Information System Security Manager (ISSM)

504 OMAHA NE, United States

Apply now Apply later

Information System Security Manager (ISSM)

Job Category: Information Technology

Time Type: Full time

Minimum Clearance Required to Start: TS/SCI

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Continental US

* * *

The Opportunity:
CACI is seeking an Information Systems Security Manager (ISSM) Cyber security professional to join our team supporting Department of Defense (DoD) clients in Omaha, NE. We are looking for a cyber professional with experience with the RMF process, NIST guidelines, performing risk and security assessments, and implementing security controls to reduce risk and achieve business objectives.

Responsibilities:

  • Manage security evaluations of information systems and networks and the remediation of security control weaknesses, prepares evaluation reports, and presents recommendations.

  • Conduct trade-off analyses of products for clients to determine optimal information security solutions.

  • Maintain a high level of familiarity with the major Federal Government Information Security policy guidance and directives.

  • Perform physical security tasks in accordance with the DoD 5200.1-R, Information Security Program Regulation, Administrative Instruction 26 Information Security Supplement to DoD 5200.1-R and Executive Order 12958 (as amended)-Provide ongoing security training to the client's on-site personnel.

  • Ensure the physical environment of the computers and their terminals are properly secured and meets all Operation Security (OPSEC) requirements.

  • Conduct structured walk-throughs based on Continuity of Operations Plans to ensure integrity of the network’s ability to reconstitute normal system functions including reinstallation of applications after a catastrophic failure.

  • Coordinate Assess and Authorize (A&A) requirements for the client's systems in accordance with DoD Instruction 8510.01 RMF.

  • Ensure each network or system is operated, maintained, and disposed of in accordance with DoD security policies and practices and System Security Plan.

  • Ensure application, system, environment, or organizational changes do not have an adverse effect on the security posture of the system security compliance and assessment.

  • Determine the extent a system change may affect the security posture of either the information system or the computing environment and ensuring the implementation of such change are documented in the Enterprise Mission Assurance Support Service (eMASS), System Security Plans, and site operating procedures.

  • Coordinate corrective actions for information assurance (IA) incidents identified by the customer’s CSSP and ensure all security-related incidents are documented and reported to the AO and AODR.

  • Capture incident metrics. Evaluate incidents for patterns to minimize future risk.

  • Monitor and validate vulnerability postures in Assured Compliance Assessment Solution (ACAS), and ensure all systems comply with DISA Security Technical Implementation Guidelines (STIG)s and with CSSP HBSS requirements.

  • Ensure and approve Plan of Action and Milestones (POA&M) are in place for vulnerabilities that cannot be remedied at the time of the finding.

Qualifications:

Required: 

  • A DoD TS/SCI level clearance.

  • Bachelors Degree in technical field and 8 years’ experience in a DoD environment.

  • Security+ certification or higher.

  • An understanding of the relationship between system controls and how they affect system security.

  • Experience using eMASS as a system certification and accreditation tracking tool.

  • A minimum of 3 years of practical experience transitioning to and operating within RMF in DoD applications.

  • Experience in initial risk assessment activities and ability to assist Authorizing Official risk determination with risk acceptance.

  • Operational knowledge of HP Fortify or similar system vulnerability scanning tools, to include reviewing results of custom software security scans.

  • Experience as a subject matter expert of the DoD STIGs and DoD policies pertaining to DoD IT.

  • Demonstrated experience developing accreditation documentation in a DoD environment.


Desired:

  • Experience with AWS.

-

________________________________________________________________________________________

What You Can Expect:

 

A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

 

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy. 

 

Your potential is limitless. So is ours.

Learn more about CACI here.

________________________________________________________________________________________

Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.

The proposed salary range for this position is:

$85,800 - $180,200

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Apply now Apply later
Job stats:  0  0  0
Category: Leadership Jobs

Tags: ACAS AWS Clearance Clearance Required Compliance DISA DoD eMASS NIST POA&M Risk assessment RMF Security assessment STIGs System Security Plan TS/SCI Vulnerabilities

Perks/benefits: Career development Competitive pay Flex vacation Startup environment Wellness

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.