Information Systems Security Manager (ISSM) Senior - TS/SCI with Poly - Security Clearance Required

Amentum
Fort Meade, Maryland
Full-time

We are seeking an Information Systems Security Manager (ISSM) Senior (Sr) for a prime contract that is based out of our Columbia, MD office.

As the ISSM Sr, you will serve on a team that is responsible for the Authorization and Assessment process under the Risk Management Framework (RMF) for new and existing information systems and will be expected to maintain Authority to Operate compliance for all assigned systems.

The work environment is fast-paced and sometimes involves deadline pressures. The nature of the work requires a high degree of teamwork and cooperation with other members of the staff as well as individuals across the Company and Customers.

Our program includes easily available process information and support from others with similar positions across the team.

Responsibilities :

  • Serve as a Subject Matter Expert with respect to National-level Security Policies to include ICD 503, NIST SP-800 Series, and CNSS Instruction 1253.
  • Communicate and interact with all system stakeholders to include Senior Management and the Authorizing Official.
  • Ensure ISSOs and stakeholders follow all information security policies, standards, and methodologies to obtain and / or maintain security authorizations for information systems
  • Provide daily oversight and direction to ISSOs.
  • Provide support for program, organization, system or enclave’s information assurance program.
  • Provide assistance for proposing, implementing, and enforcing information systems security polices, standards and methodologies.
  • Provide support to the customer organization in maintaining the appropriate operational security posture for assigned systems, programs, and / or enclaves.
  • Provide guidance and technical expertise on all matters that impact or effect the security of the information system.
  • Assist in the development and execution of an enterprise level continuous monitoring program to minimize security risks and ensure compliance with that program on a routine basis.
  • Guide the development, update, and submission the System Security Plan and other required documentation that make up the Security Authorization Package.
  • Conduct configuration management for security-relevant changes to software, hardware, and firmware.
  • Manage and control changes to the system, as well as assessing the effectiveness of system security controls on an ongoing basis to determine system security status.
  • Perform and deliver security impact analyses of changes to the system or its environment of operation.
  • Maintain and enforce IT security policies and implementation guidelines for customer systems in diverse operational environments.

divergent

  • In-depth knowledge of the security authorization processes and procedures as defined in the RMF in NIST SP800-37 and familiarity with the ICD503, CNSSI1253, NIST SP800-53, etc.
  • Knowledge of commercial security tools and their uses.
  • Experience with hardware / software security implementations.
  • Knowledge of different communication protocols, encryption techniques / tools, and PKI and authorization services.
  • Familiarity with security incident management, experience collaborating with Incident Response Teams, and able to provide viable recommendations for the resolution or computer security incidents and vulnerability compliance.
  • Experience creating and presenting documentation and management reports.
  • Attendance is always critical. Must be able to work a 40-hour workweek, normally Monday through Friday. However, times and days may vary depending on business requirements.

Needs to be available to work overtime during critical peaks and be available to meet last minute requests for overtime should the situation occur.

  • Must be able to communicate effectively both verbally and in writing.
  • Must put forward a professional behavior that enhances productivity and promotes teamwork and cooperation.
  • Must be able to interface with individuals at all levels of the organization both verbally and in writing.
  • Must be well-organized with the ability to coordinate and prioritize multiple tasks simultaneously.
  • Must work well under pressure to meet deadline requirements.
  • Must take and pass a drug test and background check as well as a motor vehicle records check.
  • DoD 8570.1 compliant IAM Level III certification, such as the GSLC, CISM, and / or CISSP (or Associate) will also be accepted.

Clearance Required :

TS / SCI w / Poly

Minimum Education :

  • A Bachelor’s Degree in Computer Science or IT Engineering or related field may be substituted for four (4) years of experience
  • 12 years of related work experience in the field of security authorization.
  • 2 days ago
Related jobs
Promoted
Amentum
Hanover, Maryland

Bachelor's degree in Computer Science or related discipline from an accredited college or university is required. You will be part of a dynamic team that supports the customer’s global mission enterprise for over 80 customer locations worldwide by providing unique solutions for an ever-changing miss...

Promoted
Jacobs
Hanover, Maryland

Bachelor’s Degree in Systems Engineering, Computer Science, Information Systems, Engineering Science, Engineering Management or related discipline from accredited college or university. Effective communication, writing, documentation, and requirements gatherings skills are needed to be effective in ...

Promoted
Amentum
Annapolis Junction, Maryland

Bachelor’s, Master’s degree or PhD in Aeronautics, Biomedical, Chemical, Civil, Computer, Electrical, Environmental, Mechanical, Nuclear, Software, Systems and Engineering Management or Chemistry, Computer Science, Information Systems, Mathematics or Physics from an accredited college or university ...

Promoted
Jacobs
Fort Meade, Maryland

Active TS/SCI clearance polygraph. In this role you will support challenging, mission-critical projects that make a direct impact on the nation’s security and intelligence mission. Manage contractors to ensure compliance with project and installation requirements. Are you interested in using your sk...

Promoted
Peraton
Annapolis Junction, Maryland

Active TS/SCI security clearance with a current polygraphis required. Configure and manage UNIX and Windows operating systems and installs/loads operating system software, troubleshoots, maintains integrity and configures network components along with implementing operating systems enhancements to i...

Promoted
Amentum
Fort Meade, Maryland

TS/SCI clearance with polygraph!. Must be able to obtain and maintain a TS/SCI with Poly. Our hiring practices provide equal opportunity for employment without regard to race, religion, color, sex, gender, national origin, age, United States military veteran’s status, ancestry, sexual orientation, g...

Promoted
ManTech
Annapolis Junction, Maryland

Support MQ queue managers and objects running client operating systems. Security Clearance Requirements:. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law. At Ma...

Promoted
Peraton
Annapolis Junction, Maryland

Bachelor's degree in system engineering, Computer Science, Information Systems, Engineering Science, Engineering Management, or related discipline from an accredited college or university is required. Active TS/SCI security clearance with current polygraph. Peraton offers enhanced benefits to employ...

General Dynamics Information Technology
Annapolis Junction, Maryland

Conducts regular audits to ensure that systems are being operated securely, and information systems security policies and procedures are being implemented as defined in security plans. Implements, enforces, communicates, and develops security policies or plans for data, software applications, hardwa...

BAE Systems
Annapolis Junction, Maryland

The candidate will work with other security professionals in developing and implementing strategies to detect and mitigate threats to information systems, protect critical data sets, and provide assessments of system and network vulnerabilities. The selected candidate will act as an ISSO for a large...