Information Systems Security Manager

Found in: Appcast Linkedin GBL C2 - 2 weeks ago


Washington, United States Lawelawe Management Group LLC Full time
The Information Systems Security Manager (ISSM) will be responsible for leading a team to execute risk management efforts against the CAO’s inventory of on premise, vendor, and cloud-based systems.

Key Responsibilities:
  • Manage Information System Security Officers (ISSO) to support information technology (IT) security goals and objectives and reduce overall organizational risk.
  • Assist in the execution and management of the Risk Management Framework (RMF) and advise ISSOs on proper application of cybersecurity policies and requirements.
  • Assist senior management in the development and interpretation of information assurance guidelines, policies, regulations etc.
  • Advise senior management (e.g., Chief Information Security Officer [CISO]) on risk levels and security posture.
  • Advise appropriate senior leadership or Authorizing Official of changes affecting the organization's cybersecurity posture.
  • Conduct independent or coordinated studies to identify, evaluate or recommend solutions to significant systems management problems that are likely to be complex and sensitive in nature.
  • Ensure that security improvement actions are evaluated, validated, and implemented as required.
  • Identify alternative information security strategies to address organizational security objectives.
  • Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program.
  • Participate in information security risk assessments during the Security Assessment and Authorization process.
  • Ensure that plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
  • Provide quality assurance reviews of cybersecurity deliverables to ensure consistency, accuracy, and relevancy.
  • Provide technical and procedural information system advice to risk management team.
  • Perform quality reviews of security artifacts collected by ISSOs under their purview to ensure quality assessment and authorization (A&A) deliverables are provided.
  • Assume ISSO responsibilities in the absence of ISSO.
  • Ensure a record is maintained of all vulnerabilities for existing authorization boundaries.
  • Advise ISSOs on all matters, technical and otherwise, involving the security of assigned IT systems.
  • Maintain a working knowledge of system technology, security policies, and security safeguards.
  • Ensure continuous monitoring of authorization boundaries and implemented security controls is followed.
  • Provide guidance to ISSOs on mitigation actions for security control deficiencies and scan vulnerabilities for assigned IT systems.
  • Provide role-based training for assigned ISSOs specific to their roles and responsibilities.
  • Brief senior management on the status of ISSOs and their assigned projects.
  • Work with senior leadership to mature risk management processes.
  • Develop and formalize risk management training for varied stakeholder groups.
  • Conduct assigned technical reviews and risk analyses and develop cybersecurity risk mitigation recommendations and strategies based on threats.
  • Research and recommend innovative, secure, and (where possible) automated solutions to improve risk management processes and activities.
  • Participate in the technical security evaluation and assessment of new technologies.
  • Provide audit support to cybersecurity for audit activities and recommendations.
Qualifications:
  • 8+ years of demonstrated work experience in cybersecurity risk management.
  • Bachelor’s degree in computer science, information technology, cybersecurity, or a related technical discipline required.
  • Current certification in one or more of the following IT Security disciplines: Certified in Risk and Information Systems Control (CRISC), Certified Information Security Manager (CISM) or Certified Information Systems Security Professional (CISSP) or equivalent certification required.
  • Demonstrated experience managing systems security assessments, reviewing system security documentation for successful security authorization of such systems.
  • Strong knowledge and expertise with NIST publications.
  • Demonstrated experience providing quality A&A deliverables.
  • Proven technical acumen and understanding of common operating systems and network technologies, risk management frameworks, and common security tools and scanners.
  • Demonstrated understanding of cloud service models, hybrid applications, and mobile security technologies and tools.
  • Understanding of management, operational and technical cybersecurity principles.
  • Excellent written and oral communication skills.
  • Must possess an active Secret Clearance.
Preferred Qualifications:
  • Experience with privacy principles and frameworks is preferred.


  • Washington, United States Watershed Security Full time

    COMPANY OVERVIEW Watershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust and respect with our...


  • Washington, United States Watershed Security Full time

    Job DescriptionJob DescriptionCOMPANY OVERVIEWWatershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust...


  • Washington, United States Information Protection Solutions Full time

    Job DescriptionJob DescriptionRESPONSIBILITYAnalyze science, engineering, business, and other data processing problems to implement and improve computer systems. Analyze user requirements, procedures, and problems to automate or improve existing systems and review computer system capabilities, workflow, and scheduling limitations. May analyze or recommend...


  • Washington, United States Information Protection Solutions Full time

    RESPONSIBILITY Analyze science, engineering, business, and other data processing problems to implement and improve computer systems. Analyze user requirements, procedures, and problems to automate or improve existing systems and review computer system capabilities, workflow, and scheduling limitations. May analyze or recommend commercially available...


  • Washington, United States Information Protection Solutions Full time

    Job DescriptionJob DescriptionInformation systems security officers (ISSO) research, develop, implement, test and review an organization's information security in order to protect information and prevent unauthorized access. Officers inform users about security measures, explain potential threats, install software, implement security measures and monitor...


  • Washington, United States Associates Systems LLC Full time

    Information System Security Engineer (ISSE) Washington Navy Yard, DC Secret Clearance required Job details Perform, and/or review, technical security assessments of enclaves within network to identify points of vulnerability, non-compliance with established IA standards and regulations and recommend mitigation strategies. Validate and verify system security...


  • Washington, United States BTI Full time

    Job DescriptionJob DescriptionBusiness Technology Integrators (BTI) is seeking an Information Systems Security Manager (ISSM) to lead a team in executing risk management efforts against our customer's inventory of on premise, vendor and cloud-based systems. The successful candidate will provide support in the following areas:• Manage Information...


  • Washington, United States Palantir Technologies Full time

    A World-Changing Company Palantir builds the world’s leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more. The Role Palantir's impact and productivity in the US...

  • ISSE - Information Systems Security Engineer with Security Clearance

    Found in: Careerbuilder One Red US C2 - 1 week ago


    Washington, DC, United States Associates Systems LLC Full time

    Information System Security Engineer (ISSE) Washington Navy Yard, DC Secret Clearance required Job details Perform, and/or review, technical security assessments of enclaves within network to identify points of vulnerability, non-compliance with established IA standards and regulations and recommend mitigation strategiesValidate and verify system security...


  • Washington, United States VTG Full time

    Overview: VTG seeks an Information Systems Security Officer (ISSO) to manage all aspects of a SIPR-connected enclave and its equipment. This position will support our Washington, DC, office near the Washington Navy Yard. This is a combined system and risk management role. In this role, you will develop, implement, and test information security measures,...

  • Information Systems Security Officer with Security Clearance

    Found in: Dice One Red US C2 - 2 weeks ago


    Washington, United States VTG Full time

    Overview VTG seeks an Information Systems Security Officer (ISSO) to manage all aspects of a SIPR-connected enclave and its equipment. This position will support our Washington, DC, office near the Washington Navy Yard. This is a combined system and risk management role. In this role, you will develop, implement, and test information security measures,...


  • Washington, United States Gilder Search Group Full time

    Summit Technologies Inc. is seeking an Information Systems Security Analyst t o support our government client. The Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development. This is a hybrid role based in Washington, DC. Candidates must be eligible for a...


  • Washington, United States IntelliDyne Full time

    **Information Systems Security Officer (ISSO)** **Work Location**:Hybrid in Washington, DC (3 onsite, 2 remote) **Clearance**:US Citizenship - Eligible to receive a TS/SCI clearance **Status**: Exempt **Responsibilities**: - Provide technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation,...


  • Washington, United States Omniscius Consulting Full time

    Job DescriptionJob DescriptionWe are seeking a highly experienced Senior Information System Security Officer (ISSO) to lead our information security Compliance Branch to support a homeland security customer in Washington, DC. The ideal candidate will have over 10 years of experience in managing complex systems within our Agency, demonstrating a deep...

  • Information System Security Officer

    Found in: Appcast Linkedin GBL C2 - 2 weeks ago


    Washington, United States Gen3 Technology Consulting Full time

    About us:Gen3 Technology Consulting isan SBA-certified Woman-Owned Small Business (WOSB) providinga diverse set of technology services and solutions to federal and commercial clients. Founded in 2017, Gen3 leverages over 25 years of information technology management and leadership experience to help our clients define, plan, manage, and achieve their...


  • Washington, United States Gen3 Technology Consulting Full time

    About us:Gen3 Technology Consulting isan SBA-certified Woman-Owned Small Business (WOSB) providinga diverse set of technology services and solutions to federal and commercial clients. Founded in 2017, Gen3 leverages over 25 years of information technology management and leadership experience to help our clients define, plan, manage, and achieve their...

  • Senior Information Systems Security Analyst

    Found in: beBee jobs US - 2 weeks ago


    Washington, Washington, D.C., United States SAIC Career Site Full time

    Description SAIC is looking for a Senior Information Systems Security Analyst to join our team supporting an important US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for IT Security Risk and Compliance support by providing direct support to the Information System Security and Privacy...


  • Washington, United States SAIC Full time

    Description SAIC is looking for a Senior Information Systems Security Analyst to join our team supporting an important US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for IT Security Risk and Compliance support by providing direct support to the Information System Security and Privacy...

  • Information System Security Officer

    Found in: Dice One Red US C2 - 1 week ago


    Washington, United States Envisioneering, Inc Full time

    Information System Security Officer - (ISSO) Location Washington, DC 20375 US (Primary) Job Type Full-Time Education Bachelor's Degree How much will you travel if the job requires it? 0 - 25% Minimum Security Clearance Required TS Job Description Envisioneering, Inc. is seeking an Information Systems Security Officer (ISSO) to support an active government...


  • Washington, United States Summit Technologies, Inc. Full time

    Job DescriptionJob DescriptionSummit Technologies Inc. is seeking an Information Systems Security Analyst to support our government client. The Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development.This is a hybrid role based in Washington, DC....