Information System Security ManagerQuantech Services is seeking an experienced Information System Security Manager to join our team in Fort Meade, MD. The ideal candidate is a seasoned information security professional with proven expertise in the Intelligence Community and Department of Defense security operations and compliance.Specifically, this position will provide management support for a program, organization, system, or enclave's Information Assurance program. Provide management support for proposing, coordinating, implementing, and enforcing Information System Security policies, standards, and methodologies. Manage operational security posture for an Information System or program to ensure Information System Security policies, standards, and procedures are established and followed. Provide management of security aspects of the Information System and perform day-to-day security operations of the system.
Assist ISSEs and ISSOs with evaluating security solutions to ensure they meet security requirements for processing classified information. Manage the performance of vulnerability/risk assessment analysis to support security authorization. Provide management support to configuration management (CM) for information system security software, hardware, and firmware. Manage changes to systems and assess the security impact of those changes. Manage the process and preparation of documentation reviews to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements Traceability Matrices (SRTMs).
Support security authorization activities in compliance with NSA/CSS Risk Management Framework (RMF) process and DoD Information Assurance Certification and Accreditation Process (DIACAP).Job DutiesPerform requirements gathering and analysis of said requirementsPerform functional analysis to identify required tasks and their interrelationshipsIdentify and map current security infrastructure as a foundation to define future programsCollaborate with engineers on systems integration effortsPlan and coordinate implementation of IT security programs and policiesAnalyze user needs to determine functional and cross-functional requirementsGather and organize technical information about an organization's mission goals and needs, existing security products, and ongoing programs in the multi-level security arenaPerform functional allocation and identify resources required for each taskPerform risk analysis that also includes risk assessmentEnable Government planning, coordination, and oversight of organizational implementation of information security servicesEnable design and implementation of future IT systems and related securityAssist Program Managers with administrative and technical oversight with specific program's within the portfolioFacilitate issue resolution through integrated product teams and Technical Exchange Meetings (TEM)Provide support for a program, organization, system, or enclave's information assurance programProvide daily oversight and direction to contractor ISSOsOversee efforts of engineering staff to design, develop, engineer and implement solutions to security requirementsInteract with customers, IT staff, and high-level corporate officers to define and achieve required Cybersecurity objectivesServe as the Program's ISSMEnable the Government with the development and implementation of NSA IT security servicesCollaborate with engineers on systems integration and life cycle requirementsAdvise Program Managers on administrative and technical oversight matters in regards to portfolio programsEnable Program Managers with administrative and technical oversight assistance with specific program's within the portfolioEnable design and implementation of future IT systems and related security.Please see standard Work, Physical and Mental Requirements for all Quantech roles. Work Environment This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, scanners, filing cabinets and fax machines. Physical Demands This is largely a sedentary role mostly sitting; however, some filing may be required. This would require the ability to move files, or boxes with file data, open filing cabinets and bend or stand as necessary, ability to lift up to 40lbs.
Mental Demands: Reading; communicate effectively (verbal and written); maintain emotional control and professionalism.Education:Bachelor's degree in Computer Science, Cyber Security or IT Engineering is required. In lieu of a Bachelor's degree, an additional four (4) years of work-related experience may be substituted.Clearance:Active TS/SCI clearance w/a FS polygraph.Certifications:DoD 8570 compliance with IAM III is required- CISM, CISSP (or Associate), GSLC, CCISOExperience:Twelve (12) years of work-related experience in the field of security authorization is required.Experience in the following areas is required: knowledge of current security tools, hardware/software security implementation; communication protocols; or encryption tools and techniques.Familiarity with commercial security products, security authorization techniques, security incident management, and PKI and authorization services.