Cyber Security Manager

2 weeks ago


Lexington, United States MIT Lincoln Laboratory Full time


Select how often (in days) to receive an alert:

JOIN OUR TALENT NETWORK

Cyber Security Manager

Apply now

Date: Dec 6, 2024


Location:
Lexington, MA, US


Company:
MIT Lincoln Laboratory

Position Description

The Cyber Security Vulnerability Management Team Lead will provide leadership and direction in the day-to-day management of the vulnerability assessment, tracking, and remediation efforts to the Laboratory Cyber Security Vulnerability Management Infrastructure. The Cyber Security VM Team Lead will provide oversight, technical leadership and vision, with respect to operations of the Laboratory vulnerability management process, ensuring adherence to industry standards.

These responsibilities include: facilitating design reviews for proposed solutions; providing recommendations on viability; implementation strategies and optimal implementation of solutions; demonstration of expert level knowledge of vulnerability remediation strategies; ensuring changes to security infrastructures are made with optimal security standards and best practices in mind; setting strategic and technical direction following industry standards and security best practices.

Vulnerability Assessment
  • Implement, maintain, and document enterprise vulnerability assessment systems and business processes
  • Create procedures and customized scan configurations appropriate for the desired performance and accuracy
  • Perform scheduled scans of Laboratory DoD classified and unclassified networks with minimal impact to users
  • Provide custom vulnerability reporting for SSD, ISD, and Group Administrators as required.
  • Review and analyze vulnerability results and monitor remediation efforts in coordination with ISD Management and Systems Administrators
  • Conduct all types of Web applications security testing, including those indicated in the OWASP testing guide
General Security Projects
  • Perform Security Reviews to assess security best practices are adopted for Laboratory deployment projects
  • Assist in evaluating potential security tools, devices, or methods
  • Develop project plans, architecture diagrams, requirement documentation, test plans, change requests, and communication to users
  • Security Infrastructure Operations
  • Responsible for day-to-day support and maintenance of vulnerability assessment systems (e.g. Vulnerability Assessment Scanners & Management System, ACAS and Antivirus/malware scanning systems)
  • Duties include but are not limited to system troubleshooting, vendor coordination, budgeting, capacity planning, OS patching and updating
  • Assess and report on operational readiness of enterprise systems through vulnerability scanning, configuration management tools and log analysis (e.g. Nessus, Tufin and Splunk)
  • Monitor performance metrics and log data for continuous improvement and tuning to match current threats
  • Maintain and update documentation, including standard operating procedures
  • Assist other team members by acting as secondary support role of various security systems
Communication & Collaboration
  • Document and track actions to ensure accurate timeline of events is available
  • Coordinate efforts among analyst to enhance mitigation efforts and avoid duplication of efforts
  • Coordinate with Security Services Department on threat impact, nature and potential scope
  • Develop and publish detailed Vulnerability Assessment reports as required
Threat Assessment
  • Assist the Threat Assessment team with determination of threat level and action to be performed on systems of interest, e.g. through vulnerability scanning or configuration management reporting
  • Identify ways to mitigate future risk to the Laboratory
  • Recommend escalation of systems of interest for policy violations and risk to the threat assessment team

This position is under general supervision of the Cyber Security Sector Manager

This position does not have direct financial responsibility. However, technical expertise may be required for assisting with product selection.

This position will maintain frequent contact with internal department and/or Laboratory user community as well as external vendors to maintain communications related to project execution.

Requirements
Knowledge and Skills Required
  • Strong working knowledge of various enterprise network and standalone security systems and technologies - including vulnerability assessment to include ACAS, configuration management and auditing, intrusion protection, firewalls, anti-virus, laptop encryption, and digital forensics
  • 15+ years' experience in the information technology field
  • 8+ years' experience specifically in the information security field
  • Proven operational support experience with design and management of vulnerability assessment environments including Tenable Nessus and Security Center
  • Use of advanced options of common discovery and assessment tools such as Nmap, OpenSSL and Netcat
  • Configuration auditing and/or monitoring using Nessus and Tufin and/or other configuration management tools
  • Use of various network security systems to assist in the investigation of security anomalies and incidents
  • Knowledge of penetration testing and vulnerability assessment strategies
  • IAT Level II DoD Approved Baseline Certification
  • Ability to obtain and maintain a government security clearance
Preferred
  • Bachelor's Degree in Computer Science, Information Technologies, Engineering or equivalent experience
  • GSEC, GCIH, CISSP or equivalent certification
  • Proven ability to script in Perl or Python
  • Knowledge of Department of Defense and FISMA requirements is preferred
  • Experience with DoD ACAS and/or HBSS systems is preferred
  • Working knowledge of NIST security controls
  • ITIL v3/v4 Foundation experience and/or certification

Occasional off-hour/on-call support is necessary.

A certain degree of flexibility of schedule is required as some work (planned/unplanned) must be done outside of major production hours during pre-scheduled maintenance windows.

Additional Information

This position requires an individual with excellent communication (both oral and writing) and organizational skills. The individual must be able to work in a fast-paced environment at times with minimal supervision and execute project and administrative tasks with a high degree of quality, while following existing processes, and establishing new operational procedures and best practices where necessary. Additionally, the position requires the ability to work with members of other teams and staff to all necessary department and organizational goals.

At MIT Lincoln Laboratory, our exceptional career opportunities include many outstanding benefits to help you stay healthy, feel supported, and enjoy a fulfilling work-life balance. Benefits offered to employees include:

  • Comprehensive health, dental, and vision plans
  • MIT-funded pension
  • Matching 401K
  • Paid leave (including vacation, sick, parental, military, etc.)
  • Tuition reimbursement and continuing education programs
  • Mentorship programs
  • A range of work-life balance options
  • ... and much more

Please visit our Benefits page for more information. As an employee of MIT, you can also take advantage ofother voluntary benefits, discounts and perks.

Selected candidate will be subject to a pre-employment background investigation and must be able to obtain and maintain a Secret level DoD security clearance.

MIT Lincoln Laboratory is an Equal Employment Opportunity (EEO) employer. All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, veteran status, disability status, or genetic information; U.S. citizenship is required.

Requisition ID: 40535



Nearest Major Market: Boston

Job Segment:
Cyber Security, Defense, DoD, Security Clearance, Computer Forensics, Security, Government

Apply now

Find similar jobs:

  • Lexington, Kentucky, United States MIT Lincoln Laboratory Full time

    Job OverviewCyber Security Manager at MIT Lincoln Laboratory. The Cyber Security Vulnerability Management Team Lead will provide leadership and direction in the day-to-day management of the vulnerability assessment, tracking, and remediation efforts to the Laboratory Cyber Security Vulnerability Management Infrastructure.Key ResponsibilitiesFacilitate design...


  • Lexington, Kentucky, United States Leidos Full time

    Job OverviewThe Cyber Security Lead is responsible for overseeing and managing the organization's cyber security program. This includes developing and implementing a comprehensive cyber security strategy that aligns with the organization's business objectives and meets regulatory requirements.Key Responsibilities:Cyber Security Program Management: Develop,...


  • Lexington, United States Pro2Serve Full time

    Job Responsibilities: Company Description: ETAS Inc. has upcoming opportunity for Senior Cyber Security Analyst (Direct Hire) position at our office in Lexington, KY. Please submit resumes via the web page link below. Enterprise Technical Assistance Services, Inc. (ETAS), is a wholly owned subsidiary of Professional Project Services, Inc (Pro2Serve). ETAS...


  • Lexington, Kentucky, United States Industrial Staffing Services Inc dba Equiliem Full time

    Cyber Security Solutions DeveloperIndustrial Staffing Services Inc dba Equiliem is seeking a skilled Cyber Security Solutions Developer to join our team.Job Description:We are looking for a highly motivated and experienced Cyber Security Solutions Developer to design, develop, document, test, and maintain full spectrum cyber...


  • Lexington, United States MIT Lincoln Laboratory Full time

    Select how often (in days) to receive an alert: JOIN OUR TALENT NETWORKCyber Security Analyst Apply nowDate: Dec 11, 2024 Location: Lexington, MA, US Company: MIT Lincoln Laboratory The ISD Cyber Security Sector is responsible for monitoring and protecting Laboratory information systems. The sector operates and maintains computer network defense (CND)...


  • Lexington, Kentucky, United States Equiliem Full time

    About the RoleWe are seeking a highly skilled Cyber Security Specialist to join our team at Equiliem. This is a challenging opportunity for individuals with experience in designing, developing, documenting, testing, and maintaining full spectrum cyber solutions.The ideal candidate will have expertise in developing and automating secure systems to support...


  • Lexington, Kentucky, United States Leidos Full time

    Job OverviewThe Senior Cyber Security Specialist will be responsible for designing, implementing, and maintaining Leidos' cybersecurity infrastructure. The role requires close collaboration with other members of the IT team to identify vulnerabilities and develop effective strategies to mitigate risks and protect against cyber threats.


  • Lexington, Kentucky, United States Industrial Staffing Services Inc dba Equiliem Full time

    About the Role:">This Cyber DevOps Engineer position at Industrial Staffing Services Inc dba Equiliem involves designing, developing, documenting, testing, and maintaining full-spectrum cyber solutions. The ideal candidate will develop and automate secure systems to support cyber offensive, defense, and full-spectrum cyber operations.Responsibilities...


  • Lexington, Kentucky, United States Top Secret Clearance Jobs Full time

    About Top Secret Clearance JobsCompany OverviewTop Secret Clearance Jobs is a leading platform dedicated to connecting highly skilled professionals with exclusive career opportunities. Our mission is to provide top-secret clearance holders with the best possible chance of finding their next dream job.Salary$140,000 - $200,000 per year, depending on...


  • Lexington, United States Lockheed Martin Corporation Full time

    Description: You will be the Cyber Systems Security Engineer for the Lexington, KY area and must have the ability to obtain a Secret Security Clearance. What You Will Be Doing As the Cyber Systems Security Engineer embedded with a SOF GLSS Program Team; you will work as part of the Cybersecurity team and must be able to perform in a fast-paced...


  • Lexington, United States Lockheed Martin Corporation Full time

    Description: You will be the Cyber Systems Security Engineer for the Lexington, KY area and must have the ability to obtain a Secret Security Clearance. What You Will Be Doing As the Cyber Systems Security Engineer embedded with a SOF GLSS Program Team; you will work as part of the Cybersecurity team and must be able to perform in a fast-paced...


  • Lexington, Kentucky, United States Leidos Full time

    Job Description:The Senior Cyber Security Specialist will be responsible for designing, implementing, and maintaining our organization's cybersecurity infrastructure.This role involves working closely with other members of the IT team to identify vulnerabilities and develop effective strategies to mitigate risks and protect against cyber threats.Key...


  • Lexington, United States Lockheed Martin Full time

    Description: You will be the Cyber Systems Security Engineer for the Lexington, KY area and must have the ability to obtain a Secret Security Clearance. What You Will Be Doing As the Cyber Systems Security Engineer embedded with a SOF GLSS Program Team; you will work as part of the Cybersecurity team and must be able to perform in a fast-paced environment....


  • Lexington Park, United States Spalding Consulting Full time

    Spalding Consulting, Inc. is seeking a Senior Cyber Security Specialist - Contingent in Patuxent River, MD.  Spalding Consulting, Inc. is a professional services company delivering cutting-edge solutions to the Department of Defense since 2001. Our expert-level solutions include software development, information technology, program management,...


  • Lexington, Massachusetts, United States Acro Service Corporation Full time

    About the RoleAs a Cyber Security Systems Engineer, you will play a critical role in supporting the development of new technologies that enable worldwide networked operations for the military and other government agencies.You will work in collaboration with researchers to troubleshoot diverse and custom written applications in a secure environment.The ideal...


  • Lexington, Kentucky, United States P-11 Security Inc Full time

    Job OverviewP-11 Security Inc, a certified Economically-Disadvantaged Women-Owned Small Business (EDWOSB) with over 25 years of expertise in the security field, is seeking an experienced Information Systems Security Manager I. We specialize in Security in Depth (SiD) services, delivering integrated 360 Security Services, Cyber Security, and Information...


  • Lexington Park, Maryland, United States Modern Government Solutions Full time

    Job OverviewWe are seeking an experienced Cyber Security Specialist - Operations Research Analyst to join our team at Modern Government Solutions.Estimated Salary: $120,000 - $180,000 per yearJob DescriptionAs a Cyber Security Specialist - Operations Research Analyst, you will be responsible for analyzing data and information from multiple sources to conduct...


  • Lexington, Kentucky, United States Equiliem Full time

    Job SummaryEquiliem is seeking a highly skilled Cyber Security Specialist to join our team. This role involves designing, developing, documenting, testing, and maintaining full spectrum cyber solutions.The successful candidate will have experience in developing and automating secure systems to support cyber offensive, defense, and full spectrum cyber...


  • Lexington, Kentucky, United States Top Secret Clearance Jobs Full time

    Welcome to Top Secret Clearance Jobs!Job Title: Cyber DevOps EngineerJob Type: Full-timeLocation: Remote (US)Job Description: We are seeking an experienced Cyber DevOps Engineer to join our team. The ideal candidate will have a strong background in software engineering, cybersecurity, and DevOps, with a proven track record of designing, developing, and...


  • Lexington, Kentucky, United States Equiliem Full time

    Cyber Solutions Developer OpportunityWe are looking for a talented Cyber Solutions Developer to join our team at Equiliem. As a key member of our team, you will be responsible for designing, developing, documenting, testing, and maintaining full spectrum cyber solutions.Your primary focus will be on developing and automating secure systems to support cyber...