Logo
oilandgasjobsearch.com

Information System Security Manager (ISSM)

oilandgasjobsearch.com, Dayton, Ohio, United States, 45444

Save Job

Title:

Information System Security Manager (ISSM) KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country's most critical role - protecting our national security. Why Join Us? Innovative Projects: KBR's work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions. Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace. Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense. Position Summary: The Information System Security Manager will provide system authorization support, risk management and business continuity expertise, threat detection and prevention methods, incident response and management methods, auditing, vulnerability management support, and system security documentation. Key Responsibilities: Coordinating, executing, and managing cybersecurity assessment & authorization (A&A) related activities supporting IT hardware, software, and connectivity capabilities in support of intelligence data management and analysis requirements Provide advice and assistance on all things cyber security for customer-acquired development and systems maintenance projects, driving and monitoring system authorization status of segment components, authoring and coordinating related documentation Facilitate, perform, and manage actions necessary to maintain system and capability accreditation status consistent with DoDI 8510.01 (Risk Management Framework (RMF) for DoD Information Technology (IT)), including scanning, auditing, and authoring/coordinating security accreditation-related documentation Review and advise on security aspects of contracted maintenance deliverables and proposals Perform requirements analysis, design, and integration for complex software applications and collaboration infrastructures Participate in the change management process, including reviewing Change Requests and assisting in the assessment of security impact of proposed changes Write implementation and design documents describing how security features are implemented Create and maintain information system security documentation, Standard Operating Procedures (SOP), and provide guidance on active Plans of Action and Milestones (POA&M) Present system maintenance, authorization status, and potential issues to various intelligence and acquisition community audiences Keep leadership aware of any roadblocks, issues, or concerns with system authorization status Work Environment: Location: Dayton, OH Travel Requirements: 35% Working Hours: Standard Qualifications: Required: BS degree in information systems or related technical field 9+ years' technical experience in cybersecurity or information technology DoD 8570 IAT/IAM Level I/II certification Understanding of common operating systems (Windows, Linux/Unix, Cisco IOS/NX-OS) Knowledge of client, server, data storage, and networking technologies Understanding of the requirements and standards for Cloud security Familiarity with DevSecOps principles and Secure Software Development Lifecycle (SSDLC) Ability to troubleshoot, assess root cause, and resolve technical issues Innovative with strong analytical, problem-solving, organization and interpersonal skills Self-motivated; able to work independently with minimal direction An active TS/SCI clearance is required Must have experience working with Special Access Programs (SAPs) Desired: Advanced degree in a technical field 9+ years of IT/security-related experience with recent ISSM experience Sec+/CASP/CISSP certification Software Development in Java, Python, Ruby and/or C++ knowledge Linux Expertise (RedHat/RHEL or CentOS preferred) knowledge Prior experience with software scanning/static code analysis (e.g. Fortify, SonarQube) Prior experience with cloud and container security tools (e.g. Prisma Cloud/Twistlock, StackRox, Anchore) KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.

#J-18808-Ljbffr