What are the responsibilities and job description for the Information Systems Security Manager (ISSM) position at Merito Group?
Location : Winston-Salem, NC, hybrid
Job Type : Contract
Reports To : Corporate Compliance Manager & Facility Security Officer
Pay : Based on experience
Job Summary :
We are seeking an experienced and dedicated Information Systems Security Manager (ISSM) to spearhead our organization's information security program. The ISSM will lead the development and implementation of security measures, ensuring compliance with industry regulations, frameworks, and company policies. The ideal candidate will bring expertise in cybersecurity, risk management, and information systems security compliance to protect the organization's critical assets.
Key Responsibilities :
- Lead the establishment and maintenance of classified networks and operating systems.
- Develop and maintain technical documentation and security policies for IT equipment within open storage areas.
- Determine technical Information Assurance (IA) requirements and conduct cyber risk assessments, including vulnerability analysis and implementation of mitigation solutions in alignment with RMF standards.
- Author and manage security documentation for system authorization, continuous monitoring, and information systems lifecycle management (e.g., Authorization to Operate (ATO), System Security Plan (SSP), Plans of Action and Milestones (POAM).
- Provide guidance and technical expertise in the creation of solutions for complex security problems, requiring deep knowledge of systems security.
- Ensure that security controls are implemented effectively and continuously throughout the information systems lifecycle.
- Utilize cybersecurity tools to provide ongoing security monitoring for infrastructure in accordance with Department of Defense (DoD) requirements.
- Perform system audits, vulnerability risk assessments, and investigations into security incidents or violations related to information assurance.
- Conduct regular training and awareness programs on cybersecurity best practices and risk mitigation strategies for all system users.
- Other duties as required.
Basic Qualifications :
Preferred Qualifications :