BAE Systems logo

Cyber Security Information System Security Manager (ISSM) - Onsite

BAE Systems

Merrimack, NHFull-time$118–201K/yrTracked 3w agoSeen in employer's feed 6 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
$118–201K/yr
Location
Merrimack, NH
Schedule
Full-time
Work Authorization
Not specified

Requirements

Credentials this posting asks for.

IAM Level II Certification Commensurate With DoD 8570.1MTop Secret clearance

Job overview

BAE Systems is hiring a Cyber Security Information System Security Manager (ISSM) - Onsite. The role supports adherence to a rigorous Risk Management Framework compliance program, obtains and maintains Authority to Operate approvals, and oversees classified system security documentation and continuous monitoring, all performed onsite at BAE Systems in Merrimack, NH.

Key focus areas include Support adherence to RMF compliance program, Obtain and maintain Authority to Operate approvals, and Develop and manage system security documentation and POA&Ms.

Important skills include Risk Management Framework, NISPOM/DAAPM, JSIG, ICD 503, STIGs, and NIST Publications. Preferred (not required): Run Information Assurance Program, Working Knowledge Of System Functions, Working Knowledge Of Security Policies, and Working Knowledge Of Technical Security Safeguards.

Skills & qualifications

RequiredNice to have

Skills

Risk Management FrameworkNISPOM/DAAPMJSIGICD 503STIGsNIST PublicationsSystem Security DocumentationPlans of Action and MilestonesAssessing Systems Security ControlsAuditing Systems Security ControlsContinuous MonitoringSelf-Inspection ProgramPersonal MotivationInitiative to LearnAdapt SeamlesslyCustomer FocusedExcellent CommunicatorWork With Limited SupervisionStrong Organizational SkillsInterface With IA Team MembersInterface With Other Security DisciplinesInterface With Program PersonnelInterface With Government Security RepresentativesSystem Security PlansStandard Operating ProceduresRemediation PlansConfiguration Management PlansReview Mitigation ReportsCreate Mitigation ReportsNessusSCAPACASSCCCertifying ComplianceWindowsLinuxNetwork DevicesPeripheralsDevelopment of IA-Related BriefingsDelivery of IA-Related BriefingsDevelopment of Training MaterialDelivery of Training MaterialRun Information Assurance ProgramWorking Knowledge of System FunctionsWorking Knowledge of Security PoliciesWorking Knowledge of Technical Security SafeguardsWorking Knowledge of Operational Security MeasuresTranslate Operational Requirements Into Technical RequirementsTranslate Operational Requirements Into ArchitecturesConducting Self-Inspection

Qualifications

Active Top Secret ClearanceIAM Level II Certification Commensurate With DoD 8570.1MISSM or Relevant Cybersecurity Experience

Benefits

Medical Insurance
Dental Insurance
Vision Insurance
Paid Time Off
Parental Leave
401(k) Match

Full job description

Job Description

See what you re missing. Our employees work on the world s most advanced electronics from detecting threats for F-35 pilots to illuminating the night for soldiers. Spanning air, land, sea, and space, we are developing the technology of tomorrow, delivered today. Drawing strength from our differences, we re innovating for the future. And you can, too. Our flexible work environment provides you a chance to change the world without giving up your personal life. We put our customers first exemplified by our mission: We Protect Those Who Protect Us. Sound like a team you want to be a part of? Come build your career with BAE Systems.

Through research programs funded by science and technology R&D organizations within the U.S. Department of Defense, the research and development team in FAST Labs collaborate across the enterprise. On this team, you ll have the opportunity to create and develop advanced technology capabilities in the areas of advanced electronics, autonomy, cyber, electronic warfare, and sensors and processing.

Advance your career as a cybersecurity leader with BAE Systems, supporting and protecting information systems critical to national security at one of the leading companies in Aerospace and Defense. Utilize your Information Assurance (IA) experience and hands on technical expertise to support and collaborate with seasoned professionals, while having a training and development plan designed to grow your skills in a fast paced, team-based environment.

If you are looking to learn, influence, and help develop top cyber technologies, applications, and processes that protect and service our customers wherever they may be air, land, and sea come join our award-winning security family here at Electronic Systems (ES).

Inthis Cybersecurity, ISSM role you will make impacts in the following ways;

Responsible for supporting adherence to all aspects of a rigorous Risk Management Framework (RMF) compliance program as stipulated by NISPOM/DAAPM, JSIG, ICD 503, STIGs and associated NIST publications.

Obtain and maintain Authority to Operate (ATO) approvals for various systems by adhering to the Risk Management Framework (RMF).

Supportcybersecurity efforts throughout the RMF process for one or more assigned programs(s) to include the development and management of System Security documentation, Plans of Action and Milestones (POA&Ms), assessing and auditing systems security controls, and continuous monitoring of controls.

Provide oversight for all classified systems compliance, and ensure the execution of our strong self-inspection program.

Ensure all security certification and accreditation documents in relation to all classified systems are up-to-date.

Ensure continuous monitoring (e.g. weekly, monthly, etc.) in accordance with cognizant security authority requirements are being implemented and met.

Coordinate security-related activities with information security architects, senior information security officers, information system owners, common control providers, and information system security officers

Because of the need for consistent, in-person collaboration and/or the requirement to perform all work onsite due to the nature of this particular role, it will be performed full-time on site. This means work will be conducted on location at a BAE Systems facility 100% of the time.

Required Education, Experience, & Skills

  • Active Top Secret Clearance and IAM Level II certification commensurate with DoD 8570.1M requirements

  • ISSM or relevant cybersecurity experience

  • High level of personal motivation and initiative to learn and acquire new skills, and adapt seamlessly to an ever-changing security environment

  • Customer focused, excellent communicator and ability to work with limited supervision.

  • Strong organizational skills

  • Able to interface with other IA team members, other security disciplines (industrial security, physical security, special programs security, etc.), program personnel and government security representatives.

  • Experience with the development of core documentation including System Security Plans, Standard Operating Procedures, Plan of Actions and Milestones, Remediation Plans, and Configuration Management Plans.

  • Experience with the review and creation of mitigation reports from compliance and vulnerability scanning tools (Nessus, SCAP, ACAS, SCC).

  • Experience with auditing and certifying compliance of various systems (Windows, Linux, Network Devices and peripherals).

  • Experience with development and delivery of IA-related briefings and training material.

  • Experience with compliance and vulnerability scanning tools (Nessus, SCAP, ACAS, SCC).

  • Experience with the review and creation of mitigation reports from compliance and vulnerability scanning tools (Nessus, SCAP, ACAS, SCC).

Preferred Education, Experience, & Skills

  • Run and maintain the entire information assurance program for more complex efforts or area

  • Working knowledge of system functions, security policies, technical security safeguards, and operational security measures.

  • Translate operational requirements into technical requirements and architectures needed to meet program objectives

  • Experience with conducting all aspects of a self-inspection

  • Experience with periodic and on-demand system audits and vulnerability assessments, including user accounts, application access, file system and integrity scans to determine compliance

  • Prepared incident reports of analysis methodology and results

  • Knowledge of new and emerging information technology (IT) and cybersecurity technologies.

  • Employ best practices when implementing security controls within an information system including; software engineering methodologies, system/security engineering principles, secure design, secure architecture, and secure coding techniques

  • Ability to function as an integral part of the development team to include designing and developing organizational information systems or upgrading legacy systems

Pay Information

Full-Time Salary Range: $118095 - $200762

Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.

Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20 hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.

Cyber Security Information System Security Manager (ISSM) - Onsite

128087BR

EEO Career Site Equal Opportunity Employer. Minorities . females . veterans . individuals with disabilities . sexual orientation . gender identity . gender expression

You've read the whole posting — now see how you match it.