Information System Security Manager providing cybersecurity and RMF support at KBR. Collaborating with military and contractor personnel to lead security and compliance activities.
Responsibilities
Deliver documentation to include: Executive level briefings, Assessments, Self-Assessments, RMF packages, and supporting RMF documentation
Review Cybersecurity tool reports, ACAS, HBSS, for the purposes of reporting and compliance
Software Certification package development
Work directly with the TRMC SISO on all TRMC RMF packages and ATO Status updates
Support security engineering projects and solution delivery.
Lead security audit and compliance activities for each system responsible for
Responsible for auditing all artifacts provided in each RMF package to determine system readiness for ATO packet submissions.
Provide recommendations to the SISO, PM, and AO regarding remediation and mitigation of identified vulnerabilities on test reports and plan of action and milestones (POA&Ms).
Monitor system status updates and report to senior leadership. Includes monthly executive reports, vulnerability reports, JFHQ DODIN reporting and briefing.
Monthly executive briefing to SISO, PM on security metrics
Interface with PMs and SISO on issues needing input/concurrence
Draft and present RMF deliverables to senior leadership
Attending Executive Program Reviews as the ISSM
Work with outside agencies on Memorandums of Understanding / Interconnection Service Agreements, and other senior level agreements etc.
Work directly with a distributed team to reduce travel
Travel 25% of time
Requirements
A minimum of 2 years of Information Technology Information Assurance, or Cyber Security engineering experience.
A minimum of 2 years of experience in conducting security assessments by reviewing security controls with the ISSO/ISSM and guide programs through RMF process.
Bachelor’s Degree in Engineering, Computer Science, or 8 years IT field experience in lieu of degree; Master’s Degree preferred
Proven expertise with assessing security controls in accordance with NIST Special Publications (i.e.: NIST 800 Series)
Proven in-depth knowledge of Cybersecurity principles technologies, and processes.
Experience with NIST 800-53, Security Development
Familiarity with performing assessments for Unclassified and Classified environments
Ability to adapt to process changes
Ability to interface with senior leadership
Ability to support high visibility or high priority projects
Possession of excellent oral and written communication skills.
Senior Information Security Engineer at Wells Fargo investigating insider threats and strengthening cybersecurity measures. Conducting advanced investigations and collaborating with cyber teams to mitigate risks.
Staff Product Manager overseeing enterprise security product strategy for Tenable. Collaborating with various teams to deliver customer - focused solutions and product features.
Program Security Representative providing multi - discipline security support for Special Access Programs. Ensuring compliance, developing policies, and conducting security assessments in a military context.
Information Systems Security Officer managing operational security posture for information systems at GDIT. Collaborating closely with ISSM and ISO, handling security aspects, and ensuring compliance with security standards.
Senior Cyber Security Project Manager at Airbus Protect managing medium complexity projects in Cyber Security Consulting. Focusing on project leadership and team management in diverse client settings.
Security Architect responsible for designing cloud security architectures for leading brands. Ensuring compliance and guiding incident response strategies in AWS environments.
Senior Security Consultant for ISMS Management at Bundesdruckerei GmbH in Berlin. Responsible for security analysis, management, and advisory roles on cybersecurity issues.
IT - Systemadministrator managing Video Surveillance and Alarm Systems at Mühlbauer. Supporting technical solutions for multimedia and conference systems with project involvement and ticket handling.
AI Application Security Architect in charge of driving secure development lifecycle for AI systems across multi - cloud environments and hybrid platforms.
Security Project Manager responsible for managing cyber - security project delivery and ensuring quality execution in Bulgaria. Requires excellent communication skills and fluency in English.