Information Systems Security Manager Location:Petaluma, CA, USA
MONROVIA, CA
Job Description:
Qualifications â?¢ Extensive experience with eM â?¢ Bachelorâ??s degree in an IT-related or similar relevant field is required or equivalent combination of education, training, and experience â?¢ CISSP or similar DoD 8570 IAM III Baseline Certification â?¢ Demonstrated experience with Risk Management Framework â?¢ Excellent customer service and organization skills, including good interpersonal skills and the ability to communicate effectively with all levels of employees â?¢ Successful completion of a criminal background check is required â?¢ Ability to work in an office classified environment (Constant) â?¢ Required to sit and stand for long periods; talk, hear, and use hands and fingers to operate a computer and telephone keyboard (Frequent) â?¢ This position requires access to information that is subject to compliance with the International Traffic Arms Regulations (??ITAR?) and/or the Export Administration Regulations (â??EARâ?) | Responsibilities â?¢ The Information Systems Security Manager (ISSM) provides information systems security support for DoD and Non-DoD classified systems and networks â?¢ Standing up and maintaining accreditations for classified systems and networks â?¢ Assemble and maintain Risk Management Framework (RMF) security plan accreditation packages for various government agencies â?¢ Provide technical and procedural IS Security advice to government and Internal teams â?¢ Develop and maintain a formal Information Systems (IS) security program and policies for their assigned area of responsibility â?¢ Coordinate with Facility Security Officer (FSO) on approval of External Information Systems (e.g. guest systems, interconnected system with another organization) â?¢ Assume ISSO responsibilities in the absence of the ISSO; maintain required IA certifications â?¢ Understand, implement, and enforce security policies and processes to maintain the with respect to: Removable Media Creation, Trusted Download, Safeguarding Classified Information, Classified Markings, Wireless Devices, and relevant System Security Plans (SSPs) â?¢ Ensure policies and procedures for authorizing the use of hardware/software on an IS are followed â?¢ Any additions, changes or modifications to hardware, software, or firmware must be coordinated with the appropriate authorization prior to the addition, change or modification â?¢ Serve as the lead for security configurations and interact with Government Approving Authorities for all inspections of these systems â?¢ Utilize a variety of accredited security software tools to conduct vulnerability assessments, continuous monitoring scans, and those employed to maintain OS configurations â?¢ Ensure all ISSO & Users of classified systems receive the necessary technical and security training (e.g., operating system, networking, security management) to carry out their duties â?¢ Coordinate IS security inspections, tests, and reviews â?¢ Ensure development and implementation of an effective IS security education, training, and awareness program â?¢ Analyze security audits for non-standard events and media write control logs â?¢ Assist in investigations involving anomalies to include support to Insider Threat Working Group â?¢ Validate systems & networks are patched in accordance with SSP and Continuous Monitoring activities â?¢ Alarm testing, maintaining door and safe combinations, facility keys, document control, processing visit requests, coordinating logistics for classified meetings and conferences â?¢ Available to respond to alarms and emergencies after hours â?¢ Provide initial security briefings, debriefings, foreign travel, and related security training â?¢ Assist with COMSEC inventory and documentation updates to ensure 100% accountability with NSA â?¢ Review prime and subcontractor DD254 |