Full-Time

Information Systems Security Manager

Posted on 11/21/2024

Parsons

Parsons

Compensation Overview

$126.6k - $227.9kAnnually

Senior, Expert

Columbia, MD, USA

Overall responsibility for Information Assurance programs in Central Maryland.

US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Requirements
  • Bachelor’s degree and typically 10+ years of related professional experience. An advanced degree may be preferred at this level. Non-degreed an additional 4 years of related experience.
  • Experience managing technical teams
  • Experienced at requirements gathering and developing technical solutions
  • Experience with the Intelligence Community (IC) and DoD collateral.
  • Security standards:
  • ICD 503
  • NISPOM
  • NIST 800-53
  • Active TS/SCI with a polygraph
  • DoD 8570 compliant IAM Level III certification is required
  • Significant experience developing and maintaining SSPs;
  • Knowledge and familiarity with XACTA, LatteART, scanning tools (e.g. ScanBoy, Nessus Security Center), NIST RMF, and STE/STN
  • Experience with Project Planning and Project Management
Responsibilities
  • Overall responsibility for Information Assurance programs in our Central Maryland region
  • Collaborates with program leadership and Security officers to establish agreed scope/requirements and deliverables, set priorities, develop schedules, and provide status updates on progress and operations
  • Manage team of System Administrators and ISSOs to build and maintain customer environments
  • Consults as necessary to develop and assimilate long-range plans and requirements.
  • Provides advice and counsel to the organization in areas of expertise
  • Performs assessments of information systems including passive evaluations/compliance audits and active evaluations/vulnerability assessments
  • Establishes strict program control processes to ensure mitigation of risks and to support obtaining assessment and authorization of systems (ATO, IATT) which includes support for process, analysis, coordination, security certification test, as well as security documentation, investigations, software research, hardware introduction and release, emerging technology research, inspections, and periodic audits
  • Assists in the implementation of required government policy (NISPOM, ICD 503, RMF), and makes recommendations on process tailoring
  • Performs analyses to validate established security requirements and recommends additional controls and safeguards where required
  • Supports the formal Security Test & Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports
  • Trains and mentors team members on government policies to ensure understanding of essential tasks
  • Contributes to the development of innovative principles and ideas
  • Works on unusually complex problems to identify creative solutions
  • Perform other responsibilities as needed

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A