Information Systems Security Manager (ISSM)

Job Description

Information Systems Security Manager (ISSM)
Job Locations US-CA-San Diego
ID 2023-17915 Category Information Technology Security Clearance Requirement Secret Type Regular Full-Time
Overview

Systems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. As we enter our 50th year in business, we are known for continuous innovation for government customers, both long-established and newly acquired, as our capabilities expand around the globe. Our work is state-of-the-art and made possible only through the best personnel, tools, and jobs in the national security business. We are highly collaborative in spirit and practice, and we freely share expertise across SPA in our quest for enduring solutions to critical concerns. Come work with the best!

SPA's Sea Land Air (SLA) Division supports a diverse portfolio of national security government clients, including the Undersea Enterprise, the Navy Surface Community, the Navy MPTE Enterprise, the Army, DoD Agencies, DARPA, OSD, international clients including the Canadian Navy and Australian Defense Force. Our primary objective is to provide timely, objective and analytic assessments that integrate the policy, operational, technical, programmatic and acquisition aspects of our clients' challenges. Leveraging both in-domain and cross-domain expertise to maximize our clients' success, SLA Division acts as trusted agents to senior decision-makers and key leaders and excels at providing data driven analytic insights, systems engineering, strategies and plans that address current and emerging challenges to national security.

SPA's Operations Research and Cyber Analysis (ORCA) Group develops and employs simulation system products in support of operations, experimentation, and the acquisition analysis process. ORCA analysts apply Model-Based System Engineering (MBSE) principles and tools to identify and analyze trends in big data to solve real-world problems. ORCA software engineers and cyber security professionals develop, build, and deploy custom hardware and software solutions to meet our client's toughest challenges.

SPA in CA is seeking an Information System Security Manager (ISSM). This position will develop information system solutions following Risk Management Framework (RMF) with implementations following the DAAPM and CMMC. The ISSM will be responsible for attaining and maintaining system assessments and authorizations through government authorizing agencies from requirements through operational deployment. ISSM will implement requirements to establish classified communication links including internet, phone, video teleconferencing and other vital communications channels. The successful candidate will coordinate requirements with DoD agencies to ensure mission accomplishment and the protection of sensitive information.

#MC

Responsibilities
    Develop and maintain enterprise-wide RMF information security policies, standards, guidelines, procedures, and artifacts following RMF
  • Oversees the development and deployment of the information security program for multiple classified systems to meet business and enterprise requirements, policies, standards, guidelines and procedures Prepares, reviews, and presents technical reports and briefings
  • Create and Maintain the System Security Plans (SSP) and associated documentation
  • Create a book of business for Cybersecurity Team
  • Maintain compliance of accredited information systems based on federal and DoD security standards
  • Manages and performs security compliance continuous monitoring
  • Identifies root causes, prioritizes threats and recommends and/or implements corrective action
  • Research and address information security issues as required as an authority on the subject
  • Ensure systems are operated, maintained, and disposed of in accordance with internal security policies and practices
  • Participate in internal and external security audits and inspections; performs risk assessments
  • Evaluate proposed changes or additions to the information system and assess their security relevance
  • Ensure configuration management (CM) for security-relevant IS software, hardware, and firmware is maintained and documented
  • Conduct investigations of computer security violations and incidents, reporting as necessary
  • Ensure proper protection and / or corrective measures have been taken when an incident or vulnerability has been discovered
  • Communicate, implement and manage a formal Information Security / Information Systems Security Program together with CISO, CIO, and ISO
  • Install, configure, test, maintain, monitor, and troubleshoot end-user workstations and related hardware and software
  • Receive and respond to incoming calls and/or e-mails regarding end-user or system problems
  • Interface with third-party support and equipment vendors as needed

Some travel may be required

At SPA, we strive to deliver a robust total compensation package that will attract and retain top talent. Elements of the compensation package include competitive base pay and variable compensation opportunities.

SPA provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work.

The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, etc.

Please note that the salary information shown below is a general guideline only. Salaries are commensurate with experience and qualifications, as well as market and business considerations. California Pay Transparency Range: $150,000-$170,000

Qualifications

  • Bachelors Degree in Information Security, Information Technology, or related discipline, or equivalent experience/combined education, with 5+ years of professional experience
  • Must have and maintain a DoD 8570.01-M (Information Assurance Workforce) IAM level 1 certification (e.g. Security+, GSLC, CISM, or CISSP)
  • Experience with RMF artifacts, obtaining and maintaining system ATOs, and implementing new and complex technologies at multiple classification levels within large enterprise environments
  • Experience performing continuous monitoring and cybersecurity hygiene of a windows domains and network enclaves
  • Problem solving and time management capabilities
  • Extensive experience working with federal/government agencies in sensitive and classified environments
  • Experience with Risk Management Framework (RMF), NIST 800-53, DAPPM, and other legal and regulatory guidance
  • Excellent customer relations and customer support skills
  • Experience working in a team-oriented, collaborative environments
  • Active Secret security clearance

Desired Skills:

  • At least 3 years experience in the deployment, configuration, and troubleshooting of information technology equipment
  • DoD 8570/8140 IAM Level III certification
  • Ability to understand information systems equipment configurations (switches, routers, IDS, firewalls, servers, storage, etc...)

SPA is committed to the principles and practices of equal employment opportunity (EEO) and Affirmative Action. It is, and will continue to be, the policy of the company to afford equal employment opportunities to all qualified individuals. We recruit, hire, train and promote persons in all job titles without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin, age, disability or genetics. In addition to federal law requirements, SPA complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities.

 

*Please mention you saw this ad on AcademicJobs.*

Apply Now

Be Seen By Recruiters at the
Best Institutions

Create Your FREE Profile Now!