Information System Security Manager jobs in United States
cer-icon
Apply on Employer Site
company-logo

Leidos · 7 hours ago

Information System Security Manager

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. The Information Systems Security Manager will oversee DCSA-approved Collateral Information Systems and OSI-approved Information Systems, maintaining accreditation throughout the system lifecycle and managing information system security operations.

ComputerGovernmentInformation ServicesInformation TechnologyNational SecuritySoftware
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Develop and lead Information Security projects from conceptualization to full deployment and user acceptance
Create comprehensive training programs on information assurance, data security, cybersecurity best practices, and relevant policies and procedures
Design training materials, including manuals, operating procedures, and presentations, and assign online courses and other resources
Coordinate technical training on security tools, software, and technologies used within the organization to enhance the skills of IT staff and other relevant personnel
Develop and lead training on responding to security incidents, including reporting procedures, containment, eradication, recovery, and post-incident analysis
Implement and manage the Risk Management Framework (RMF) Continuous Monitoring process by utilizing an automated ticketing system, ensuring accurate tracking, monitoring, and reporting of security controls, vulnerabilities, and remediation efforts within the organization's information systems
Continuous monitoring, analysis, and response to Information System network and security events
Document compliance activities in accordance with the governing authority-approved authorization package
Support the maintenance of system accreditation packages, including SSPs, CONOPS, security control evidence, POA&Ms, and continuous monitoring documentation
Develop procedures and documentation to ensure compliance with Configuration Management (CM) for security-relevant Information System (IS) software, hardware, and firmware
Facilitate CCB meetings; assess security impacts of proposed changes; document change requests, approvals, and implementation evidence
Ensures systems are operated, maintained, and disposed of in accordance with the governing authority-approved authorization package and customer directives
Evaluate proposed changes or additions to the information system and advise senior site leadership of the security relevance
Develop and conduct cybersecurity education and training, mentor other information assurance professionals in cybersecurity and secure software development practices
Participate in internal/external security audits/assessments/inspections coordinating corrective actions as necessary; participate in the risk management process; perform risk assessments and Continuous Monitoring
Lead investigations of computer security violations and incidents, report as necessary to the Facility Security and Senior Program Managers
Ensure proper protection and/or corrective measures have been taken when an incident or vulnerability has been discovered
Working with the Facility Security Officer (FSO), developing, implementing, and managing a formal Information Security/Information Systems Security Program
Develop, implement, and enforce information security policies and procedures
Author, review, and update IS Authorization documentation (Body of Evidence) to support IS Assessment and Authorization activities

Qualification

Information AssuranceRisk Management FrameworkCybersecurity ManagementCompliance Scanning ToolsMicrosoft WindowsLinux Operating SystemsCISSPDocumentation ManagementTeam CollaborationVerbal CommunicationWritten Communication

Required

An active DoD Secret clearance is required for consideration
Bachelor's degree in an IT-related subject matter area from an accredited college or university and 8+ years of experience in being in an operational cyber security-specific role (e.g., information system security manager, information system security officer, cyber security specialist) or have 12+ years of experience in an IT related position with at least 10 of those years in an operational cyber security specific role
At least 5 years of IA Cyber management experience
Detailed understanding of the Risk Management Framework (RMF), National Institute of Standards and Technology (NIST), and Committee on National Security Systems (CNSS) cyber security requirements and guidance, cybersecurity-related risk management techniques
Working knowledge in maintaining compliance with National Industrial Security Program Operating Manual (NISPOM) and DCSA Assessment and Authorization Process Manual (DAAPM) / DCSA Assessment and Authorization Guide (DAAG) security requirements for classified information systems
Familiarity with network technologies (LAN & WAN) and best practices within a classified environment, including crypto and key management
Working knowledge of Microsoft Windows (workstation & server) and Linux operating systems in a secure network environment
Experience with compliance and vulnerability scanning tools (e.g., Tenable, Splunk, ACAS, STIG Viewer)
Experience with workflow, documentation, and configuration/change management tools (e.g., JIRA, Confluence, eMASS)
Must be able to work in a constantly changing regulatory environment with short-, mid-and long-term timelines for remediating any non-compliance
Must work well within a team environment and adapt quickly to change
Excellent verbal and written communication skills
CISSP or comparable
Past or current ISSM/ISSO experience

Preferred

Current DoD Top Secret clearance
Knowledge of OSI/SAP operations
Proficient in using Microsoft Windows and Linux operating systems and cloud computing
Experience with developing policies, procedures, and guidance, including providing artifacts for the RMF process

Benefits

Health and Wellness programs
Income Protection
Paid Leave
Retirement

Company

Leidos is a Fortune 500® innovation company rapidly addressing the world’s most vexing challenges in national security and health.

Funding

Current Stage
Public Company
Total Funding
unknown
2025-02-20Post Ipo Debt
2013-09-17IPO

Leadership Team

leader-logo
James Carlini
Chief Technology Officer
linkedin
leader-logo
Theodore Tanner
Chief Technology Officer
linkedin
Company data provided by crunchbase