Business Technology Integrators (BTI) is seeking an Information Systems Security Manager (ISSM) to lead a team in executing risk management efforts against our customer's inventory of on premise, vendor and cloud-based systems. The successful candidate will provide support in the following areas:
• Manage Information System Security Officers (ISSO) to support information technology (IT) security goals and objectives and reduce overall organizational risk. • Assist in the execution and management of the House Risk Management Framework (RMF) and advises ISSOs on proper application of House cybersecurity policies and requirements. • Assist senior management in the development and interpretation of information assurance guidelines, policies, regulations etc. • Advise senior management (e.g., Chief Information Security Officer [CISO]) on risk levels and security posture. • Advise appropriate senior leadership or Authorizing Official of changes affecting the organization's cybersecurity posture. • Conduct independent or coordinated studies to identify, evaluate or recommend solutions to significant systems management problems that are likely to be complex and sensitive in nature. • Ensure that security improvement actions are evaluated, validated, and implemented as required. • Identify alternative information security strategies to address organizational security objectives. • Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program. • Participate in information security risk assessments during the Security Assessment and Authorization process. • Ensure that plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
Provide quality assurance reviews of cybersecurity deliverables to ensure consistency, accuracy, and relevancy. • Provide technical and procedural information system advice to risk management team. • Perform quality reviews of security artifacts collected by ISSOs under their purview to ensure quality assessment and authorization (A&A) deliverables are provided. • Assume ISSO responsibilities in the absence of ISSO. • Ensure approved House procedures are followed in the implementation of security controls. • Ensure a record is maintained of all vulnerabilities for existing authorization boundaries. • Advise ISSOs on all matters, technical and otherwise, involving the security of assigned IT systems. • Maintain a working knowledge of system technology, security policies, and security safeguards. • Ensure continuous monitoring of authorization boundaries and implemented security controls is followed. • Provide guidance to ISSOs on mitigation actions for security control deficiencies and scan vulnerabilities for assigned IT systems. • Provide role-based training for assigned ISSOs specific to their roles and responsibilities. • Brief senior management on the status of ISSOs and their assigned projects. • Work with senior leadership to mature risk management processes within the House environment. • Develop and formalize risk management training, specific to the House environment, for varied stakeholder groups. • Conduct assigned technical reviews and risk analyses and develop cybersecurity risk mitigation recommendations and strategies based on threats. • Research and recommend innovative, secure, and (where possible) automated solutions to improve risk management processes and activities. • Participate in the technical security evaluation and assessment of new technologies in support of House of Representatives operations and provide supporting reviews. • Provide audit support to cybersecurity for audit activities and recommendations. • Perform other duties as assigned.
The successful candidate shall possess the following knowledge, skills, and abilities:
• Minimum of eight (8) years of demonstrated work experience in cybersecurity risk management. • Demonstrated experience managing systems security assessments, reviewing system security documentation for successful security authorization of such systems. • Strong knowledge and expertise with NIST publications. • Demonstrated experience providing quality A&A deliverables. • Proven technical acumen and understanding of common operating systems and network technologies, risk management frameworks, and common security tools and scanners. • Demonstrated understanding of cloud service models, hybrid applications, and mobile security technologies and tools. • Understanding of management, operational and technical cybersecurity principles. • Experience with privacy principles and frameworks is preferred.
Powered by JazzHR
Create a job alert for this search
Information Systems Security Manager (ISSM) • Washington, DC, US
Related searches
Similar jobs
Information System Security Engineer (ISSE)
Tla Llc • Washington, DC, United States
Full-time
TLA is seeking an Information System Security Engineer (ISSE).This is a critical role responsible for designing, developing, implementing, and maintaining secure information systems and networks.Th...Show more
Last updated: 30+ days ago • Promoted
Information System Security Officer (ISSO) - Hybrid
Coalfire • Washington, DC, United States
Full-time
Coalfire Federal is a market leading cybersecurity consultancy firm that provides independent and tailored advice, assessments, technical testing and a full suite of cyber engineering services to F...Show more
Last updated: 29 days ago • Promoted
Information System Security Officer
SBC Innovations • Washington, DC, United States
Full-time
Join SBC Innovations and contribute to cutting-edge systems integration in a dynamic federal enterprise environment.Please help us maintain and enhance our enterprise-level IT systems, ensuring sec...Show more
Last updated: 30+ days ago • Promoted
Engineering Manager Enterprise Security
Harnham • Washington, DC, United States
Full-time
Engineering Manager, Enterprise Security.My client is expanding their Enterprise Security product line and are looking for a technical leader to build and scale the engineering team behind it.This ...Show more
Last updated: 24 days ago • Promoted
Sr. Information Assurance/Security SME
Amyx, Inc. • Washington, DC, United States
Full-time
Information Assurance/Security SME for our DOD client in the greater National Capitol Region.Job location: US-DC-Washington.Provide comprehensive, multi-disciplinary leadership and IA related suppo...Show more
Last updated: 29 days ago • Promoted
Specialist, Information Systems Security-Sr.
ORBIS • Washington, DC, United States
Full-time
SEA 21, NAVSEA’s Director of Surface Ship Maintenance, Modernization, and Sustainment is seeking professional support services (PSS) to support the Government's existing organization, personnel, kn...Show more
Last updated: 6 days ago • Promoted
Information Systems Security Officer
Demand Drive Solutions LLC • Washington, DC, United States
Full-time
Washington, District of Columbia, United States.Information Systems Security Officer (ISSO).Services to support IS Security performed by the Senior Cloud Information System Security Officer (ISSO),...Show more
Last updated: 30+ days ago • Promoted
Information System Security Officer
MANTECH • Columbia, MD, US
Full-time
Information System Security Officer (ISSO).You will play a critical role in supporting enterprise infrastructure capabilities for a global, mission-focused workforce.As an ISSO, you will work along...Show more
Last updated: 17 days ago • Promoted
Epic Applications Security Manager
Virginia Hospital Center • Alexandria, VA, United States
Full-time
Epic Applications Security Manager.The Epic Applications Security Manager provides strategic leadership and operational oversight for all Epic-related application security functions.This role manag...Show more
Last updated: 30+ days ago • Promoted
Information Security Systems Officer - Contingent Upon Award
TSTC • Washington, DC, United States
Full-time
TSTC is an award‑winning, Woman Owned, HUBZone certified Small Business providing services to federal intelligence, law enforcement, civilian and defense agencies.Built upon our Total Service – Tot...Show more
Last updated: 30+ days ago • Promoted
Cleared Information Systems Security Engineer (4659)
Smxtech • Washington, DC, United States
Full-time
Cleared Information Systems Security Engineer (4659).SMX is hiring Information Systems Security Engineer to support a Law Enforcement OCIO's organization to provide Information Security as a Servic...Show more
Last updated: 30+ days ago • Promoted
Senior Manager Information Security
Children's National Hospital • Silver Spring, MD, United States
Full-time
Your north star: build and oversee a team of information security experts dedicated to protecting Children's National and our patients, families, and staff.The Senior Manager Information Security s...Show more
Last updated: 30+ days ago • Promoted
Information System Security Engineer
Method, Inc. • Washington, DC, United States
Full-time
Who We’re Looking For (Position Overview):.Spry Methods is seeking an Information Systems Security Engineer (ISSE) to support secure, mission-focused information systems in a high-impact government...Show more
Last updated: 30+ days ago • Promoted
Senior Information Security Leader, Consumer Tech
Bank of America • Washington, DC, United States
Full-time
A major financial institution is seeking a Senior Business Information Security Officer to support the organization’s information security initiatives.This role requires 10+ years of experience wit...Show more
Last updated: 30+ days ago • Promoted
Information Assurance/Security Engineer, Manager (15.34)
OCT Consulting LLC • Washington, DC, United States
Full-time
Information Assurance/Security Engineer, Manager (15.Be among the first 25 applicants.This range is provided by OCT Consulting LLC.Your actual pay will be based on your skills and experience — talk...Show more
Last updated: 30+ days ago • Promoted
Cybersecurity Information System Security Officer
Zantech • Washington, DC, United States
Full-time
Are you looking for your next challenge? Are you ready to work with a performance-based small company? Zantech is a dynamic Woman Owned Small Business focused on providing complex, mission-focused ...Show more
Last updated: 29 days ago • Promoted
Information System Security Manager SME
Leidos Inc • Alexandria, Virginia, United States
Full-time
This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted...Show more
Last updated: 1 day ago • Promoted
Senior ISSM: DoD RMF Security Lead for Classified IS
Technology Service Corporation • Silver Spring, MD, United States
Full-time
A leading technology service provider is seeking an Information System Security Manager (ISSM) in Silver Spring, MD.The ISSM will enforce security policies on classified information systems and ens...Show more