Information Systems Security Manager

1 week ago


Arlington, Virginia, United States MAXIMUS Full time
& Requirements


Since 1975, Maximus has operated under its founding mission of Helping Government Serve the People, enabling citizens around the globe to successfully engage with their governments at all levels and across a variety of health and human services programs.

Maximus delivers innovative business process management and technology solutions that contribute to improved outcomes for citizens and higher levels of productivity, accuracy, accountability and efficiency of government-sponsored programs.

With more than 30,000 employees worldwide, Maximus is a proud partner to government agencies in the United States, Australia, Canada, Saudi Arabia, Singapore and the United Kingdom.

For more information, visit

Maximus TCS (Technology and Consulting Services)

Internal Job Profile Code:
TCS046, T4, Band 7

The Senior SAP Information Systems Security Manager (ISSM) is responsible for cybersecurity strategy and managing a team responsible for securing information systems.

ISSMs develop and implement security policies and procedures, ensuring compliance with legal and regulatory standards. This role involves conducting risk assessments, managing incident response activities, and overseeing the deployment of security technologies.

Senior ISSMs liaise with other directorates to align security measures with organizational objectives, provide training and awareness programs, and remain ahead of emerging cybersecurity threats and trends.

The position integrates strategic planning, technical expertise, and leadership skills to effectively manage information security risks and maintain compliance with regulatory standards.

This ISSM acts as technical advisor to AOs, is primarily responsible for maintaining the overall security posture of the systems within their organization, and is accountable for the implementation of DoD The organization's Cybersecurity program is developed by ISSMs that includes Cybersecurity architecture, requirements, objectives and policies, Cybersecurity personnel, and Cybersecurity processes and procedures.

ISSMs are also in charge of the continuous monitoring of systems within their purview to ensure compliance with Cybersecurity policies.



Key Job Functions:

  • Develop and Implement Security Policies
  • Establish and maintain comprehensive information security policies and procedures in line with industry standards and regulatory requirements.
  • Collaborate with key stakeholders to ensure security engineering initiatives aligned with the operational needs within the SAP IT
  • Support the customer in researching, evaluating, planning, designing, engineering, and delivering cybersecurity solutions.
  • Experienced in one or more cloud computing services and technologies including but not limited to: AWS/C2S, Microsoft Azure, Nutanix, VMware. Identify technical problems before or after they occur and implements solutions that prevent them from reoccurring.
  • Provide guidance and oversight to SAP community defense contractors.

Security Audits and Risk Management:

  • Conduct regular risk assessments to identify vulnerabilities and implement appropriate security measures to mitigate risks and reviews to assess the effectiveness of security controls and procedures.
  • Provide oversight of all Software Licenses, Configuration Changes and Plan of Action & Milestone (POA&M)
  • Maintain and report IS and PIT systems assessment and authorization status and issues in accordance with SAP IT & service component guidance.
  • Ensure implementation of IS security measures and procedures including reporting incidents to the AO and appropriate reporting chains and coordinating system-level responses to unauthorized disclosures in accordance with DoD Manual , Volume 3 for classified information respectively.

Compliance Management:

  • Ensure compliance with legal, regulatory, and organizational information security standards.
  • Coordinate with the organization's security manager to ensure issues affecting the organization's overall security are addressed appropriately.
  • Ensure that the Cyber workforce and third-party contractors are appointed in writing and provide oversight to ensure they are following established SAP IT Cybersecurity policies and procedures.
  • Ensure that Cybersecurity-related events or configuration changes that may impact SAP IT information systems authorizations or security posture are formally reported to the AO and other affected parties, such as IOs and stewards and AOs of interconnected DoD ISs
  • Ensure the secure configuration and approval of SAP IT below the system level (i.e., products and IT services) in accordance with applicable guidance prior to acceptance into or connection to an SAP IT system.

Incident Response:

  • Assist with the development of processes and procedures to improve incident response times.
  • Identify and select best-in-class threat prevent tools and software for the SAP Ecosystem
  • Lead the response to information security incidents, including investigation, documentation, and coordination with relevant stakeholders.

Training and Awareness:

  • Develop, recommend, and deliver security awareness training programs to educate employees about information security best practices and policies.
  • Experience leading and mentoring junior level staff.

Technology Evaluation:

  • Evaluate and recommend security enhancements and technology solutions to improve overall information system security.
  • Knowledge of coding languages, intrusion detection, operating systems, security planning and auditing, ethical hacking and other security, programming, and diagnostic tools
  • Develop and implement new security mechanisms for the SAP Ecosystem
  • Provide recommendations to the SAP Community on the latest vulnerabilities and identify remediation efforts.
Team Leadership

  • Interact with technical leads, developers, and system owners to ensure that all technical requirements are aligned with SAP guidance.
  • Demonstrate the ability to participate in cross-functional planning, coordination, and task execution situations involving the full spectrum of system integration activities.
  • Liaison between the various SAP directorates (Enterprise Architecture and Data) Leads and mentors a team of information security professionals, fostering a culture of continuous improvement and proactive security.
  • Experience leading and mentoring junior level staff.

Reporting:

  • Ability to express complex technical concepts effectively, both verbally and in writing
  • Prepare and present reports on the status of information security, highlighting areas of concern and proposing improvements.

Required Qualifications:

  • Active TS clearance with SCI eligibility required.
  • Bachelor's Degree in Information Systems, Computer Science, Engineering, Business, or related field required. 4 years of relevant work experience may be considered in lieu of the degree requirement. An Associate's degree and 2 years of relevant work experience may also be considered in lieu of the degree requirement.
* 8+ years of experience with the execution and management of large-scale Information Technology (IT) Projects. This includes over 2 years of direct experience in leading and executing enterprise-wide IT solutions in the private or public sector.

Experience includes:

Project management of technically and functionally diverse and complex IT Projects; Implementing detailed management techniques such as Earned Value Analysis; IT solution architectural analysis and design; Software and system developmental and acceptance testing; Acts as manager and overall point of contact for a specific project within an overall enterprise-wide IT solution Project.


  • Must meet basic DoD 8140 certification requirements.
  • Cloud certification is a plus
#techjobs #clearance #SAPCIO

Minimum Requirements

Maximus TCS (Technology and Consulting Services)

Internal Job Profile Code:
TCS046, T4, Band 7

EEO Statement

Active military service members, their spouses, and veteran candidates often embody the core competencies Maximus deems essential, and bring a resiliency and dependability that greatly enhances our workforce.

We recognize your unique skills and experiences, and want to provide you with a career path that allows you to continue making a difference for our country.

We're proud of our connections to organizations dedicated to serving veterans and their families.

If you are transitioning from military to civilian life, have prior service, are a retired veteran or a member of the National Guard or Reserves, or a spouse of an active military service member, we have challenging and rewarding career opportunities available for you.

A committed and diverse workforce is our most important resource. Maximus is an Affirmative Action/Equal Opportunity Employer.

Maximus provides equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status or disabled status.


Pay Transparency

Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment.

Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards.

Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off.

Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.

Annual Base Pay Minimum for this Position

$

100,000.00

Annual Base Pay Maximum for this Position

$

195,000.00

  • Arlington, Virginia, United States Motion Recruitment Full time

    Information Systems Security ManagerServes as a program security technical expert, undertaking tasks that demand advanced technical proficiency, often involving multiple phases and substantial collaboration. Applies extensive technical knowledge to independently and creatively address a wide range of complex and occasionally unique problems that impact...


  • Arlington, Virginia, United States BAE Systems USA Full time

    **Cyber Security, Senior Information Systems Security Officer (ISSO)** Req #: 74106BR Arlington, Virginia, United States Other Professionals Electronic Systems Posted on:10/25/2021 ** Job Summary** **Career Level** Experienced **Travel Percentage** 10% **Full-Time / Part-Time** Full-Time **Clearance Level - Must Currently Possess** Top Secret **Job...


  • Arlington, Virginia, United States Credence company Full time

    Overview: The Information Systems Security Manager (ISSM) is responsible for implementing and overseeing cyber hygiene for all refugee operational activities within the Refugee Processing Center (RPC). Reporting directly to the Project Manager and Deputy Project Manager for the RPC project. Responsibilities include, but are not limited to the duties listed...


  • Arlington, Virginia, United States STR Full time

    Job DescriptionJob DescriptionAbout the Team:The Security team at STR is comprised of highly skilled professionals who are responsible for maintaining compliance IAW with Government protocol and directives. The Classified Cybersecurity (CCS) team consists of a collaborative group of ISSM's, ISSO's, and ISSE's who are passionate about national security that...


  • Arlington, Virginia, United States Lockheed Martin Full time

    Description:Ensure compliance to governing documents and security policies and assist in regulatory periodic assessments. Implements and tests state-of-the-art secure operating systems, networks, and database solutions. Stays current with system vulnerabilities and provides current security training to all system users. Conducts risk assessments and provides...


  • Arlington, Virginia, United States Rollout Systems Full time

    JSF IT -Information Assurance/Security Specialist, IAM LEVEL III on F-35 JSF ITACTIVE SECRET CLEARANCE ON DAY ONE REQUIRED. Position Description: Determines enterprise information assurance and security standards. Develops and implements information assurance/security standards and procedures. Coordinates, develops, and evaluates security programs for an...


  • Arlington, Virginia, United States Innovative Defense Technologies Full time

    Background Information: Innovative Defense Technologies (IDT), provider of automated software testing, data analysis, and cybersecurity solutions for complex, mission-critical systems in the US Department of Defense (DOD), is seeking an Information System Security Officer (ISSO) to be based in our Arlington, VA office. Overview: The Information System...


  • Arlington, Virginia, United States Base One Technologies Full time

    Our client is supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution. Contract personnel perform investigations to characterize of the severity of breaches, develop mitigation plans, and...


  • Arlington, Virginia, United States Ishpi Information Technologies, Inc Full time

    Overview:Responsibilities:Perform or oversee systems analysis of highly complex computer and networking systems. This position works in conjunction with architecture, engineering and sustainment to provide overall integration of systems peripherals so that they operate correctly within a predefined environment. Provides guidance and direction to Level II and...


  • Arlington, Virginia, United States Booz Allen Full time

    / / Arlington / Virginia / USA **Information System Security Officer** Arlington , Virginia , USA **Job Description** **Location:** Arlington, Virginia, USA **Remote Work:** No **Job Number:** R Share job via: Share this job: Information System Security Officer**The Challenge**: As an ISSO on our team, youll work with the Department of Defense to discover...


  • Arlington, Virginia, United States Demo - Maximus Full time

    Maximus is seeking an Information Systems Security Engineer (ISSE) to join their cyber team in Arlington, VA. Who We're Looking For:Passion Seekers. Individuals who genuinely care about their work and its impact on society.Self-Starters. Go-getters who are not afraid to disrupt the status quo.Entrepreneurs. Those who bring fresh ideas, work hard, develop...


  • Arlington, Virginia, United States Nightwing Full time

    Date Posted: Country: United States of America Location: VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA Position Role Type: Hybrid You have been redirected to RTXs career page as we have recently transitioned from RTX to become a standalone company, which provides us with greater autonomy and opportunities for...


  • Arlington, Virginia, United States Kem Technology Full time

    Job Description Job Description Salary:Position Summary:The ISSEsupports the Information systems security officer (ISSO) in managing all aspects of an organization's information security system, including researching, testing, training and implementing programs designed to safeguard sensitive information from any possible breaches.Role Responsibilities:As an...


  • Arlington, Virginia, United States Base One Technologies Full time

    Responsibilities: Providing support to plan, coordinate, and implement the lab's information security Providing support for facilitating and helping the lab identify its current security infrastructure and defining future programs, design and implementation of security related to lab systems Assisting the efforts of security staff to design, develop,...


  • Arlington, Virginia, United States Raytheon Technologies Corporation Full time

    Include:Leading all cyber security activities required to maintain ATO for assigned systems within the customers lab environment. Providing support for facilitating and helping the lab identify its current security infrastructure and define future Security Officer, Systems, Security, Officer, Information, Manufacturing, Program


  • Arlington, Virginia, United States Nodel Full time

    Job DescriptionJob DescriptionInformation Systems Security Analyst / Sr Cyber Security Subject Matter ExpertLocation: Arlington, VAMust have an active Top Secret ClearanceNode is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and operate a network operations environment...


  • Arlington, Virginia, United States RadiantHire Solutions, Inc. Full time

    Cyber Engineer - Senior II - SCE04 ISSOOur client is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing new cyber capabilities to address emerging threats. They are seeking an Information Systems Security Officer...


  • Arlington, Virginia, United States PassionHR Inc Full time

    Looking for a skilled Information Security Manager - III to join this vital mission in Arlington, Virginia. RESPONSIBILITIES Support planning, coordinating, and executing information security initiativesAid in identifying the lab's current security setup and crafting future security programsCollaborate with security team to develop solutions for security...


  • Arlington, Virginia, United States Base One Technologies Full time

    Responsibilities: Providing support to plan, coordinate, and implement the lab's information security Providing support for facilitating and helping the lab identify its current security infrastructure and defining future programs, design and implementation of security related to lab systems Assisting the efforts of security staff to design, develop,...


  • Arlington, Virginia, United States Arthur Grand Technologies Inc Full time

    Arthur Grand Technologies is currently seeking a highly motivated and skilled Senior Information Security Specialist for one of our clients.Role: Senior Information Security SpecialistLocation: Arlington, VAEmployment: Long Term ContractClient is seeking an experienced Information Security Specialist to support our Government Partner with cyber related...