3 days old

Information Systems Security Manager

Bellevue, NE 68005
Apply Now
Apply on the Company Site
Business Group Highlights

Defense

The Defense group supports the Department of Defense (DoD) mission to keep our homeland and its citizens safe. We provide solutions to improve the Nation's defense by providing software, systems engineering, IT, training and logistics and fleet management solutions.


Responsibilities

This position will serve as the principal advisor on all matters, technical and otherwise, involving the security of classified information systems under their purview. This person will perform assessments of systems and networks within the networking environment or enclave and will identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations such as compliance audits and active evaluations such as vulnerability assessments. Establishes strict program control processes to ensure mitigation of risks and supports obtaining certification and accreditation of systems. Includes support of process, analysis, coordination, security certification test, security documentation, as well as investigations, software research, hardware introduction and release, emerging technology research inspections and periodic audits. Ensures the implementation of the Risk Management Framework (RMF), through the required government policy, make recommendations on process tailoring, participate in and document process activities. Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards. Support the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results and preparation of required reports. Document the results of Assessment and Authorization activities and technical or coordination activity and prepare the System Security Plans and update the Plan of Actions and Milestones POA&M. Periodically conduct a complete review of each system's audits and monitor corrective actions until all actions are closed. Develops and maintains a formal IS security program and policies for classified systems under their purview. Manage all Risk Management Framework (RMF) activities in accordance applicable directives Manage all IA related support functions including installation, configuration, troubleshooting, assistance, and/or training, in response to customer requirements for the NE. Provide oversight and guidance of IA personnel performing system analysis looking for patterns of non-compliance; ensure appropriate administrative or programmatic actions which minimize security risks and insider threats. Manage account processes, network rights, and access to Computing Environment (CE), network environment systems and equipment. Manage the remediation/mitigation of security violations to determine if the network environment has been breached, assess the impact, and preserve the evidence. Provide oversight and guidance ensuring systems are properly configured, optimized, and tested ensuring all policy and technical requirements are met. Manage all IA related processes and procedures in the development of and implementation of access control lists on routers, firewalls, CE, printing devices, and other network devices. Assess the performance of IA security controls within the environment. Develop and implement and effective IS security education, training, and awareness program. Manage, maintain, and execute the IS continuous monitoring plan. Identify IA vulnerabilities resulting from a departure from the implementation plan or that were not apparent during testing. Perform control validation and remediation validation of network servers, routers, and switches to ensure they comply with security policy, procedures, and technical requirements. Evaluate potential IA security risk and take appropriate corrective and recovery action. Ensure that hardware, software, data and facility resources are archived, sanitized, or disposed of in a manner consistent with system security plans and requirements. Provide oversight and guidance of IA personnel implementing applicable patching oversight and validation of all security related updates including IAVAs, IAVBs, TAs, for their NE. Adhere to IS security laws and regulations to support functional operations Implement response actions in reactions to security incidents. Support Security Test and Evaluation (Part of the RMF Process).


Qualifications

Bachelors degree in science with 9 years of relevant experience; 7 years of relevant experience with a master's degree. An equivalent combination of experience/education will be considered. DoD 8570 - IAM Level III Certification (CAP, GSLC, CISM, CISSP, CASP CE). Current Active Top Secret Clearance, SCI eligible. Bachelor's or master's degree with a technical emphasis (e.g. Information Systems, Information Technology, Computer Science, EE). MCSE/RHSA and/or System Administration experience. Experience with security hardening, assessment and reporting tools (eMASS, SCAP, ACAS, HBSS, Nessus, XACTA). Skills Excellent verbal and written communication skills, influencing skills and ability to work effectively with a team.
Skills
Excellent verbal and written communication skills, influencing skills and ability to work effectively with a team.


About Perspecta

What matters to our nation, is what matters to us. At Perspecta, everything we do, from conducting innovative research to cultivating strong relationships, supports one imperative: ensuring that your work succeeds. Our company was formed to bring a broad array of capabilities to all parts of the public sectorfrom investigative services and IT strategy to systems work and next-generation engineering.

Our promise is simple: never stop solving our nations most complex challenges. And with a workforce of approximately 14,000, more than 48 percent of which is cleared, we have been trusted to do just that, as a partner of choice across the entire sector.

Perspecta is anAA/EEOEmployer - Minorities/Women/Veterans/Disabled and other protected categories.

As a government contractor, Perspecta abides by the following provision

Pay Transparency Nondiscrimination Provision

The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of the other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractors legal duty to furnish information. 41 CFR 60-1.35(c).

Industry

  • Information Technology
Posted: 2020-10-19 Expires: 2020-11-19

With offerings in mission services, digital transformation and enterprise operations, our team of 14,000 engineers, analysts, investigators and architects work tirelessly to create innovative solutions. We have the expertise and experience not only to devise solutions, but to execute on them successfully.

Sponsored by:
ADP Logo

Before you go...

Our free job seeker tools include alerts for new jobs, saving your favorites, optimized job matching, and more! Just enter your email below.

Share this job:

Information Systems Security Manager

Perspecta
Bellevue, NE 68005

Join us to start saving your Favorite Jobs!

Sign In Create Account
Powered ByCareerCast