6, 460 Space Wing, and AFNWC/NC efforts.

Qualifications

5+ years experience in cyber security or information assurance. Bachelor’s degree in a related field. Must hold one of the following certifications: CISSP, CISM, GSLC, or CCISO. Experience with the certification and accreditation process. Significant experience in vulnerability scanning and analysis, including the use of automated tools and vulnerability management systems. Knowledge of intrusion prevention and network access control tools/systems. Understanding of system audit principles and security risk assessment. Strong understanding of security policy advocated by the U.S. Government including the Department of Defense and appropriate civil agencies, e.g., NIST. Able to perform work that involves ensuring the confidentiality, integrity, and availability of systems, networks, and data through the planning, analysis, development, implementation, maintenance, and enhancement of information systems security programs, policies, procedures, and tools. Knowledge of cryptography and cryptographic key management concepts. General experience includes development of both common user and special purpose command and control/information systems with increasing responsibilities in the scope and magnitude of the systems for which solutions have been implemented. Must have a solid understanding of network infrastructure and mission assurance. Familiar with Federal government and DOD standards for IA/security including DIACAP, FISMA, NIST, and OMB. Must have solid communications skills and be capable of working with all levels of an organization. Must be a US Citizen and hold a current Secret clearance.

Applicants selected will be subject to a U.S. government security investigation and must meet eligibility requirements for access to classified information.

EOE/M/F/Vet/Disabled



  • Colorado Springs, Colorado, United States General Dynamics Information Technology Full time

    Job Title: Information Systems Security ManagerGeneral Dynamics Information Technology (GDIT) is seeking an experienced Information Systems Security Manager to join our team. As a key member of our cybersecurity team, you will be responsible for ensuring the security and integrity of our clients' information systems.Key Responsibilities:Develop and implement...


  • Colorado Springs, Colorado, United States General Dynamics Information Technology Full time

    Job SummaryWe are seeking an experienced Information Systems Security Manager to join our team at General Dynamics Information Technology. As a key member of our cybersecurity team, you will be responsible for organizing, installing, and supporting government organization's computer systems, including local area networks (LANs), wide area networks (WANs),...


  • Colorado Springs, Colorado, United States General Dynamics Information Technology Full time

    Job Title: Information Systems Security ManagerGeneral Dynamics Information Technology (GDIT) is seeking an experienced Information Systems Security Manager to join our team. As a key member of our cybersecurity team, you will be responsible for organizing, installing, and supporting government organization's computer systems, including local area networks...


  • Colorado Springs, Colorado, United States Calvert Systems Engineering Inc Full time

    Job SummaryWe are seeking a highly skilled Information Systems Security Manager to join our team at Calvert Systems Engineering Inc. As a key member of our cybersecurity team, you will be responsible for performing end-to-end Risk Management Framework (RMF) packages for IT systems.Key ResponsibilitiesDevelop and implement RMF packages for IT systems,...


  • Colorado Springs, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Systems, Information Systems Security ManagementCertifications:Experience:8 +...


  • Colorado Springs, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:SecretClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Systems, Information Systems Security ManagementCertifications:Experience:8 + years of...


  • Colorado Springs, United States Apex Systems Full time

    Apex Systems, the nation’s second largest IT staffing firm, has an immediate opportunity for an ISSO in Colorado Springs. Please find the details below.If interested, please email your resume and best phone number to Kirsten Bridges at kbridges@apexsystems.com for consideration.Job Title: ISSO Location: Colorado SpringsClearance: TS/SCIPay:...


  • Colorado Springs, United States Apex Systems Full time

    Apex Systems, the nation’s second largest IT staffing firm, has an immediate opportunity for an ISSO in Colorado Springs. Please find the details below.If interested, please email your resume and best phone number to Kirsten Bridges at kbridges@apexsystems.com for consideration.Job Title: ISSO Location: Colorado SpringsClearance: TS/SCIPay:...


  • Colorado Springs, Colorado, United States General Dynamics Full time

    Job SummaryWe are seeking a highly skilled Information Systems Security Manager to join our team at General Dynamics. This individual will be responsible for performing the tasks of an Information Systems Security Manager (ISSM) for multiple Department of Defense (DoD) and Intelligence Community (IC) programs.Key ResponsibilitiesServe as Information Systems...


  • Colorado Springs, Colorado, United States General Dynamics Full time

    Job Title: Information Systems Security ManagerGeneral Dynamics is seeking a highly skilled Information Systems Security Manager to join our team. As a key member of our cybersecurity team, you will be responsible for organizing, installing, and supporting government organization's computer systems, including local area networks (LANs), wide area networks...


  • Colorado Springs, Colorado, United States KBR Full time

    Job Title: Information Systems Security ManagerKBR is seeking a highly skilled Information Systems Security Manager to join our team. As a key member of our National Security Solutions team, you will be responsible for ensuring the security and integrity of our systems and networks.Key Responsibilities:Develop, update, and/or review Risk Management Framework...


  • Colorado Springs, Colorado, United States Modern Technology Solutions Full time

    About the RoleModern Technology Solutions, Inc. (MTSI) is seeking a highly skilled Information System Security Manager (ISSM) to support the United States Space Force (USSF). This position will be based in Colorado Springs, CO.Key ResponsibilitiesDevelop and implement information system security program policies, with a focus on integrating existing SAP...


  • Colorado Springs, United States General Dynamics Full time

    Basic Qualifications Requires a Bachelor’s degree in Engineering, or a related Science or Mathematics field. Also requires 8+ years of job-related experience, or a Master's degree plus 6 years of job-related experience. CLEARANCE REQUIREMENTS: Department of Defense Secret security clearance is required at time of hire. Candidates must be able to...


  • Colorado Springs, Colorado, United States General Dynamics Information Technology Full time

    Job Title: Information Security SpecialistJob Summary:We are seeking an experienced Information Security Specialist to join our team. The successful candidate will be responsible for ensuring the confidentiality, integrity, and availability of our information systems and data.Key Responsibilities:Implement and maintain security policies and proceduresConduct...


  • Colorado Springs, Colorado, United States IC-CAP, LLC Full time

    IC-CAP LLC is a leading provider of cybersecurity services to the Department of Defense and Intelligence Community. We are seeking a highly skilled Information System Security Officer 2 to join our team. The successful candidate will be responsible for ensuring the security posture of our information systems and working closely with our ISSM and ISO to...


  • Colorado Springs, Colorado, United States Bluehawk, LLC Full time

    About the RoleBluehawk, LLC is seeking a highly skilled Information Systems Security Officer (ISSO) to join our team. As an ISSO, you will play a critical role in ensuring the security posture of our information systems and collaborating with our ISSM and ISO to maintain a secure environment.Key ResponsibilitiesAssist the ISSM in meeting their duties and...


  • Colorado Springs, Colorado, United States L3Harris Technologies Full time

    Job Title: Information Security Systems EngineerAt L3Harris Technologies, we are seeking a highly skilled Information Security Systems Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for designing, developing, and implementing secure systems and networks to protect our customers' sensitive information.Key...


  • Colorado Springs, Colorado, United States Caribou Thunder LLC Full time

    Job Title: Information Systems Security EngineerCaribou Thunder LLC is seeking a highly skilled Information Systems Security Engineer to join our dynamic engineering team.Job SummaryThe Information Systems Security Engineer (ISSE) is primarily responsible for conducting information system security engineering activities with a focus on the lifecycle of...


  • Colorado Springs, Colorado, United States L3Harris Technologies Full time

    Job Title: Information Security Systems EngineerJob Summary:L3Harris Technologies is seeking an experienced Information Security Systems Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for designing, implementing, and maintaining secure systems and networks to protect our customers' sensitive information.Key...


  • Colorado Springs, Colorado, United States L3Harris Technologies Full time

    Job Title: Information Security Systems EngineerJob Summary:L3Harris Technologies is seeking an experienced Information Security Systems Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for designing, implementing, and maintaining secure systems and networks to protect our customers' sensitive information.Key...