ForgeApply · Job listing
Information Systems Security Manager (ISSM) III
GDIT
Tailor your resume for this GDIT job in about a minute.
ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for GDIT's site. Free trial, no card required.
About this role
Type of Requisition: Regular
Clearance Level Must Currently Possess: Top Secret/SCI
Clearance Level Must Be Able to Obtain: Top Secret SCI + Polygraph
Public Trust/Other Required: None
Job Family: Cyber and IT Risk Management
Job Qualifications: Skills: Information Security, Information Security Management, Information System Security Certifications: None Experience: 10 + years of related experience US Citizenship Required: Yes
Job Description: Location: Fort Walton Beach, FL
The ISSM’s primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under their purview. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
Performance shall include: • Lead, cultivate and maintain productive working relationships with other DoD agencies managers, data stewards, and senior leadership to foster productive and positive cyber security profile.
• Participate in the strategic planning and implementation of the Cyber Security Program.
• Provide expert input to the formulation of cyber security policies based upon the Risk Management Framework (RMF) with emphasize on Joint Special Access Program Implementation Guide (JSIG) authorization process.
• Advise customer on Risk Management Framework (RMF) assessment and authorization issues.
• Develop and implement a security assessment plan.
• Perform risk assessments and make recommendations to DoD agency customers.
• Advise government program managers on security testing methodologies and processes.
• Evaluate authorization documentation and provide written recommendations for authorization to government PM’s.
• Develop and maintain a formal Information Systems Security Program.
• Ensure that all IAOs, network administrators, and other cyber security personnel receive the necessary technical and security training to carry out their duties.
• Develop, review, endorse, and recommend action by the AO or DAO of system assessment documentation.
• Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media.
• Develop and execute security assessment plans that include verification that the features and assurances required for each protection level functioning.
• Institute and implement a Configuration Control Board (CCB) charter.
• Maintain a and/or applicable repository for all system authorization documentation and modifications.
• Develop policies and procedures for responding to security incidents, to include investigating and reporting security violations and incidents.
• Ensure proper protection or corrective measures have been taken when an incident or vulnerability has been discovered within a system.
• Ensure that data ownership and responsibilities are established for each authorization boundary, to include accountability, access rights, and special handling requirements.
• Ensure development and implementation of an information security education, training, and awareness program, to include attending, monitoring, and presenting local cyber security training.
• Evaluate threats and vulnerabilities to ascertain whether additional safeguards are needed.
• Assess changes in the system, its environment, and operational needs that could affect the authorization.
• Ensure that authorization is accomplished a valid Authorization determination has been given for all authorization boundaries under your purview.
• Review AIS assessment plans.
• Coordinate with PSO or cognizant security official on approval of external information systems (e.g., guest systems, interconnected system with another organization)
• Conduct periodic assessments of the security posture of the authorization boundaries.
• Ensure configuration management (CM) for security-relevant changes to software, hardware, and firmware and that they are properly documented.
• Ensure periodic testing is conducted to evaluate the security posture of IS by employing various intrusion/attack detection and monitoring tools (shared responsibility with ISSOs)
• Ensure that system recovery and reconstitution processes developed and monitored to ensure that the authorization boundary can be recovered based on its availability level determination.
• Ensure all authorization documentation is current and accessible to properly authorized individuals.
• Ensure that system security requirements are addressed during all phases of the system life cycle.
• Establish and develop a self-inspection program within the organization.
• Periodically review system security to accommodate changes to policy or technology.
• Coordinate all technical security issues outside of area of expertise or responsibility with ISSE.
• Provide expert research and analysis in support of expanding programs and area of responsibility as it pertains to cyber security and information technology activities.
• Develop Assured File Transfers (AFT) on accordance with the JSIG.
• Provide leadership, mentoring, and quality assurance for Cyber Security and Information Technology team members.
• Must have expert knowledge of DoD, National and applicable service and agency security policy, manuals and standards.
Experience: • 10+ years related experience.
• 2+ years SAP experience r equired.
• Prior performance in roles such as ISSO or ISSM.
Education: • Master's degree OR Bachelor’s degree in a related field + 2 years’ experience OR Associate’s degree in a related area + 4 years’ experience OR equivalent experience (6 years)
Certifications: • IAT Level III or IAM Level III
Clearance • Current Top-Secret Clearance with SCI Eligibility.
• Eligibility for access to Special Access Program Information.
#AirForceSAPopportunities #ISSM
The likely salary range for this position is $129,795 - $175,605. This is not, however, a guarantee of compensation or salary. Rather, salary will be se
Tailor your resume for this GDIT role before you apply.
Tailor my resume for this jobSimilar jobs
- Information Systems Security Manager (ISSM) II — GDIT · USA FL Fort Walton Beach | USA FL Ft Sheridan | USA FL Hurlburt Field
- Information Systems Security Manager (ISSM) — Accenturefederalservices · Tampa, FL
- Senior Information Systems Security Manager (ISSM) — Epirus · Torrance, California, United States
- Information Systems Security Officer (ISSO) III — GDIT · USA MA Bedford | USA MA Peabody | USA MA Norwood
- Information Systems Security Manager — Parsons · MD (Field Location), United States
- Information Systems Security Manager — Andurilindustries · Costa Mesa, California, United States
- Information Systems Security Manager — Andurilindustries · Honolulu, Hawaii, United States
- (704) Cybersecurity Information System Security Manager (ISSM) — Arlosolutionsllc · Orlando FL
More like this: More jobs at GDIT · Browse all jobs
Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)