Information Security Manager III

Arlington, VA
Full Time
Professional Services
Mid Level

Title: Information Security Manager III 

Description
Solutions3 LLC is supporting a U.S. Government customer on a large mission critical development and sustainment program to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution. 

Solutions3 LLC is seeking an experienced and technically proficient Information Security Manager III to support this critical customer mission by performing investigations to characterize the severity of breaches, developing mitigation plans, and assisting with the restoration of services. 

This position requires support during assigned shifts, including nights/weekends  

Eligibility

  • Must be a US Citizen 

  • Must have an active TS/SCI clearance   

  • Must be able to obtain DHS Suitability prior to starting employment   

  • 5+ years of directly relevant experience in information security 

Responsibilities Include:  

  • Work as part of a team of Information Assurance professionals to manage the full Risk Management Framework lifecycle for Information Technology systems 

  • Assisting technical/management leadership on major tasks or technology assignments 

  • Establishing goals and plans that meet project objectives 

  • Assisting in direction and control activities, having overall responsibility for security management, methods, and staffing to ensure that technical requirements are met 

  • Participating in client negotiations and interfacing with senior management 

  • Supporting decision making and domain knowledge that may have a critical impact on overall project implementation 

  • Providing support to plan, coordinate, and implement a cybersecurity lab’s information security 

  • Providing support for facilitating and helping the lab identify its current security infrastructure and define future programs, design and implementation of security related to lab systems  

  • Assisting the efforts of security staff to design, develop, engineer and implement solutions to security requirements  

  • Implementing and development of the DHS IT security standards 

  • Gathering and organizing technical information about the lab’s mission goals and needs, existing security products, and ongoing programs  

  • Performing risk analyses which also includes risk assessment  

  • Planning and leading major technology assignments  

  • Evaluating performance results and recommends major changes affecting short-term project growth and success  

  • Functioning as a cyber technical expert across multiple project assignments 

  • Working closely with ISSM and CISO to respond to Data Calls and satisfy requirements of ATOs  

Required Skills

  • Hands on experience with Linux operating systems or Amazon Web Services 

  • Experience supporting the NIST Risk Management Framework (RMF) process and contributing to a full ATO effort from initiation through authorization, including development of security documentation, control implementation statements, supporting assessment (audit) activities, and performing full POA&M management   

  • Beginning to end Knowledge of RMF and Assessment and Authorization (A&A) documentation to include SSP, Contingency, Incident & Configuration Mgmt planning and execution 

  • Experience working on multiple complex assignments which are broad in nature, requiring originality and innovation in determining how to accomplish tasks  

  • Ability to apply a comprehensive knowledge across key tasks and high impact assignments  

  • Knowledge of Computer Network Defense (CND) policies, procedures & regulations 

  • Knowledge of defense-in-depth principles and network security architecture 

  • Knowledge of ATO requirements and strong experience with POAMs. 

  • Knowledge and experience with full range of Microsoft Office products (Word, Excel, Powerpoint, and Visio) 

  • Knowledge of boundary protection and network segmentation 

  • Knowledge of authentication and access management techniques 

  • Experience with implementing and assessing security controls for hardware, software, and network deployments 

  • Must be able to work collaboratively with internal and external stakeholders across physical locations 

Desired Skills

  • Experience with Risk Management Framework software (CSAM, Xacta, Archer, RegScale) 

  • Experience with host and network scanning software (Nessus, Security Center, Tenable Vulnerability Management, nmap, Wiz, burp) 

  • Experience with Endpoint Protection tools like CrowdStrike or CarbonBlack 

  • Working knowledge of SIEM tools like Splunk, SOAR, or ELK 

  • Familiarity with role-based account processing operations 

  • Familiarity with zero trust architectures  

  • Familiarity with scripting languages (python, AWS CLI, Lambda, bash, powershell) 

Desired Certifications:  

DoD 8140.01 IAT Level III, CISSP, AWS, Cisco, Microsoft 

Required Education:
Bachelor of Science in Information Management, Cybersecurity, Computer Science, or related degree; or High School Diploma and 7+ years information security experience 

Share

Apply for this position

Required*
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

Human Check*