Logo
SAIC

Information System Security Manager

SAIC, Chantilly, Virginia, United States, 22021

Save Job

Overview

SAIC is seeking an Information System Security Manager (ISSM) to provide information security support. This position is in Chantilly, VA and requires an active TS/SCI clearance with Polygraph. Location

CHANTILLY, VA, US Details

Date Posted

2025-09-22 Category

Cyber Subcategory

Cybersecurity Spec Schedule

Full-time Shift

Day Job Travel

No Minimum Clearance Required

TS/SCI With Poly Clearance Level Must Be Able to Obtain

None Potential for Remote Work

No Responsibilities

Support the Lifecycle Assessment and Authorization (A&A) process. Develop a Systems Security Plan (SSP). Assist and maintain a formal Information Security Program that includes recommendations on continuous improvement of the processes and architectures. Maintain and make accessible documentation of all operational and business process activities in the form of Standard Operating Procedures (SOPs). Monitor and track projects in the A&A queue. Analyze SSPs to develop an understanding of the customer’s systems and applications. Coordinate A&A actions and system testing with appropriate security personnel. Develop risk assessments, recommend mitigating countermeasures, and write short, succinct risk assessments, and certification reports for submission to the CIO. Maintain a document repository where A&A project documentation is stored and recorded and register actions concerning project approvals to operate in the A&A database. Assemble and submit A&A packages to the Principal Accreditation Authority or Designated Accreditation Authority. Review and approve product requests for procurements. Provide security guidance in terms of policy and technical implementation of those policies. Produce and assist with production of technical artifacts required for A&A packages such as a System Security Plan, Audit Strategy, Configuration Management Plan, Security Controls Traceability Matrix, Project Plan of Action and Milestones. Monitor and address cyber risks such as malware, zero-day attacks, denial of service attacks, as well as associated mitigations regarding computer and network devices. Qualifications

Active TS/SCI with Polygraph. Bachelor’s degree and 9+ years of experience; Master’s degree and 12+ years; PhD and 9+ years. CISSP Certification. Demonstrated experience with Computer networking in Windows AND Linux. Website configuration. Basic software development knowledge. Eliciting information on complex technical problems from non-technical personnel for diagnosis and resolution. Customer regulations and standards, including Information Security (INFOSEC) and Communications Security (COMSEC). Managing security aspects of deployed infrastructure and technical solutions. Desired Skills Experience with Rapid7, WebInspect, AppDetective, CIS-CAT, and other vulnerability assessment tools. Information security certifications such as CISSP, CISSE, CISA, CEH, CCSP, etc. Experience with computer and network vulnerabilities (malware, zero-day attacks, denial of service attacks).

#J-18808-Ljbffr