What are the responsibilities and job description for the Job: System Security Manager (ISSM) position at Contract Specialties Group?
The Information System Security Manager (ISSM) will support the design, development, evaluation and accreditation of information systems used to process classified information and be responsible for daily supervision of Stellant PST Information Systems (IS) security plans.
Major Responsibilities / Activities Statements :
- Perform duties as subject matter expert to address requirements listed in National Industrial Security Program Operating Manual (NISPOM), Intelligence Community Directives (ICD) and the Office of Designated Approving Authority (ODAA) Process Manual.
- Develop and review required System Security Plans (SSP, MSSP, NSP) and policy in accordance with the NISPOM, ICD, ODAA Process Manual and other security directives as required.
- Schedule, perform and maintain records of required Information Security auditing, patching, maintenance, software / hardware changes, and scanning based on evolving threat / vulnerabilities and customer compliance requirements.
- Build, configure and maintain Microsoft Windows systems in compliance with DoD cyber security requirements.
- Perform periodic self-inspections, tests and reviews of the Information Security program to ensure that systems are operating as authorized / accredited and that conditions have not changed. Ensure corrective actions are taken for identified findings and vulnerabilities.
- Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures.
- Develop and conduct test procedures for verification of Certification & Accreditation (C&A), Authorization and Accreditation (A&A), Risk Management Framework (RMF) safeguards to meet customer requirements.
- Remain current on information assurance regulations and contract security requirements.
- Coordinate with Facility Security Officer (FSO) and Contractor Program Security Officers (CPSO) to define, implement and maintain information security policies, strategies, and procedures.
- Create and conduct AIS Security briefings.
- Other duties as assigned.
Required Experience :
o Security and Risk Management
Do you have the following skills, experience and drive to succeed in this role Find out below.
o Asset Security
o Security Engineering
o Communication and Network Security
o Identity and Access Management
o Security Assessment and Testing
o Security Operations
o Software Development Security
Job Requirements :
Educational Requirements :
J-18808-Ljbffr