Job Directory Information System Security Manager (ISSM)

Information System Security Manager (ISSM)
Fairfax, VA

Companies like
are looking for tech talent like you.

On Hired, employers apply to you with up-front salaries.
Sign up to start matching for free.

About

Job Description

Job ID 00000125142 Date posted 07/03/2019 Location Fairfax, Virginia, United States Company The Boeing Company

Job Description

Leads the development and deployment of program information security for assigned systems to meet the program and enterprise requirements, policies, standards, guidelines and procedures. Manages Risk Management Framework (RMF) processes, product development and product maintanence for assigned systems. Manages and performs security compliance continuous monitoring. Leads and participates in security assessments and audits. Prepares, reviews, and presents technical reports and briefings. Identifies root causes, prioritizes threats and recommends/ implements corrective action. Provides mentoring and technical leadership to the information security program team. Explores the enterprise and industry for the evolving state of industry knowledge and methods regarding information security best practices. Develops enterprise-wide information security policies, standards, guidelines and procedures that may reach across multiple stakeholder organizations.

The Boeing Company is looking for a highly motivated Cybersecurity Professional to join our Enterprise Government Cybersecurity team as an Information System Security Manager (ISSM) based in Fairfax, VA. You will rely on your cybersecurity and Information Assurance (IA) background to be a technical leader and support Enterprise activities and Boeing customers throughout multiple classified computing domains. The ISSM is responsible for maintaining and enforcing all Information System Security policies, standards, and directives to ensure assessment and authorization of information systems processing classified information.

Responsibilities:

* Perform security analysis of operational and development environments, threats, vulnerabilities, and internal interfaces to define and assess compliance with accepted industry and government standards
* Lead and implement the Authorization and Assessment (A&A) processes under the Risk Managed Framework (RMF) for new and existing information systems
* Facilities development of Memorandums of Understanding (MOU), Interconnection Security Agreements (ISA), Risk Acceptance Letters (RAL) and support Continuous Monitoring (CONMON)
* Oversees configuration management of assigned systems; auditing systems to ensure security posture integrity
* Conduct risk assessments and investigations, execute appropriate risk mitigations, and oversee incident response activities
* Conducts periodic hardware/software inventory assessments
* Interfaces with the appropriate government customers, suppliers, and company personnel to implement protective mechanisms and to ensure understanding of and compliance with cybersecurity requirements

Basic Qualifications (Required):

* This position requires an active Top Secret U.S. Security Clearance. (A U.S. Security Clearance that has been active in the past 24 months is considered active)
* Bachelor's degree or higher
* CISSP, CISM or GSLC certification required (DoD 8140.01 IAM Level III). Applicants must include their IAM Level III certification clearly on their resume.
* 3 ore more years of cyber security experience

Preferred Qualifications:

* 5+ years' experience as an ISSO implementing or managing cybersecurity requirements on classified systems under JSIG, NISPOM, ICD 503, and/or CNSSI 1253
* Exceptional verbal, written, interpersonal and presentation skills, customer relationship building skills, analytical skills and ability to lead/mentor teammates
* Project management experience. PMP or CAPM certification is a plus.
* Experience with cybersecurity policies and implementation of Risk Management Framework (RMF): e.g. DAAPM, CNSSI 1253, ICD-503, JSIG, and/or NIST SP 800 series.
* Experience in assessing and documenting test or analysis data to show cybersecurity compliance.
* Demonstrated experience leading audits conducted by external stakeholders.

Typical Education & Experience:

* Technical bachelor's degree and typically 9 or more years' related work experience or a Master's degree with typically 7 or more years' or a PhD degree with typically 4 or more years' related work experience or an equivalent combination of education and experience. A technical degree is defined as any four year degree, or greater, in a mathematic, scientific or information technology field of study.

Referral to this job is eligible for bonus:

Bonus amount: US dollars (USD) $4000

This position does not offer relocation. Candidates must live in the immediate area or relocate at their own expense.

Boeing is a Drug Free Workplace where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria is met as

outlined in our policies.

Boeing is the world's largest aerospace company and leading manufacturer of commercial airplanes and defense, space and security systems. We are engineers and technicians. Skilled scientists and thinkers. Bold innovators and dreamers. Join us, and you can build something better for yourself, for our customers and for the world.

Experience Level

Individual Contributor

Contingent Upon Program Award

No, this position is not contingent upon program award

Job Code

LAQ6I4 (L13)

Schedule

Full time

Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law.

Let your dream job find you.

Sign up to start matching with top companies. It’s fast and free.