Unknown Company

(602) Information Systems Security Manager III

philadelphia, pa • Posted 1 weeks ago
Onsite Contract General

(602) Information Systems Security Manager IIIPhiladelphia, PACompany SummaryArlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions.

Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future.Position DescriptionThe Information System Security Manager (ISSM) III will support Naval Surface Warfare Center Philadelphia Division (NSWCPD) as a contractor through Arlo Solutions, serving as a key cybersecurity leader for NSWCPD Code 104. This key personnel position is responsible for overseeing and managing information security program implementation within the organization, supporting DoD Information Assessment and Authorization (A&A) process and Risk Management Framework (RMF) services, and ensuring compliance with all NAVSEA, DON, and DoD cybersecurity policies. Location: (Onsite) Philadelphia, PA Clearance: Active SecretResponsibilities and/or Success FactorsCybersecurity Program ManagementSupport IT security goals and objectives to reduce overall organizational riskCommunicate the value of IT security throughout all levels of organization stakeholdersCoordinate with various levels of the organization to oversee information security program implementationManage cyber strategy, personnel, infrastructure, policy enforcement, emergency planning, security awareness, and other resourcesAssist with facilitating communication between all RMF stakeholders throughout the RMF process Security Assessment and AuthorizationAssist with the collection of data needed to meet system cybersecurity reporting requirementsAssist with security improvement actions as they are evaluated, validated, and implementedParticipate in information security risk assessments during the Security A&A processAssist with identifying security requirements specific to IT systems in all phases of the system life cycleCoordinate with programs to resolve findings identified during internal and external review processes Compliance and Risk ManagementAssist with cybersecurity inspections, tests, and reviews for the network environmentAssist with identifying alternative information security strategies to address organizational security objectivesInterpret patterns of noncompliance to determine their impact on risk levels and overall effectiveness of the enterprise's cybersecurity programTrack audit findings and recommendations to ensure appropriate mitigation actions are takenMonitor systems for upcoming authorization conditions/stipulations, upcoming or past due POA&M items, and SLCM activities Documentation and Reporting •Develop findings reports and recommended corrective actions for identified deficienciesReport system compliance in DON Application and Database Management System (DADMS), Department of Defense Information Technology Portfolio Repository – Department of the Navy (DITPR-DON), and Vulnerability Remediation Asset Manager (VRAM)Assist with Quality Assurance (QA) reviews for RMF package submissions in accordance with NSWCPD and NAVSEA 03 SOPEnsure successful implementation and functionality of security requirements and appropriate IT policies and procedures consistent with the organization's mission and goalsTrack and respond to Cybersecurity data calls per Government guidanceMinimum Qualifications Including CertificatesMust be a U.S.

CitizenActive Secret security clearanceMaster's degree in computer science, information technology, or an equivalent science, technology, engineering & mathematics (STEM) degree from an accredited college or universityEight (8) years of experience coordinating with various levels of an organization to oversee and manage information security program implementationExperience managing cyber strategy, personnel, infrastructure, policy enforcement, emergency planning, security awareness, and/or other resourcesMust possess one of the following certifications: CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO, or HCISPPIAM-II certification levelExperience with DoD Information Assessment and Authorization (A&A) process and Risk Management Framework (RMF)Desired QualificationsExperience with enterprise security technologies and tools including eMASS and VRAMKnowledge of NIST Special Publications and DoD cybersecurity instructionsExperience with Navy and DoD organizational structures and policiesFamiliarity with NAVSEA cybersecurity requirements and proceduresExperience with vulnerability management and continuous monitoringDemonstrated leadership abilities and strong communication skillsAAP StatementWe are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.

Back to Job Search