Lead Information Systems Security Manager at Booz Allen managing Risk Management Framework authorization and continuous monitoring of IT systems in compliance with security policies.
Responsibilities
Serve as a Lead Information Systems Security Manager (ISSM)
Responsible for Risk Management Framework (RMF) authorization of assigned Information Systems (IS)
Ensure systems are operated, maintained, and disposed of according to security policies
Conduct periodic assessments of authorized systems
Address corrective actions for identified findings and vulnerabilities
Perform continuous monitoring activities for authorized systems
Analyze collected audit records and system vulnerability management cycle
Monitor incident recovery processes
Requirements
Experience with NIST 800-53, ICD 503, and RMF practices
Security Technical Implementation Guides (STIGs)
expertise in computer networking and operating systems
development of Assessment and Authorization (A&A) artifacts
assess, document test or analysis data to show cybersecurity compliance
set up auditing dashboards and review results in SPLUNK
conduct risk analysis
review ACAS, CVEs, plugins, CWEs
collaborate with System Administrators to mitigate identified vulnerabilities or author Plans of Action and Milestones (PO&AM)
knowledge of National Industrial Security Program Operating Manual (NISPOM)
knowledge of Joint Special Access Program Implementation Guide (JSIG)
knowledge of Intelligence Community Directives (ICD) 503 and 703
knowledge of RMF process and associated NIST publications
knowledge of DD 254 requirements from an information security perspective
ability to configure and run security scans with Tenable products
TS/SCI clearance with a polygraph
HS diploma or GED
IAM Level III Certification (including CISSP, GSLC, or CISM Certification)
Benefits
health, life, disability, financial, and retirement benefits
Senior Security Engineer establishing and maintaining cybersecurity measures for a financial services company. Responsible for leading security event responses, documentation of policies, and training.
Senior Corporate Security Investigator at Duke Energy conducting complex investigations in support of Ethics, HR, Legal, Nuclear, and Enterprise Security with field mobility.
AI Enterprise Security Architect focusing on AI Security architectural standards and integrating security measures into AI development lifecycle. Leading a global team in securing AI systems.
Cloud Security Engineer supporting and securing client environments across AWS and hybrid infrastructures. Collaborating with Cloud Operations to monitor, investigate, and remediate security events.
Account Cybersecurity Lead providing cybersecurity governance and oversight at Capgemini. Leading client relationships, security management systems, and risk compliance oversight.
Cybersecurity Risk Coordinator at Globo ensuring operational security across digital content. Analyzing risks and developing strategies to enhance business resilience.
Senior SAP Security Specialist managing SAP Security responsibilities and projects. Collaborating on security tools and conducting workshops in Hamburg.
Sales Account Manager for Cyber Security and Awareness role at HvS - Consulting GmbH. Providing holistic consulting on Cyber Security services and managing client relationships.
Security Engineer at PRC - Saltillo safeguarding IT infrastructure from cyber threats. Collaborating with IT teams to design and maintain security controls in a hybrid work environment.
Information Security Manager leading cyber security initiatives at NVISO, enhancing clients’ security posture and managing a team of consultants in Germany.