What are the responsibilities and job description for the Information Systems Security Manager (Top Secret) position at Columbus Technologies?
Must be a US Citizen
100% on site in Centreville, VA
Fulltime Direct Employment
W2 with full benefits
The US base salary range for this full-time position is $118,107 - $167,475 bonus and benefits. Salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training.
Summary
The Information Systems Security Manager (ISSM) provides information systems security support for DoD and Non-DoD classified systems and networks. Standing up and maintaining accreditations for classified systems and networks. Classified Systems & Networks range in complexity and size to include multi-platform computing (Linux, Windows, VMWare), virtual environments, and mobile systems. Extensive experience with eMASS, NISPOM Chapter 8, DCSA DAAPM, SCAP and DISA STIGs. Assemble and maintain Risk Management Framework (RMF) security plan accreditation packages for various government agencies. May be required to manage work distribution to Information Systems Security Officers (ISSO).
Responsibilities
- Develop and maintain a formal Information Systems (IS) security program and policies for their assigned area of responsibility
- Provide technical and procedural IS Security advice to government and Internal teams
- Understand, implement, and enforce the security policies and processes that are required by: the NISPOM, DCSA DAAPM, System Security Plans (SSPs), and NIST Security Controls.
- Coordinate with Facility Security Officer (FSO) on approval of External Information Systems (e.g. guest systems, interconnected system with another organization)
- Oversee ISSO under their purview to ensure they follow established IS policies and procedures
- Assume ISSO responsibilities in the absence of the ISSO; maintain required IA certifications
- Understand, implement, and enforce security policies and processes to maintain the with respect to: Removable Media Creation, Trusted Download, Safeguarding Classified Information, Classified Markings, Wireless Devices, and relevant System Security Plans (SSPs)
- Perform Systems Administration for Linux/Windows operating systems
- Serve as the lead for security configurations and interact with Government Approving Authorities for all inspections of these systems
- Utilize a variety of accredited security software tools to conduct vulnerability assessments, continuous monitoring scans, and those employed to maintain OS configurations
- Ensure all ISSO & Users of classified systems receive the necessary technical and security training (e.g., operating system, networking, security management) to carry out their duties
- Coordinate IS security inspections, tests, and reviews
- Ensure development and implementation of an effective IS security education, training, and awareness program
- Ensure policies and procedures for authorizing the use of hardware/software on an IS are followed. Any additions, changes or modifications to hardware, software, or firmware must be coordinated with the appropriate authorization prior to the addition, change or modification
- Maintain a working knowledge of system functions, security policies, technical security safeguards, and operational security measures
- Working experience with High Assurance Internet Protocol Encryptors/TACLANE
- Analyze security audits for non-standard events and media write control logs
- Assist in investigations involving anomalies to include support to Insider Threat Working Group
- Validate systems & networks are patched in accordance with SSP and Continuous Monitoring activities
- Maintain and modify accreditation packages
- Prior experience with eMASS.
- Assist with administrative processes related to User Accounts, Data Transfer Agents (DTA) and Trusted Downloads (TD)
- Alarm testing, maintaining door and safe combinations, facility keys, document control, processing visit requests, coordinating logistics for classified meetings and conferences
- Available to respond to alarms and emergencies after hours
- Provide initial security briefings, debriefings, foreign travel, and related security training
- Assist with COMSEC inventory and documentation updates to ensure 100% accountability with NSA
- Review prime and subcontractor DD254’s
- Assist with self-inspections, random searches and security violation reports
- Submit visit requests for all outbound visits for employees and subcontractors
- Knowledge of Networking protocols as well as Cybersecurity best practices.
Qualifications
Basic Qualifications (Required Skills & Experience):
- Bachelor’s degree in an IT-related or similar relevant field is required or equivalent combination of education, training, and experience
- 5 to 8 years of experience in a similar systems security role or experience in related IT or systems security disciplines is highly preferred.
- Demonstrated experience with Risk Management Framework
- Understanding the technical configurations of Windows and other operating systems is desirable.
- Strong Linux operating system experience.
- Understand Windows and Linux event logs.
- Knowledge of compliance checking tools preferred.
- Excellent customer service and organization skills, including good interpersonal skills and the ability to communicate effectively with all levels of employees.
- 8570 Information Assurance Manager (IAM) level III (CISSP or equivalent).
- Top Secret Clearance is required for this position.
- Successful completion of a criminal background check is required.
Other Qualifications & Desired Competencies:
- Able to excel in a fast-paced, deadline-driven environment, where small teams share a broad variety of duties
- Displays strong initiative and drive to accomplish goals and meet company objectives
- Takes ownership and responsibility for current and past work products
- Is committed to learning from mistakes and driven to improve and enhance performance of oneself, others, and the company
- Focuses on teamwork and puts the success of the team above one's own interests
Physical Demands
- Ability to work in an office classified environment (Constant)
- Required to sit and stand for long periods; talk, hear, and use hands and fingers to operate a computer and telephone keyboard (Frequent)
Equal Opportunity/Affirmative Action
We are committed to hiring and retaining a diverse workforce. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, sex, sexual orientation, gender identity or expression, marital status, age, national origin, veteran status, disability status, or any other protected class. EEO/AA/MFDV
Information collected and processed as part of your Columbus Careers profile, and any job applications you choose to submit is subject to Columbus' Applicant and Candidate Privacy Policy.