Full-Time

Cybersecurity Information System Security Manager

Arlo Solutions

Arlo Solutions

No salary listed

No H1B Sponsorship

Orlando, FL, USA

In Person

On-site in Orlando, Florida; active Top Secret clearance eligibility preferred.

US Top Secret Clearance Required

Bachelor's

Category
IT & Security (1)
Required Skills
Vulnerability Analysis

Get referred to Arlo Solutions

See people who can refer or advise you

Requirements
  • Active Top Secret Security Clearance (SCI eligibility preferred)
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related field (or equivalent experience)
  • Minimum 8 years supporting DoD cybersecurity program
  • Minimum 5 years supporting DoD RMF and Assessment & Authorization activities
  • Experience supporting U.S. Army or other DoD cybersecurity programs
  • Experience managing multiple RMF authorization packages simultaneously
  • Excellent written, verbal, and presentation skills
  • Candidates should meet applicable DoD 8140 Cyber Workforce Qualification requirements
Responsibilities
  • Serve as the Information System Security Manager (ISSM) for 3–7 assigned Army Information Systems.
  • Lead all phases of the DoD Risk Management Framework (RMF) lifecycle in accordance with NETCOM RMF guidance.
  • Develop, maintain, and manage Authorization Packages, including SSPs, POA&Ms, Security Categorization, Continuous Monitoring documentation, and supporting Body of Evidence.
  • Coordinate Authorization to Operate (ATO), Interim Authorization to Test (IATT), Authorization to Operate with Conditions (ATO-C), and reauthorization activities.
  • Manage Continuous Monitoring (ConMon) activities, vulnerability management, STIG compliance, ACAS review, and cybersecurity reporting.
  • Conduct cybersecurity risk assessments and recommend mitigation strategies supporting Authorizing Official (AO) risk decisions.
  • Coordinate Security Control Assessments (SCA) and remediation of assessment findings.
  • Review system architecture, authorization boundaries, network diagrams, data flows, and system changes to ensure continued compliance.
  • Manage Plans of Action & Milestones (POA&M) and track corrective actions through closure.
  • Provide cybersecurity guidance to system owners, engineers, administrators, and Government leadership.
  • Prepare and brief cybersecurity status, risks, and authorization recommendations to senior Government stakeholders.
  • Support implementation of Zero Trust Architecture (ZTA), cloud security, and secure system engineering principles where applicable.
Desired Qualifications
  • CISSP
  • Certified Information Security Manager (CISM)
  • CompTIA Certified Access Security Professional Actually CASP+ stands for CompTIA Advanced Security Practitioner; their item is
  • CompTIA CASP+
  • Certified Cloud Security Professional (CCSP)
  • Department of Defense Risk Management Framework (RMF)
  • U.S. Army RMF implementation
  • NETCOM RMF Business Rules and authorization processes
  • Continuous Monitoring (ConMon)
  • Vulnerability Management
  • Security Control implementation
  • Security Assessments and Authorization (A&A)
  • System Security Plans (SSP)
  • POA&M management
  • Security documentation development
  • Cybersecurity governance and compliance
  • eMASS, Xacta, or equivalent GRC tools
  • Microsoft Windows, Linux, virtualization, and enterprise networking
  • Cloud environments supporting FedRAMP and DoD Cloud SRG (preferred)
  • Active Top Secret Clearance (SCI eligibility preferred)

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

Get referred to Arlo Solutions

See people who can refer or advise you