Назад
Company hidden
5 дней назад

Information Systems Security Manager (ISSM)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Systems Security Manager (ISSM) (Cybersecurity): Managing information system authorization, compliance, and security posture across a portfolio of programs with an accent on RMF packages, NIST 800-53 controls, continuous monitoring, and classified environments. Focus on conducting vulnerability assessments, maintaining authorization documentation, implementing configuration management, and responding to incidents across SCIF, SAPF, and remote operations.

Location: Huntsville, Alabama, United States. Normal business hours are expected, with occasional after-hours support.

Company

hirify.global is an employee-owned technology company supporting challenging government and defense programs.

What you will do

  • Manage information system security and lifecycle activities across a portfolio of programs.
  • Scope systems for new programs and prepare Risk Management Framework authorization packages.
  • Maintain compliance, authorization documentation, and security posture throughout system operation and close-out.
  • Implement configuration management, continuous monitoring, vulnerability assessments, and security event log analysis.
  • Perform incident response and business continuity activities.
  • Manage systems operating in SCIF and SAPF environments and support remote location operations.

Requirements

  • 7+ years of experience implementing NISPOM Chapter 8, NIST, DAAG, ICD 503, and/or JSIG information system requirements.
  • Experience with RMF, Interconnected Security Agreements, Network Security Plans, and MOU/A documentation.
  • Active TS/SCI clearance required.
  • Strong knowledge of NIST 800-53 controls, DAAG, JSIG, and government security policies.
  • Experience with Active Directory, Group Policies, customer networks such as SIPRNet and JWICS, and MUSA, LAN, and WAN environments.
  • Experience with security and compliance tools including Splunk, ELK, Wireshark, Snort, SCAP, STIG Viewer, ACAS, and Nessus; DoD 8570.1M-compliant certification such as Security+, CISSP, or CISM.

Culture & Benefits

  • Employee ownership structure.
  • 401(k) and full health, dental, life, and vision insurance benefits.
  • Educational reimbursement and competitive compensation.
  • Work requiring customer focus, adaptability, independent problem solving, and collaboration with technical teams.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →