Logo Leidos

Information System Security Manager

Job

  • Level
    Erfahren
  • Job Feld
    Security, IT
  • Anstellung
    Vollzeit
  • Vertragsart
    Unbefristetes Dienstverhältnis
  • Ort
    Stuttgart
  • Arbeitsmodell
    Onsite
  • Job Technologien

    Deine Rolle im Team

    o Apply continuous monitoring techniques to evaluate system security posture.

    o Compile information and support required for cyber evaluations, inspections, assessments, and reporting tasks, as directed, such as the Joint Staff Cybersecurity Scorecard.

    o Conduct reviews of information systems to ensure security compliance.

    o Coordinate with internal and external stakeholders to obtain and organize required documentation.

    o Develop A&A documentation for Government approval, as directed, IAW DoD and CCMD Policies

    o Develop CCMD cyber security policies for Government approval.

    o Ensure appropriate operational security posture is maintained.

    o Ensure emergent systems are compliant during engineering and integration, prior to transition into operations and maintenance.

    o Ensure required compliance reporting is published in the authoritative systems of record IAW DoD and CCMD Policies.

    o Evaluate and implement all applicable DoD orders and directives

    o Evaluate, from a security perspective, new, replacement, trial, or test equipment or software being brought into authorization boundaries.

    o If compliance cannot be met on any order or directive, provide a Plan of Action and Milestones (POA&M) to the Government for approval within the directed timelines.

    o Implement and support all phases of Risk Management Framework (RMF).

    o Maintain scanning results and develop vulnerability trend reports IAW DoD and CCMD procedures.

    o Manage and maintain the RMF Assessment and Authorization (A&A) program

    o Obtain, maintain, and manage A&A documentation for Cross-Domain Solutions for connection authorization

    o Obtain, maintain, and manage A&A documentation for External Systems (for example, Program-Managed Systems) for connection authorization via cybersecurity reciprocity.

    o Perform and document Risk Assessments of findings (for example, vulnerabilities, non-compliant areas) identified through Continuous Monitoring Activities. Recommend courses of action for addressing all findings.

    o Perform and maintain system registrations IAW DoD and CCMD Policy. These registrations include, but are not limited to, those in the Ports, Protocols, and Services Management (PPSM) database, Systems/Network Approval

    o Process (SNAP), DoD NIPR DMZ Whitelist, and DoD IT Portfolio Repository (DITPR).

    o Perform response actions to instances of other security incidents, for example, Unauthorized Disclosures of Classified Information (UDCI), Cross-Domain Violations, and Unauthorized Activity, as directed, IAW DoD and CCMD Procedures.

    o Perform Security Control Assessments of software and hardware being considered for the command's Approved Product List.

    o Perform technical writing to develop, update, organize, maintain, and track required RMF documentation. Examples include technical documents, templates, and support agreements, exceptions to policy, diagrams, and illustrations.

    o Track the implementation status of recommended/required actions derived from exercises and inspections, as directed.

    o Work with Designated Authorizing Official (DAO) to ensure systems obtain and maintain accreditation.

    Unsere Erwartungen an dich

    Ausbildung

    • Demonstrates knowledge of DoD IT RMF, USCYBERCOM, and JFHQ-DoDIN.

    Qualifikationen

    • Must hold current DOD 8570 IAM III certification (CISM, CISSP, GSLC, CCISO).
    • Able to work in dynamic fast paced environments that require team interaction and coordination of efforts.
    • Must hold an active DoD Top Secret Clearance and be eligible to obtain TS/SCI clearance.
    • IASAE III level Certification (CISSP-ISSAP or CISSP-ISSEP baseline certificates).
    • Additional certs: CCNA, RHCSA, Microsoft Azure Certification (Server Administration).
    • Proficiency with Microsoft SCCM and/or other automatic reporting tools.
    • Proficiency with PowerBI.

    Erfahrung

    • BA/BS + 6 years recent specialized, or a major cert +8 years recent specialized, or 12 years of recent specialized experience.
    • Experienced in interfacing with both client managers and system users.
    • Experience managing asset accuracy to Critical Success Factors (CSF).

    Job Standorte

    Map of company locations
    • Standort Stuttgart

      Standort Stuttgart

      Baden-Württemberg

      Deutschland

    Das ist dein Arbeitgeber

    Leidos

    Leidos

    Leidos ist ein weltweiter Marktführer für innovative Lösungen in Bereichen wie Verteidigung, Sicherheit, Gesundheitswesen und Infrastruktur. Unsere Mitarbeiter sind hochqualifiziert und leisten wertvolle Beiträge zu unterschiedlichsten Missionen unserer Regierungs- und Industriekunden. Das Hauptquartier von Leidos befindet sich in Reston/Virginia. Im Geschäftsjahr 2018 beliefen sich unsere Erlöse auf 10,2 Mrd. US-Dollar.

    Description

  • Sprachen
    Englisch
  • Unternehmenstyp
    Etablierte Firma
  • Arbeitsmodell
    Hybrid, Onsite
  • Branche
    Beratung, Internet, IT, Telekom
  • Logo Leidos

    Information System Security Manager

    Ort
    Stuttgart
    Arbeitsmodell
    Onsite

    Weitere Jobs