Senior Analyst, Security Information Systems Mgmt (ISSM)

icon briefcase Job Type : Full Time

Number of Applicants

 : 

000+

Click to reveal the number of candidates who applied for this job.
icon loader
icon loader

This job is no longer accepting applications.

Scroll down below to view similar jobs .

Job Description - Senior Analyst, Security Information Systems Mgmt (ISSM)

We are seeking a Senior Security Analyst for its Camden, Arkansas facility. The Senior Security Analyst, under limited direction, determines approaches to objectives demonstrating a complete understanding and application of principles, concepts, and practices.



TYPICAL RESPONSIBILITIES

This Security classification assumes the responsibilities associated with the role of Information Systems Security Manager (ISSM). These positions oversee the development, implementation, evaluation, and certification and accreditation of classified information systems. and interface with management and maintain liaison with US Government information assurance oversight agencies and prime/subcontractors; interpret government and company policy to ensure compliance with Cognizant Security Agency (CSA) requirements for classified information systems and/or networks of varying complexity; provide information security guidance and direction to program and engineering management and end users which may include making recommendations on process tailoring; and establish and maintain required training and information security compliance deliverables. These positions are responsible for publicizing and submitting government Risk Management Framework (RMF) compliant, clear and effective written plans, procedures, and instructions; and sustaining compliance with all aspects of government approved plans throughout system and program life cycles. In order to establish and maintain strict program control, process support, analysis support, coordination support, security certification test support, security documentation support, investigations, software research, hardware introduction and release, emerging technology research inspections and periodic audits may be required. May assist security management with the preparation of facility accreditation packages and site specific security plans; including but not limited to physical security requirements. May assist security management in the maintenance and accountability of electronic communication equipment and additional document control.

100% - Responsibilities of the ISSM include, but are not limited to:



Developing, maintaining, and overseeing the system security program and policies for their assigned facility or area of responsibility
Ensuring compliance with current government security policies, concepts, and measures when working with stakeholders to design and develop new systems
Developing and implementing an effective system security education, training, and awareness program
Maintaining a working knowledge of system functions, security policies, technical security safeguards, and operational security measures
Identifying and mitigating system vulnerabilities based on risk and impact
Developing, maintaining, and updating Plans of Actions, and Milestones (POA&M) in order to identify system weaknesses, mitigation, and timelines for applying corrective actions.
Certifying to government Authorizing Officials (AOs) that the requirements and procedures listed within the security plan are in accordance with contractually imposed regulations (NISPOM, NIST SP 800-53, DAAPM, JSIG, etc.)
Ensuring systems are operated and maintained in accordance with the Security Plan and government issued Authorization to Operate (ATO)
Ensuring audit records are collected and analyzed
Obtaining and maintaining NISP Enterprise Mission Assurance Support Service (eMASS), and/or applicable government system access, in order to effectively manage all security authorizations for systems under their purview
Managing, maintaining, and executing the continuous monitoring strategy
Conducting periodic assessments of systems and ensuing corrective actions are taken for all vulnerabilities and findings



A Bachelor's degree in an appropriate discipline and six (6) years of directly related experience, or equivalent combination of education and experience.

*DOD 8570.1 Certified (Level II or higher); Security+ or Certified Information Systems Security Professional (CISSP) or other applicable 8570.1 certifications required



Under limited direction, the ISSM is responsible for ensuring the appropriate operational security posture is maintained for an information system (IS) and as such, works in close collaboration with a range of stakeholders including Information System Owners (ISOs), Information System Security Officers (ISSO), Information Technology (IT) subject matter experts, various levels of management, and Engineering end-users.

The ISSM shall have the detailed knowledge and expertise required to manage the security aspects of a compliant classified computing environment at their assigned Aerojet Rocketdyne facility

Responsibilities also include physical and environmental protection, personnel security, incident handling, and security training and awareness. In close coordination with the Facility Security Officer (FSO) the ISSM plays a critical role in overall NISPOM (or other Cognizant Security Agency) compliance. Monitoring systems of varying complexity and their environments of operation, managing and controlling changes, and assessing the security impact of changes to further advice stakeholders.



Required Competencies

Knowledge of:

And experience with classified processing environments of varying complexity
Government compliance, regulations, and standards (NISPOM, DAAPM, RMF, JSIG, NIST 800-53)
Applicable regulations, practices and requirements of the government, customer, and the Company
Security requirements, clearances, and procedures
Applicable network, systems, hardware and software programs
Various communication protocols
Good decision-making and analytical skill



Additional Requirements:

Current SECRET (or higher) DoD Security Clearance.
Current DoD 8570 Level II or higher Baseline Certification (Security+ CE, CAP, GSLC, CASP CE, CISA, CISM, or CISSP).
Experience with Microsoft Windows and/or Linux system administration (2+ years).
Familiarity with security configuration control and change management (SCCM).
Experience with networking concepts (switches, network security, TACLANE).
Experience with security concepts (Data Loss Prevention, Active Directory, and Security Log Analysis).
Undergraduate degree in Information Technology or Cyber Security, but candidate with proven experience will not be excluded from consideration.
Active and continuous learner - either higher education or Continuing Professional Education.
Original job Senior Analyst, Security Information Systems Mgmt (ISSM) posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs.

This job is no longer accepting applications.

Scroll down below to view similar jobs .

icon no cv required No CV Required icon fast interview Fast Interview via Chat

Share this job with your friends

icon get direction How to get there?

icon geo-alt Camden, Arkansas

icon get direction How to get there?
View similar Others jobs below

Similar Jobs in the US

GrabJobs is the no1 job portal in the US, connecting you to thousands of jobs fast! Find the best jobs in the US, apply in 1 click and get a job today!

Mobile Apps

Copyright © 2024 Grabjobs Pte.Ltd. All Rights Reserved.