Talent.com
Cyber and Data Security Manager

Cyber and Data Security Manager

ERGConcord, MA, US
3 days ago
Job type
  • Part-time
Job description

Job Description

Job Description

ERG is a research and consulting firm that provides a wide range of support to federal, state, and commercial clients. ERG offers multidisciplinary teams with nationally recognized skills in engineering, science, economics, public health, informational technology, and communications. We hire people with the best minds and then provide them with a vibrant and flexible environment in which to develop their careers. The qualified individual must be highly motivated with the skills to prioritize, perform, and communicate effectively in a fast-paced environment.

ERG is seeking an experienced Cyber and Data Security Manager with a minimum of 10 years working in IT security operations including 3+ years of hands-on experience implementing and maintaining controls under NIST SP 800-171 (CMMC Level 2) within a U.S. Government contractor environment where CUI is processed.

The ideal candidate will be responsible for developing, maintaining and updating comprehensive compliance documents and procedures, for growing our security capabilities.

Job Description :

  • Develop, maintain, and update comprehensive compliance documentation including System Security Plan (SSPs), Plans of Action and Milestones (POA&M), implement policies and procedures and other supporting artifacts to ensure adherence to security standards
  • Collaborate with both internal resources as well as external consultants and auditors, to facilitate compliance reviews, assessments and gap analyses
  • Prepare for and facilitate CMMC assessments, including self-assessments and third-party audits by Certified Third-Party assessor Organizations (C3PAO)
  • Ensure that our information security assets, policies, and processes are reliable, available, provide confidentiality, and are generally safe from unauthorized use and intrusion
  • Provide day-to-day security support around the infrastructure and procedures used to protect and secure Controlled Unclassified Information (CUI), including ERG’s related computer systems, data, and network
  • Perform risk analysis on threats, security alerts, and other suspicious systems or network activity
  • Lead incident response efforts, including investigation, containment, and recovery
  • Identify and analyze existing processes and procedures to meet new IT Security goals and objectives
  • Evaluate security incidents to determine impact & escalate appropriately
  • Monitor, aggregate, label, and manage artifacts related to the Security Program assessment and external audits
  • Develop, document, and assist with implementing ISO 270001 and NIST / CMMC framework standards, procedures, processes, and guidelines
  • Plan and monitor security measures for the protection of computer systems, networks, and information, including the use of Security Information and Event
  • Management (SIEM) products
  • Develop and deliver cyber-related training programs for employees and stakeholders
  • Provide security awareness training on recognizing and reporting potential indicators of external insider threats
  • Ensure integrity and security of company data
  • Support ERG’s Change & Configuration Control Board (CCB) through actions such as documenting change requests and participating in regular CCB meetings

Qualifications and Skills :

  • Bachelor’s degree in computer science, Cyber / Information Security, or a related field
  • 10+ years working in IT security operations, including a minimum of 3years in a Corporate IT environment, in a hands-on role dedicated to information security compliance, systems security, IT risk management, IT audit, or similarly related
  • Must be able to obtain / maintain US DOD Security Clearance
  • Experience in recommending and implementing policies and procedures to ensure adherence to security standards, including the requirements of NIST SP 800-171 and CMMC Level 2
  • Demonstrated hands-on experience with NIST 800-171 and ISO 27001 Controls
  • Experience performing security audits with specialized SIEM tools (i.e., CrowdStrike, Arctic Wolf, Microsoft Sentinel) in the following environments : Microsoft GCC High, Microsoft 365, Azure AD, and Virtual Desktop
  • Ability to interpret technical vulnerability findings and work to develop and implement remediation plans
  • Strong knowledge of enterprise Information Security pillars including Perimeter security, Identity Management and Governance, Privileged Account Management, Compliance, Penetration testing, Encryption, Cloud Security, Incident Response, Vulnerability Management
  • Ability to effectively communicate security-related concepts to a broad range of technical and non-technical professionals
  • Hybrid position, ideally within commuting distance of one of ERG’s Massachusetts, Northern Virginia, or North Carolina offices for occasional meetings
  • Excellent project and time management skills with the ability to plan, organize, and manage tasks on time with minimal supervision
  • A plus if you have :

  • Certified CMMC Professional (CCP), Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISM), Certified Information Systems Manager (CISA), GIAC (Global Information Assurance Certification) / GSNA (GIAC Systems & Network Auditors) or other similar certification(s)
  • Demonstrated experience with NIST 800-53, NIST CSF, SANS / CIS Top 20, FedRAMP, FISMA, GDPR
  • Security clearance (active or recent expiration)
  • ERG offers competitive salaries and excellent benefits, including health and dental insurance, life insurance, long-term disability, educational benefits, FSAs, a generous 401k plan, profit sharing, an EAP, 11-20 paid vacation days per year, 10 paid holidays per year, 56 hours or more of sick leave (based on the state you work in) per year (pro-rated for part-time) and more. The salary range for all positions depends on the years and type of experience.

    ERG is an equal opportunity employer and complies with all applicable EEOC regulations. All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual preference, national origin, disability, or status as a protected veteran.

    Please be aware, the only authentic corporate domain for ERG is https : / / www.erg.com.   ERG may, on occasion, screen applicants via telephone or video interviews via Skype, Teams, GoToMeeting, or another type of video platform. However, any candidate extended a job offer might be asked to meet in person with an ERG employee before providing confidential personal information associated with new employment.

    If you’re a qualified individual with a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access ERG’s online application process as a result of your disability. To request accommodation, please contact Human Resources via email at Resumes-Lex@erg.com or call (781) 674-7293.

    ERG fosters a friendly, flexible work environment. ERGers are dedicated to serving clients who are committed to making the world a better place. We promote and recognize principles of fairness and respect in the work we do, the partnerships we foster, and the culture we value both within and outside of our organization.

    Create a job alert for this search

    Manager Cyber Security • Concord, MA, US

    Related jobs
    • Promoted
    • New!
    Cyber Lead

    Cyber Lead

    Abacus TechnologyHanscom Air Force Base, MA, United States
    Full-time
    Abacus Technology is seeking a Cyber Lead to oversee the Communications Security (COMSEC) program for Hanscom AFB.Manage the COMSEC program supporting multiple organizational COMSEC accounts.Ensure...Show moreLast updated: 12 hours ago
    • Promoted
    • New!
    Manager, Cyber Data Security Posture Management

    Manager, Cyber Data Security Posture Management

    KPMGBoston, MA, United States
    Full-time
    KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market envi...Show moreLast updated: 12 hours ago
    • Promoted
    • New!
    Manager, Cyber Defense (Hybrid)

    Manager, Cyber Defense (Hybrid)

    RTXAndover, MA, United States
    Full-time
    CT502 : 10 Farm Springs Rd, Farmington 10 Farm Springs Road.Person, or Immigration Status Requirements : .Must be authorized to work in the U. The company will not offer immigration sponsorship for thi...Show moreLast updated: 12 hours ago
    • Promoted
    • New!
    Director, Hyperscale Data Center Security Operations

    Director, Hyperscale Data Center Security Operations

    Boston StaffingBoston, MA, US
    Full-time
    The physical security operations team is the primary interface with all clients and ensures that client needs and expectations are met with high quality, industry standard programs and services.Ora...Show moreLast updated: 6 hours ago
    • Promoted
    Director, Cyber Security

    Director, Cyber Security

    KPMG USBoston, MA, United States
    Full-time
    Join us as the Director, Cyber Security and lead KPMG's high-impact consulting practice in Cyber Security, AI governance, and risk compliance. Shape the commercial offering around Automating AI Gove...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Manager - Diego Garcia

    Cyber Security Manager - Diego Garcia

    AmentumBoston, MA, United States
    Full-time
    Please note this position is based on Contract Award and is located on the island of Diego Garcia.Facility-Related Control System (FRCS) Cybersecurity Manager. The Contractor shall provide a FRCS Cy...Show moreLast updated: 30+ days ago
    • Promoted
    CyberSecurity Manager

    CyberSecurity Manager

    Cannon Search PartnersBoston, MA, United States
    Full-time
    Join a mission-driven investment firm where security isn't an afterthought - it's a priority.You'll work across teams to implement security controls, respond to incidents, and drive improvements ac...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Director, Cyber Security

    Director, Cyber Security

    KPMGBoston, MA, United States
    Full-time
    KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market envi...Show moreLast updated: 12 hours ago
    • Promoted
    Senior Manager, Solutions Architecture, Data Security Pre-sales- Capital One Software (Remote)

    Senior Manager, Solutions Architecture, Data Security Pre-sales- Capital One Software (Remote)

    Capital OneBOSTON, Massachusetts, United States
    Remote
    Full-time +1
    Senior Manager, Solutions Architecture, Data Security Pre-sales- Capital One Software (Remote).Ever since our first credit card customer in 1994, Capital One has recognized that technology and data...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Manager Cyber Security

    Senior Manager Cyber Security

    StaplesFramingham, MA, United States
    Full-time
    Staples is business to business.Our digital solutions team is more than a traditional IT organization.We are a team of passionate, collaborative, agile, inventive, customer-centric, results-oriente...Show moreLast updated: 12 hours ago
    • Promoted
    • New!
    Director, Hyperscale Data Center Security Operations

    Director, Hyperscale Data Center Security Operations

    OracleBoston, MA, United States
    Full-time
    The physical security operations team is the primary interface with all clients and ensures.Oracle is now looking for a senior security professional to join our team. Oracle utilizes internal owned....Show moreLast updated: 11 hours ago
    • Promoted
    • New!
    Senior Manager, Solutions Architecture, Data Security Pre-sales (m / w / d)

    Senior Manager, Solutions Architecture, Data Security Pre-sales (m / w / d)

    Capital OneCambridge, MA, United States
    Full-time +1
    Senior Manager, Solutions Architecture, Data Security Pre-sales- Capital One Software (Remote).Ever since our first credit card customer in 1994, Capital One has recognized that technology and data...Show moreLast updated: 12 hours ago
    • Promoted
    • New!
    Cyber Security / Digital Security

    Cyber Security / Digital Security

    Diverse LynxBoston, MA, United States
    Full-time
    Participate in review of legacy vulnerabilities and provide input as to priority.Understand existing security posture and challenges that we currently face (ATO / Stolen rewards).Evaluate current con...Show moreLast updated: 12 hours ago
    • Promoted
    • New!
    Director, Cyber Data Security and Protection

    Director, Cyber Data Security and Protection

    KPMGBoston, MA, United States
    Full-time
    KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market envi...Show moreLast updated: 12 hours ago
    • Promoted
    • New!
    Senior Cyber Security Engineer / Information Systems Security Manager (ISSM)

    Senior Cyber Security Engineer / Information Systems Security Manager (ISSM)

    Modern Technology Solutions IncLexington, MA, United States
    Full-time
    Modern Technology Solutions, Inc.Cyber Security - Information Systems Security Manager ( ISSM).As a Senior Cybersecurity Engineer / Information Systems Security Manager (ISSM) with MTSI you will su...Show moreLast updated: 12 hours ago
    • Promoted
    Program Manager, Data Center Global Security Operations

    Program Manager, Data Center Global Security Operations

    Boston StaffingBoston, MA, US
    Full-time
    Senior Program Manager, Data Center Global Security Operations.The Senior Program Manager, Data Center Global Security Operations is responsible for developing, maintaining, and standardizing all d...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Head of Digital Security - Billerica, MA - Hybrid

    Head of Digital Security - Billerica, MA - Hybrid

    CabotBillerica, MA, United States
    Full-time
    Head of Digital Security - Billerica, MA - Hybrid.Cabot has an exciting opportunity for a Sr Director of Information Security to join the Digital organization at Cabot's Billerica, MA location.This...Show moreLast updated: 12 hours ago
    • Promoted
    CyberSecurity Practice Lead

    CyberSecurity Practice Lead

    Redbeard SolutionsWaltham, MA, United States
    Full-time
    About the job CyberSecurity Practice Lead.As a Cybersecurity Practice Security Lead, you will work directly with Practice leadership, engagement teams and product teams on a range of information se...Show moreLast updated: 30+ days ago